Y! Underground Group
7 exploits
Active since May 2007
UploadImage 1.0 - Unauthenticated Privilege Escalation via Password Change
UploadScript 1.0 - Unauthenticated Privilege Escalation via admin.php Pass Parameter
R2K Gallery 1.7 - Directory Traversal via lang2 Parameter
NavBoard 2.6.0 - Remote Code Execution via admin_config.php Parameter Injection
Monalbum 0.8.7 - Authenticated PHP Code Injection via Admin Configuration Parameters
PinkCrow Designs Gallery/maGAZIn 2.0 - Path Traversal
Opera 9.10 - 'alert()' Remote Denial of Service