irk4z
24 exploits
Active since Dec 2005
WordPress < 2.6.2 - Unauthenticated Password Reset via SQL Column Truncation
1024 CMS 1.3.1 - SQL Injection via IP Parameter
GuppY 4.6.3 - Path Traversal and Remote File Inclusion via selskin Parameter
izicontents < 1_rc6 - Remote Code Execution via gsLanguage Parameter
izicontents < 1_rc6 - Remote Code Execution via URL Parameter Injection
TinyMCE Compressor PHP <1.06 - Path Traversal
Skype extension BETA 2.2.0.95 - Code Injection
WordPress < 2.8.3 - Unauthenticated Password Reset via Array Parameter Bypass
Quicksilver Forums 1.4.1 - SQL Injection
PsNews 1.1 - Directory Traversal via Newspath Parameter
PNphpBB2 1.2i - Path Traversal via phpEx Parameter
phpbp 2 RC3 (2.204) FIX 4 - SQL Injection via Banner ID Parameter
PHP-Fusion 6.01.15/7.00.1 - SQL Injection
miniBB 2.1 - SQL Injection via Table Parameter
mBlog 1.2 - Path Traversal via Page Parameter
Mambo < 4.6.4 - Remote Code Execution via mosConfig_absolute_path Parameter
Joomla XStandard - Directory Traversal via X_CMS_LIBRARY_PATH HTTP Header
jPORTAL 2.3.1 & UserPatch - 'forum.php' Remote Code Execution
izicontents < 1_rc6 - Remote File Inclusion via Path Traversal in admin_home or rootdp Parameter
GuppY <4.6.3, 4.5.16 - Path Traversal
fuzzylime (cms) 3.01 - Remote Code Execution via admindir Parameter
ADOdb Lite < 1.42 - Remote Code Execution via last_module Parameter
CMSimple 3.1 - Path Traversal and Arbitrary File Execution via sl Parameter
1024 CMS 1.3.1 - Path Traversal via Lang or Theme Parameters