Kacper
159 exploits
Active since Dec 2003
Lanifex Database of Managed Objects < 2.3_beta - Remote File Inclusion via _incMgr Parameter
Klinza Professional CMS <5.0.1 - RCE
KGB < 1.9 - Directory Traversal and Arbitrary File Execution via skinnn Parameter
KGB 1.87 - Remote File Inclusion via Engine Parameter
JPortal 2 - SQL Injection via Mailer to Parameter
PHPOutsourcing IdeaBox 1.1 - Remote Code Execution via gorumDir Parameter
JaxUltraBB 2.0 - Remote Code Execution via delete.php contents parameter
jaf_cms 4.0 RC2 - Remote Code Execution via URL Parameter Injection
iziContents RC6 - Remote Code Execution
Invisionix Roaming System <0.2 - RCE
interact 2.2 - Remote File Inclusion via CONFIG[BASE_PATH] or CONFIG[LANGUAGE_CPATH] Parameter
Innovate Portal 2.0 - 'acp.php' Remote Code Execution
Cameron McKay Informium 0.12.0 - RCE
inccms_core < 1.0.0 - Remote File Inclusion via inc_dir Parameter
IMGallery <= 2.5 - Authenticated Arbitrary PHP File Upload via Multiple Extensions
Imageview < 5 - Directory Traversal via User Settings Cookie
barnraiser igloo < 0.1.9 - Remote File Inclusion via Wiki.php c_node[class_path] Parameter
Hot Open Tickets <11012004_ver2f - RCE
GGCMS 1.1.0 RC1 and earlier - Directory Traversal and Arbitrary PHP Code Injection via subpageName Parameter
Guestbara < 1.2 - Unauthenticated Admin Account Modification via Configuration Parameter Injection
Guesbara 1.2 - Administrator Password Change
Fundanemt <2.2.0.1 - Command Injection
frogss_cms < 0.7 - SQL Injection via dzial or t Parameter
QBoard <1.1 - Remote Code Execution
Free Image Hosting < 1.0 - Remote File Inclusion via AD_BODY_TEMP Parameter