frog
93 exploits
Active since May 2002
N/X Web Content Management System 2002 - Remote Code Execution via c_path Parameter
MySimple News 1.0 - Info Disclosure
MySimpleNews - Remote Code Execution via users.php Parameter Injection
MyRoom 3.5 GOLD - 'save_item.php' Arbitrary File Upload
MyPHPLinks 2.1.9 and 2.2.0 - SQL Injection via idsession Parameter
Mambo Open Source 4.0.14 - 'PollBooth.php' Multiple SQL Injections
MiniBB 1.2 - Cross-Site Scripting
MidiCart PHP Unauthenticated Arbitrary File Upload and Information Disclosure
CVSS 9.1
MidiCart PHP Unauthenticated Arbitrary File Upload and Information Disclosure
CVSS 9.1
mcNews 1.x - File Disclosure
Mambo 4.5 Server - 'user.php' Script Unauthorized Access
Killer Protection 1.0 - Info Disclosure
Invision Power Board 1.1.1 - Remote Code Execution via root_path Parameter
FreeNews 2.1 - Include Undefined Variable Command Execution
GuppY 2.4 - Remote File Access
GuppY 2.4 - Cross-Site Scripting
GTCatalog 0.8.16/0.9 - Remote File Inclusion
gBook 1.4 - Unauthenticated Authentication Bypass via Login Parameter
EternalMart Mailing List Manager <1.32 - RCE
D-Forum 1.00-1.11 - Remote Code Execution via my_header or my_footer Parameter
E-theni - Remote Code Execution via rep_include Parameter
DotBr 0.1 - Remote Command Execution via cmd Parameter
DotBr 0.1 - Remote Command Execution via cmd Parameter
DCP-Portal 5.0.1 - 'lib.php?Root' Remote File Inclusion
DCP-Portal 5.0.1 - 'editor.php?Root' Remote File Inclusion