StAkeR
100 exploits
Active since Jan 2006
Yerba < 6.3 - Remote Code Execution via Path Traversal in mod Parameter
fuzzylime_cms <= 3.03a - Remote File Inclusion via Directory Traversal
Galatolo WebManager 1.3a - Cross-Site Scripting via Tag Parameter
Galatolo WebManager 1.0 - Cross-Site Scripting via result.php key Parameter
Easy-Script Wysi Wiki Wyg 1.0 - Path Traversal
miniPortail 2.2 - Path Traversal via lng Parameter
Wysi Wiki Wyg 1.0 - Info Disclosure
NetRisk < 2.0 - SQL Injection via id Parameter
Liberia CMS < 1.12 - SQL Injection via libera_staff_pass Cookie Parameter
Wysi Wiki Wyg 1.0 - Cross-Site Scripting via Index.php s Parameter
Wysi Wiki Wyg 1.0 - Remote Password Retrieve
XOOPS 2.3.2 - 'mydirname' PHP Remote Code Execution
Yerba SACphp < 6.3 - Unauthenticated Authentication Bypass via galleta[sesion] Cookie
WoltLab Burning Board <3.0.1 - CSRF
webSPELL 4.2.0d (Linux) - Local File Disclosure
Vikingboard 0.2 Beta - 'register.php' SQL Column Truncation Unauthorized Access
nicLOR Vibro-School-CMS - SQL Injection via nID Parameter
Vikingboard 0.2 Beta - SQL Column Truncation
WebPortal CMS < 0.7.4 - SQL Injection via download.php aid Parameter
webSPELL 4.01.02 - 'id' Remote Edit Topics
TR News 2.1 - 'login.php' Remote Authentication Bypass
Upb - Cross-Site Scripting
SlimCMS 1.0.0 - Unauthenticated Administrative User Creation via redirect.php
slimcms < 1.0.0 - SQL Injection via edit.php pageID Parameter
Sports Clubs Web Panel 0.0.1 - Path Traversal via Index.php p Parameter