Kacper
159 exploits
Active since Dec 2003
phpbp RC3 (2.204) and earlier - SQL Injection via Comment Forum
JAF CMS 4.0 RC1 - Remote File Inclusion via Forum Website Parameter
Php Blue Dragon <2.9.1 - SQL Injection
Php Blue Dragon <= 2.9.1 - Cross-Site Scripting via m Parameter
David Bennett PHP-Post <1.0 - Path Traversal
jPORTAL 2 - SQL Injection via Mailer to Parameter
Docebo < 3.0.3 - Remote File Inclusion via GLOBALS Overwrite
Open Solution Quick.Cart < 2.2 - Directory Traversal via sLanguage Cookie
F3Site 2.1 - Cross-Site Scripting via News Comment Autor Field
Dmitry Sheiko SAPID Shop <1.2 - RCE
SAPID CMS 123 rc3 - Remote Code Execution via root_path Parameter
YapBB < 1.2_beta2 - Remote File Inclusion via GLOBALS[include_Bit] Parameter
wpQuiz 2.7 - SQL Injection via id Parameter
Xtreme/Ditto News 1.0 - 'post.php' Remote File Inclusion
yanocc < 0.1.0 - Remote File Inclusion via Lang Parameter Path Traversal
WSN Forum < 1.3.4 - Remote Code Execution via Avatar Image Path Manipulation
Wikiwig - Remote File Inclusion via WK[wkPath] Parameter
Paolo Palmonari Photoracer <1.0 - SQL Injection
Webspotblogging 3.0.1 - Remote Code Execution via Path Parameter in Multiple Scripts
WebText CMS <0.4.5.2 - Code Injection
VideoDB 2.2.1 - Remote File Inclusion via config[pdf_module] Parameter
WebprojectDB <= 0.1.3 - Remote File Inclusion via INCDIR Parameter
VerliAdmin < 0.3 - Authenticated Remote File Inclusion via q Parameter
ttCMS 4 and earlier - Remote File Inclusion via lib_path Parameter
Florian Amrhein NewsPortal < 0.37 - Remote File Inclusion via file_newsportal Parameter