Vipsta

3 exploits Active since Dec 2005
CVE-2006-4427 EXPLOITDB text WORKING POC
eFiction <2.0.7 - Auth Bypass
index.php in eFiction before 2.0.7 allows remote attackers to bypass authentication and gain privileges by setting the (1) adminloggedin, (2) loggedin, and (3) level parameters to "1".
CVE-2005-4136 EXPLOITDB text WORKING POC
FAD Solutions Drzes Hms - XSS
Cross-site scripting (XSS) vulnerability in login.php in DRZES HMS 3.2 allows remote attackers to inject arbitrary web script or HTML via the customerEmailAddress parameter.
CVE-2006-4592 EXPLOITDB text WORKING POC
8pixel.net Simple Blog - SQL Injection
Incomplete blacklist vulnerability in default.asp in 8pixel.net Simple Blog 2.3 and earlier allows remote attackers to conduct SQL injection attacks via ">" characters in the id parameter, which are not filtered by the protection mechanism.