Khashayar Fereidani
102 exploits
Active since Sep 2007
Mjguest 6.7 GT Rev.01 - Cross-Site Scripting via Level Parameter
LulieBlog 1.02 - SQL Injection via voircom.php id Parameter
Maian Uploader 4.0 - Stored Cross-Site Scripting via Multiple Parameters
Maian Uploader 4.0 - Stored Cross-Site Scripting via Multiple Parameters
Maian Uploader 4.0 - Stored Cross-Site Scripting via Multiple Parameters
Mambo 4.6.2 and 4.6.5 - Cross-Site Scripting via Query String and mosConfig_sitename Parameter
Mambo 4.6.2 and 4.6.5 - Cross-Site Scripting via Query String and mosConfig_sitename Parameter
Minb Is Not a Blog 0.1.0 - Remote Code Execution via quotes_to_edit Parameter
LifeType 1.2.8 - Cross-Site Scripting via newBlogUserName Parameter
Kerio Control < 8.3.2 - Authenticated SQL Injection via Statistics Print Parameters
Joomla! com_mydyngallery 1.4.2 - SQL Injection
lanai-core 0.6 - Exposure of Sensitive Information via info.php
Ignition 1.2 - 'comment' Remote Code Injection
Foojan WMS PHP Weblog 1.0 - SQL Injection via Story Parameter
Greenwood PHP Content Manager 0.3.2 - Path Traversal via Content Path Parameter
EJ3 BlackBook 1.0 - Cross-Site Scripting via Multiple Parameters
EasyNews 4.0 - Path Traversal via Lang Parameter
MyioSoft EasyPublish <3.0tr - SQL Injection
FaScript FaPhoto 1.0 - SQL Injection
FaScript FaPersianHack 1.0 - SQL Injection via id Parameter
FaScript FaPersian Petition - SQL Injection via show.php id Parameter
FaScript FaName 1.0 - SQL Injection via id Parameter
FaScript FaMp3 1.0 - SQL Injection via show.php id Parameter
EJ3 BlackBook 1.0 - Cross-Site Scripting via Multiple Parameters
MyioSoft EasyE-Cards <3.10a - SQL Injection