frog
93 exploits
Active since May 2002
Portix-PHP 0.4.02 - Directory Traversal via l or topic Parameter
pMachine Free and Pro - Remote File Inclusion via pm_path Parameter
PhpMyShop 1.00 - SQL Injection via Identifiant or Password Parameter
PhpPass 2 - SQL Injection via uid and pwd Parameters
phpMyNewsletter 0.6.10 - Remote File Inclusion via Customize.php l Parameter
php-Board 1.0 - Unauthenticated Sensitive Information Exposure via Plaintext Password Storage
phptonuke.php - Cross-Site Scripting via filnavn Parameter
PHP-Nuke 6.0/6.5 Forum Module - 'viewtopic.php' SQL Injection
PHP-Nuke 6.0/6.5 Forum Module - 'viewforum.php' SQL Injection
PHP-Nuke 6.0 - Multiple Full Path Disclosure Vulnerabilities
PHP-Nuke 6.0 - Multiple Cross-Site Scripting Vulnerabilities
PHP-Nuke 5.6/6.x News Module - 'index.php' SQL Injection
PHP-Nuke 5.6/6.x News Module - 'article.php' SQL Injection
PHP-Nuke 5.6/6.x - 'banners.php' Banner Manager Password Disclosure
PEEL 1.0b - Remote Code Execution via dirroot Parameter
Nuked-KlaN 1.4b and 1.5b - Directory Traversal and Arbitrary File Read via User Langue Parameter
One or Zero Helpdesk <1.4 rc4 - RCE
one||zero Helpdesk <1.4 rc4 - SQL Injection
OpenBB 1.0.0 RC3 - Unauthenticated Authentication Bypass via Direct Request to moderator.php
OpenBB 1.0.0 RC3 - Cross-Site Scripting via myhome.php or IMG Tag
OpenBB 1.0.0 RC3 - Cross-Site Scripting
OpenTopic 2.3.1 - Cross-Site Scripting via IMG Tag Injection
myphpPageTool 0.4.3-1 - Remote File Inclusion
News Evolution 2.0 - Remote Code Execution via neurl Parameter
N/X Web Content Management System 2002 - Remote Code Execution via c_path Parameter