Stack
155 exploits
Active since Mar 2006
Ocean12 FAQ Manager Pro 1.0 - SQL Injection via ID Parameter in Cat Action
myktools 2.4 - Unauthenticated Database Backup Exposure via mykdownload.php
NatterChat 1.1 and 1.12 - SQL Injection via Username and Password Parameters
NatterChat 1.1 - Unauthenticated Authentication Bypass via Direct Admin Endpoint Access
MyShoutPro 1.2 - Unauthenticated Authentication Bypass via admin_access Cookie
Graphiks MyForum 1.3 - Unauthenticated Authentication Bypass via Cookie Manipulation
LiteNews 0.1 - SQL Injection via id Parameter
Messages Library 2.0 - Insecure Cookie Handling
Messages Library 2.0 - Arbitrary Delete Message
Liquidsilvercms - Path Traversal
LanSuite 3.3.2 - 'FCKeditor' Arbitrary File Upload
Libra File Manager <= 1.18 - Unauthenticated Authentication Bypass via Cookie Manipulation
KwsPHP ConcoursPhoto Module - SQL Injection via C_ID Parameter
pyxicom actualite 1.0 - SQL Injection via id Parameter
com_pinboard - SQL Injection via Task Parameter
Joomla! Component com_iJoomla_archive - Blind SQL Injection
Joomla com_biblestudy < 6.0.7b - SQL Injection via id Parameter
Free PHP VX Guestbook 1.06 - Unauthenticated Authentication Bypass via Cookie Manipulation
HIOX Random Ad 1.3 - Arbitrary Add Admin
HIOX Browser Statistics 2.0 - Arbitrary Add Admin
H2O-CMS 3.4 - Insecure Cookie Handling
Galatolo WebManager 1.0 - SQL Injection via view.php id Parameter
FreeCMS.us 0.2 - 'FCKeditor' Arbitrary File Upload
EntertainmentScript 1.4.0 - Path Traversal via Page Parameter
explay_cms < 2.1 - Unauthenticated Authentication Bypass via Login Cookie