NoGe
100 exploits
Active since Oct 2007
Minimal ABlog 0.4 - Unauthenticated Remote Code Execution via File Upload
Minimal ABlog 0.4 - SQL Injection via id Parameter
NP_Gallery plugin 0.94 - Remote Code Execution via DIR_NUCLEUS Parameter
com_awdwall < 1.5.4 - SQL Injection via cbuser Parameter
Aperto Blog 0.1.1 - SQL Injection
ZAPms < 1.41 - SQL Injection via Product PID Parameter
X7 Chat < 2.0.1 - Path Traversal and Arbitrary File Execution via Help File Parameter
Ultrize TimeSheet 1.2.2 - Remote Code Execution via config[include_dir] Parameter
TalkBack 2.2.7 - Remote Code Execution via PHP File Inclusion
TalkBack < 2.3.6.2 - Remote File Inclusion via Language Parameter
Siteframe 3.2.x - Information Exposure via phpinfo.php Direct Request
SimpNews 2.16.2 - Multiple SQL Injections
SmartCMS - 'index.php?idx' SQL Injection
Rapidsendit Clone Script - 'admin.php' Insecure Cookie Authentication Bypass
Regental Medien - Blind SQL Injection
PlaySms 0.9.5.2 - Remote File Inclusion
Pop Up News module 2.0 - SQL Injection via itemid Parameter
Pie 0.5.3 - Remote Code Execution via PHP File Inclusion
PageTree CMS 0.0.2 BETA 00001 - Remote Code Execution via GLOBALS[PT_Config][dir][data] Parameter
PHP Pro Bid - SQL Injection via auction_id Parameter
osDate 2.1.9 and 2.5.4 - Remote Code Execution via config[forum_installed] Parameter
NP_Gallery plugin 0.94 - SQL Injection via id Parameter
NP_Twitter Plugin 0.8-0.9 - Remote Code Execution via DIR_PLUGINS Parameter
Multi SEO phpBB 1.1.0 - Remote Code Execution via pfad Parameter
minimal-ablog 0.4 - Unauthenticated Privilege Escalation via uploader.php