Stefan Schurtz
58 exploits
Active since Jun 2008
Admidio 2.3.5 - Multiple Vulnerabilities
Serendipity < 1.6.1 - Cross-Site Scripting via serendipity[textarea] Parameter
php-address_book < 4.0 - SQL Injection via id Parameter
php-address_book < 3.1.5 - Cross-Site Scripting via Group Parameter
Rejected
PHP Address Book < 7.0 - Cross-Site Scripting via Preferences from Parameter
PHP Address Book < 6.2.11 - SQL Injection via to_group or id Parameter
AlienVault Open Source Security Information Management 3.1 - Authenticated SQL Injection via time[0][0] Parameter
zFTPServer Suite 6.0.0.52 - Authenticated Path Traversal via RMD Command
KnFTPd 1.0.0 - Authenticated Denial of Service via FEAT Command Buffer Overflow
Yet Another CMS 1.0 - SQL Injection / Cross-Site Scripting
Wikidforum 2.10 - SQL Injection via Advanced Search Parameters
Wikidforum 2.10 - Cross-Site Scripting via Search Field or Advanced Search Parameters
WordPress Integrator 1.32 - Cross-Site Scripting via redirect_to Parameter
Wikidforum 2.10 - Cross-Site Scripting via Search Field or Advanced Search Parameters
WordPress Plugin Feedweb - 'wp_post_id' Cross-Site Scripting
VertrigoServ 2.25 - Cross-Site Scripting via ext Parameter
WebsiteBaker Addon Concert Calendar 2.1.4 - Multiple Vulnerabilities
TikiWiki CMS/Groupware < 8.1 - Cross-Site Scripting via tiki-cookie-jar.php Parameters
Site@School 2.4.10 - '/index.php' Cross-Site Scripting / SQL Injection
SQLiteManager 1.2.4 - Cross-Site Scripting via dbsel or nsextt Parameter
SQLiteManager 1.2.4 - Cross-Site Scripting via dbsel or nsextt Parameter
Serendipity < 1.6.1 - SQL Injection via serendipity[plugin_to_conf] Parameter
S9Y Serendipity Freetag-plugin 3.21 - 'index.php' Cross-Site Scripting
SilverStripe < 2.3.13 and 2.4.x < 2.4.6 - Cross-Site Scripting via QUERY_STRING to Template Placeholders