ZoRLu
253 exploits
Active since Feb 2007
ScriptsFeed Realtor Classifieds System - Authenticated Remote Code Execution via Profile Logo Upload
ScriptsFeed Recipes Listing Portal - Authenticated Remote Code Execution via Recipe Photo Upload
ScriptsFeed Realtor Classifieds System - Authenticated Remote Code Execution via Profile Logo Upload
ScriptsFeed Recipes Listing Portal - Authenticated Remote Code Execution via Recipe Photo Upload
Logz CMS 1.3.1 - Cross-Site Scripting via Art Parameter
Zanfi Autodealers CMS AutOnline - SQL Injection via pageid Parameter
Logoshows BBS 2.0 - Info Disclosure
Apartment Search Script - Unauthenticated Arbitrary File Upload via editimage.php GIF Header Bypass
ScriptsFeed Recipes Listing Portal - Authenticated Remote Code Execution via Recipe Photo Upload
ScriptsFeed Realtor Classifieds System - Authenticated Remote Code Execution via Profile Logo Upload
Zeeproperty 1.0 - Authenticated Arbitrary File Upload via Profile Photo
Merlix Educate Server - Information Disclosure via Direct Request to config.asp and users.asp
phpmygallery 1.0 beta2 - Remote File Inclusion via Lang Parameter Path Traversal
PHPmyGallery 1.0 beta2 - Remote Code Execution via confdir Parameter
Dragan Mitic Apoll 0.7 beta and 0.7.5 - SQL Injection via User Parameter
Chipmunk Topsites - SQL Injection via Username Parameter
MyioSoft EasyBookMarker 4.0 - SQL Injection
Merlix Teamworx Server - SQL Injection
ClanLite 2.2006.05.20 - Cross-Site Scripting via annee Parameter
Bandwebsite 1.5 - SQL Injection
Clean CMS 1.5 - SQL Injection via full_txt.php id Parameter
ASP Template Creature - Media Level < SQL Injection
TurnkeyForms Text Link Sales - SQL Injection
Baby Web Server 2.7.2.0 - Arbitrary File Disclosure
Mini-stream RM-MP3 Converter <3.1.2.1.2010.03.30 - Buffer Overflow