Oriol Torrent Santiago

2 exploits Active since May 2005
CVE-2006-0244 EXPLOITDB text WRITEUP
Phpxplorer - Path Traversal
Directory traversal vulnerability in workspaces.php in phpXplorer 0.9.33 allows remote attackers to include arbitrary files via a .. (dot dot) and trailing null byte (%00) in the sShare parameter. NOTE: a followup post claims that this is not a vulnerability since the functionality of phpXplorer supports the upload of PHP files, which would not cross privilege boundaries since the PHP functionality would support read access outside the web root
CVE-2005-0992 EXPLOITDB text WORKING POC
phpMyAdmin <2.6.2-rc1 - XSS
Cross-site scripting (XSS) vulnerability in index.php in phpMyAdmin before 2.6.2-rc1 allows remote attackers to inject arbitrary web script or HTML via the convcharset parameter.