milw0rm
75 exploits
Active since May 1997
Sun Solaris 10 - 'rpc.ypupdated' Remote Code Execution
WebBiscuits Modules Controller 1.1 - Path Traversal
WebPortal CMS 0.7.4 - 'code' Remote Code Execution
WebED 0.0.9 - Path Traversal via Root and Path Parameters
vBulletin 3.0-3.0.4 - Remote Code Execution via Comma Parameter
Tribiq CMS 5.0.10a and 5.0.12c - Remote File Inclusion via Template Path Parameter
Ultimate Media Script 2.0 - Remote Change Content
TuMusika Evolution <1.7R5 - Info Disclosure
TikiWiki 1.9.8 - Remote Code Execution via tiki-graph_formula.php f Parameter
scWiki 1.0 Beta 2 - Remote Code Execution via pathdot Parameter
Serendipity 0.7-beta1 - SQL Injection
PNphpBB 1.2g - Remote File Inclusion via phpbb_root_path Parameter
phpBB 2.0.12 - Session Handling Authentication Bypass (tutorial)
phpBazar 2.1.0 - Remote File Inclusion via Language_dir Parameter
phpBB 2.0.12 - Privilege Escalation
PHP-Nuke 7.4 - Privilege Escalation
PHP_CON 1.3 - Remote Code Execution via webappcfg[APPPATH] Parameter
PHP Project Management < 0.8.10 - Path Traversal via Multiple Module Parameters
ocPortal <= 1.0.3 - Remote File Inclusion via req_path Parameter
ModuleBuilder 1.0 - Path Traversal via File Parameter
Moodle 1.8.4 - Remote Code Execution
Princeclan Chess <0.8 - Info Disclosure
Messages Library 2.0 - Arbitrary Administrator Account
KML share 1.1 - Path Traversal via Layer Parameter
Joomla! Component com_rsgallery2 1.14.x/2.x - Remote Backdoor Access