StAkeR
100 exploits
Active since Jan 2006
MauryCMS <= 0.53.2 - SQL Injection via Rss.php c Parameter
MAXdev MDPro/Postnuke - SQL Injection
Mediatheka 4.2 - SQL Injection via User Parameter
MemHT Portal 4.0.1 - Delete All Private Messages
Miltenovik Manojlo MemHT Portal <4.0.1 - RCE
Micro CMS 0.3.5 - Unauthenticated Administrative Account Manipulation
Mic_Blog 0.0.3 - SQL Injection via cat user or site Parameter
miniportail 2.2 - Cross-Site Scripting via Search String
Limbo CMS com_privmsg - SQL Injection via id Parameter
LightNEasy sql/no-db 2.2.x - System Configuration Disclosure
Liberia CMS 1.12 - SQL Injection via libera_staff_user Cookie Parameter
Keller Web Admin CMS 0.94 Pro - Path Traversal via Action Parameter
JMovies 1.1 - SQL Injection via id Parameter
iGaming CMS 2.0 Alpha 1 - SQL Injection via search.php keywords parameter
IP Reg < 0.4 - SQL Injection via user_name Parameter
iGaming CMS < 1.5 - SQL Injection via browse Parameter
Galatolo WebManager 1.0 - Path Traversal via Plugin or Com Parameter
H2O-CMS 3.4 - Remote Command Execution
H2O-CMS 3.4 - PHP Code Injection / Cookie Authentication Bypass
globsy < 1.0 - Arbitrary File Write via globsy_edit.php
Galatolo WebManager < 1.3a - SQL Injection via id Parameter
Fuzzylime CMS <3.03a - Path Traversal
Flatnuke 2.7.1 - 'level' Privilege Escalation
EggBlog 4.1.1 - Local Directory Traversal
Dokeos Lms 1.8.5 - 'Include' Remote Code Execution