meto5757

10 exploits Active since Sep 2006
CVE-2006-5074 EXPLOITDB text WRITEUP
PHP Invoice 2.2 - XSS
Cross-site scripting (XSS) vulnerability in home.php in PHP Invoice 2.2 allows remote attackers to inject arbitrary web script or HTML via the alert parameter.
CVE-2006-5057 EXPLOITDB text WRITEUP
Ktools.net PhotoStore - XSS
Multiple cross-site scripting (XSS) vulnerabilities in Ktools.net PhotoStore allow remote attackers to inject arbitrary web script or HTML via the (1) gid parameter in details.php, or the (2) photogid parameter in view_photog.php.
CVE-2006-5057 EXPLOITDB text WRITEUP
Ktools.net PhotoStore - XSS
Multiple cross-site scripting (XSS) vulnerabilities in Ktools.net PhotoStore allow remote attackers to inject arbitrary web script or HTML via the (1) gid parameter in details.php, or the (2) photogid parameter in view_photog.php.
CVE-2006-5056 EXPLOITDB text WRITEUP
Opial Audio/Video Download Mgmt 1.0 - XSS
Cross-site scripting (XSS) vulnerability in index.php in Opial Audio/Video Download Management 1.0 allows remote attackers to inject arbitrary web script or HTML via the destination parameter in the Login view.
EIP-2026-109930 EXPLOITDB text WRITEUP
NextAge Cart - 'index.php' Multiple Cross-Site Scripting Vulnerabilities
EIP-2026-108952 EXPLOITDB text WORKING POC
K2News Management 1.3 - 'Ratings.php' Cross-Site Scripting
CVE-2006-4915 EXPLOITDB text WRITEUP
Innovate Portal 2.0 - XSS
Cross-site scripting (XSS) vulnerability in index.php in Innovate Portal 2.0 allows remote attackers to inject arbitrary web script or HTML via the content parameter.
CVE-2006-4923 EXPLOITDB text WRITEUP
eSyndiCat Portal System - XSS
Cross-site scripting (XSS) vulnerability in search.php in eSyndiCat Portal System allows remote attackers to inject arbitrary web script or HTML via the what parameter.
CVE-2006-5164 EXPLOITDB text WRITEUP
digiSHOP 4.0 - XSS
Multiple cross-site scripting (XSS) vulnerabilities in cart.php in Sum Effect Software digiSHOP 4.0 allow remote attackers to inject arbitrary web script or HTML via the (1) sortBy or (2) search parameters.
CVE-2006-5060 EXPLOITDB text WRITEUP
Jamroom 3.0.16 - XSS
Cross-site scripting (XSS) vulnerability in login.php in Jamroom 3.0.16 and possibly earlier allows remote attackers to inject arbitrary web script or HTML via the forgot parameter in the forgot mode.