ZoRLu
253 exploits
Active since Feb 2007
PHP Site Lock 2.0 - Unauthenticated Authentication Bypass via Cookie Manipulation
PaymentProcessorScript.net - SQL Injection
PG Job Site Pro - SQL Injection via poll_view_id Parameter
PG Real Estate Solution - SQL Injection
PHCDownload 1.1 - SQL Injection via Admin Index Hash Parameter
PHCDownload 1.1 - Cross-Site Scripting via Step Parameter
PHP Classifieds 6.20 - Multiple Cross-Site Scripting / Authentication Bypass Vulnerabilities
PHP-Nuke DownloadsPlus Module - Unrestricted File Upload and Remote Code Execution via .htm .html or .txt Extensions
Online Password Manager 4.1 - Insecure Cookie Handling
ooComments 1.0 - Remote File Inclusion via PathToComment Parameter
CVSS 9.8
ooComments 1.0 - Remote File Inclusion via PathToComment Parameter
CVSS 9.8
MyioSoft EasyBookMarker 4.0 - SQL Injection
MyioSoft AjaxPortal 3.0 - SQL Injection
My Web Doc 2000 Administration Pages - Multiple Authentication Bypass Vulnerabilities
MyBoard 1.0.12 - Cross-Site Scripting via rep.php id Parameter
News-Template 0.5beta - 'print.php' Multiple Cross-Site Scripting Vulnerabilities
MyioSoft EasyCalendar 4.0 - SQL Injection
Logz podcast CMS 1.3.1 - SQL Injection via art Parameter
Merlix Teamworx Server - Info Disclosure
MatPo Link 1.2 Beta - SQL Injection via id Parameter
Maarch LetterBox 2.8 - SQL Injection
Logoshows BBS 2.0 - Authentication Bypass via Cookie Manipulation
Le Forum - 'Fichier_Acceuil' Remote File Inclusion
Joovili 3.1.4 - Unauthenticated Authentication Bypass via Cookie Manipulation
Jax Guestbook 3.1, 3.31, 3.50 - Cross-Site Scripting via gmt_ofs and language Parameters