JosS
86 exploits
Active since Dec 2005
MySQL Quick Admin 1.5.5 - Path Traversal via Lang Parameter
Siestta 2.0 - Path Traversal via Idioma Parameter
PHPEcho CMS 2.0-rc3 - Stored Cross-Site Scripting via Forum Post
Symphony CMS 2.0.7 and 2.1.1 - Cross-Site Scripting via Website Field or Recipient Parameter
myWebland myStats - SQL Injection via hits.php sortby Parameter
MyioSoft EasyGallery <5.0tr - SQL Injection
MyioSoft EasyCalendar <4.0tr - SQL Injection
Koobi CMS 4.2.3-4.3.0 - SQL Injection via Categ Parameter
webCMS Portal Edition - SQL Injection via id Parameter in documentos Action
Koobi Pro 5.7 - SQL Injection via Downloads Module categ Parameter
Multiple Time Sheets <= 5.0 - Cross-Site Scripting via Tab Parameter
WWWISIS 7.1 - Cross-Site Scripting via IsisScript lang or exprSearch Parameter
webCMS Portal Edition - SQL Injection via id_doc Parameter
Simple CMS <= 1.0.3 - SQL Injection via Area Parameter
Simple Document Management System 1.1.5 - Multiple SQL Injections
Simple Machines Forum (SMF) 1.1.8 - 'avatar' Remote PHP File Execute
Symphony CMS <2.1.1 - SQL Injection
Studio Lounge Address Book 2.5 - Unauthenticated Arbitrary File Upload via upload-file.php
SMA-DB 0.3.13 - Remote Code Execution via _page_css or _page_javascript Parameter
SimpleGallery 0.1.3 - Cross-Site Scripting via Album Parameter
SazCart < 1.5 - SQL Injection via prodid Parameter
ScriptsEz Mini Hosting Panel - Path Traversal
Siestta 2.0 - Cross-Site Scripting via Usuario Parameter
ScriptsEz Easy Image Downloader - Path Traversal
Scout Portal Toolkit <= 1.3.1 - SQL Injection via Multiple Parameters