athos
26 exploits
Active since Apr 2008
XOOPS 2.3.2 - 'mydirname' PHP Remote Code Execution
Wysi Wiki Wyg 1.0 - Remote Password Retrieve
webSPELL 4.01.02 - 'id' Remote Edit Topics
Upb - Cross-Site Scripting
slimcms < 1.0.0 - SQL Injection via edit.php pageID Parameter
SolarCMS 0.53.8 and 1.0 - SQL Injection via Forum.php cat Parameter
Private Messaging System for PunBB < 1.2.3 - Remote File Inclusion via pun_user[language] Parameter
PunPortal module - Path Traversal via pun_user[language] Parameter
PNphpBB2 <= 1.2i - Remote File Inclusion via ModName Parameter
phpBB Tag Board < 4.0 - SQL Injection via id Parameter
PHP-Fusion <6.01.14, <6.00.307 - SQL Injection
MauryCMS <= 0.53.2 - SQL Injection via Rss.php c Parameter
Lizardware CMS < 0.6.0 - SQL Injection via Administrator Index User Parameter
Mediatheka 4.2 - SQL Injection via User Parameter
JMovies 1.1 - SQL Injection via id Parameter
e-vision CMS <= 2.0.2 - Path Traversal via Adminlang Cookie or Module Parameter
DeluxeBB < 1.2 - SQL Injection via Delete Action Parameter
CuteNews 1.4.6 - 'ip ban' Authorized Cross-Site Scripting / Command Execution
Nodstrum MySQL Calendar <1.2 - SQL Injection
All Club CMS <= 0.0.2 - Exposure of Sensitive Information via Direct Request to accms.dat
2532/Gigs 1.2.2 Stable - Remote Command Execution
2532gigs 1.2.2 - SQL Injection via Username and Password Parameters
SeaMonkey 1.1.14 - Denial of Service
Konqueror 4.1 - Cross-Site Scripting / Remote Crash
KDE Konqueror 4.1 - Multiple Cross-Site Scripting / Denial of Service Vulnerabilities