Juan Galiana Lara
28 exploits
Active since Dec 2007
Pandora FMS < 3.1 - Remote File Inclusion and Arbitrary File Manipulation via Page Parameter
Pandora FMS < 3.1 - Remote Code Execution via UNC Share Pathname Bypass
Pandora FMS < 3.1 - Unauthenticated Authentication Bypass via Empty loginhash_pwd
WP-Forum < 2.4 - SQL Injection via Search Max Parameter
WordPress MU 1.2.2 < 1.3.1 - '/wp-includes/wpmu-functions.php' Cross-Site Scripting
WordPress MU < 2.7 - Cross-Site Scripting via HTTP Host Header
WordPress MU < 2.6 - Cross-Site Scripting via s or ip_address Parameter
QuiXplorer 2.x - 'lang' Local File Inclusion
Pandora FMS < 3.1 - Authenticated SQL Injection via id_group or group_id Parameter
Pandora FMS < 3.1 - Unauthenticated Authentication Bypass via Empty loginhash_pwd
Pandora FMS < 3.1 - Remote Code Execution via argv[1] Parameter
Pandora FMS < 3.1 - Authenticated OS Command Injection via Network Map Layout Parameter
Pandora FMS < 3.1 - Authenticated SQL Injection via id_group or group_id Parameter
php-calendar 1.1 - Path Traversal and Arbitrary File Execution via configfile Parameter
php-calendar 1.1 - Path Traversal and Arbitrary File Execution via configfile Parameter
OpenBiblio <= 0.5.2-pre4 - Cross-Site Scripting via Multiple Parameters
OpenBiblio <= 0.5.2-pre4 - Cross-Site Scripting via Multiple Parameters
OpenBiblio <= 0.5.2-pre4 - Cross-Site Scripting via Multiple Parameters
FAQMasterFlexPlus <1.5-1.52 - SQL Injection
FAQMasterFlexPlus - Cross-Site Scripting via cat_name Parameter
Joomla! / Mambo Component eXtplorer - Code Execution
Joomla! < 1.5.12 - Cross-Site Scripting via HTTP_REFERER Header
Horde Application Framework < 3.3.6 - Cross-Site Scripting via PATH_INFO
Horde Application Framework < 3.3.6 - Cross-Site Scripting via PATH_INFO
Horde Application Framework < 3.3.6 - Cross-Site Scripting via PATH_INFO