laurent gaffie
170 exploits
Active since Dec 2004
PHP JackKnife - Cross-Site Scripting via Multiple Parameters
NetClassifieds Premium Edition - SQL Injection via s_user_id Parameter
NetClassifieds - SQL Injection via CatID or ItemNum Parameter
LoveCMS 1.4 - Cross-Site Scripting via id Parameter
LoveCMS 1.4 - Path Traversal via Step or Load Parameter
LoveCMS 1.4 - Path Traversal via Step or Load Parameter
Koan Software Mega Mall - SQL Injection via Multiple Parameters
LoveCMS 1.4 - Remote Code Execution via Install Step Parameter
Koan Software Mega Mall - SQL Injection via Multiple Parameters
SAMEDIA LandShop - SQL Injection via ls.php infield Parameter
SAMEDIA LandShop - Cross-Site Scripting via ls.php Parameters
freewebshop < 2.2.2 - Cross-Site Scripting via cat Parameter
CVSS 6.1
freewebshop < 2.2.2 - Path Traversal via Page Parameter
eNdonesia 8.4 - SQL Injection via artid or bid Parameter
eNdonesia 8.4 - SQL Injection via artid or bid Parameter
DGNews 2.1 - SQL Injection via catid Parameter
cpCommerce - SQL Injection via manufacturer.php id_manufacturer Parameter
bitweaver <= 1.3.1 - Information Disclosure via SQL Error in sort_mode Parameter
bitweaver <= 1.3.1 - SQL Injection via Newsletter Edition tk Parameter
bitweaver <= 1.3.1 - Information Disclosure via SQL Error in sort_mode Parameter
bitweaver <= 1.3.1 - Stored Cross-Site Scripting via Article Title, Blog Post Title, or Wiki Description
bitweaver <= 1.3.1 - Information Disclosure via SQL Error in sort_mode Parameter
bitweaver <= 1.3.1 - Information Disclosure via SQL Error in sort_mode Parameter
AIOCP < 1.3.007 - SQL Injection via Multiple Parameters
All In One Control Panel <1.3.007 - Remote Code Execution