r0t
258 exploits
Active since Oct 2000
aasi media Net Clubs Pro - Cross-Site Scripting via Multiple Parameters
interaktiv.shop < 5 - Cross-Site Scripting via pn or sbeg Parameters
IntelliLink Pro <= 5.06 - Cross-Site Scripting via URL Parameter in addlink_lwp.cgi and ID Parameters in edit.cgi
IntelliLink Pro <= 5.06 - Cross-Site Scripting via URL Parameter in addlink_lwp.cgi and ID Parameters in edit.cgi
Easy Search System <= 1.1 - Cross-Site Scripting via q Parameter
SibSoft CommuniMail < 1.2 - Cross-Site Scripting via list_id and form_id Parameters
SibSoft CommuniMail < 1.2 - Cross-Site Scripting via list_id and form_id Parameters
BlankOL < 1 - Cross-Site Scripting via File or Function Parameter
PerlCoders BannerFarm <= 2.3 - Cross-Site Scripting via aff and cat Parameters
AWStats 6.5 <1.857 - Info Disclosure
AWStats < 6.5 - Cross-Site Scripting via Config Parameter
realestateZONE < 4.2 - Cross-Site Scripting via bamin, bemin, pmin, or state Parameters
CFMagic Magic List Pro < 2.5 - SQL Injection via ListID Parameter
CFMagic Magic Forum Personal < 2.5 - SQL Injection via ForumID or ThreadID Parameter
CFMagic Magic Forum Personal < 2.5 - SQL Injection via ForumID or ThreadID Parameter
Magic Book Personal and Professional 2.0 - Cross-Site Scripting via StartRow Parameter
SiteSearch Indexer < 3.5 - Cross-Site Scripting via searchField Parameter
FusionZONE CouponZONE <4.2 - SQL Injection
fusionZONE couponZONE 4.2 - Cross-Site Scripting via local.cfm srchfor and srchby Parameters
classifiedZONE < 1.2 - Cross-Site Scripting via rtn Parameter
CF_Nuke <= 4.6 - Directory Traversal via Sector or Page Parameter
cf_nuke < 4.6 - Cross-Site Scripting via Topic, Newsid, or Cat Parameter
Cartweaver ColdFusion < 2.16.11 - SQL Injection via Category, Keywords, or ProdID Parameter
Helm Web Hosting Control Panel <3.2.10 - XSS
Helm Web Hosting Control Panel <3.2.10 - XSS