rgod
471 exploits
Active since Jul 2005
Marvell QConvergeConsole < 5.5.0.85 - Unauthenticated Path Traversal and Arbitrary File Deletion via QLogicDownloadImpl
CVSS 9.4
NetIQ Privileged User Manager < 2.3.1 HF2 - Unauthenticated Password Change via AMF Request
Unclassified NewsBoard <= 1.6.1_patch1 - Directory Traversal via ABBC[Config][smileset] Parameter
Sugar Suite < 4.0 beta - Directory Traversal via acceptDecline.php beanFiles Parameter
ADOdb for PHP < 4.70 - Unauthenticated SQL Injection via server.php sql Parameter
RunCMS < 1.2 - Remote Code Execution via bbPath[path] Parameter
Pivot 1.30 RC2 - Privilege Escalation
Pivot 1.30 RC2 - Remote Code Execution via Paths[extensions_path] Parameter
phpgedview 3.3.7 - Directory Traversal via PGV_BASE_DIRECTORY Parameter
PHP-Fusion 6.00.306- - Authenticated RCE
Nodez 4.6.1.1 - Directory Traversal via op Parameter
Mybulletinboard - SQL Injection
Rejected
Apache Tomcat < 5.5.35, 6.x < 6.0.35, 7.x < 7.0.23 - Denial of Service via Hash Collision in Form Parameters
PHP < 5.3.9 - Denial of Service via Hash Collision in Form Parameter Handling
Apache Geronimo < 2.2.1 - Denial of Service via Predictable Hash Collisions
Flatnuke 2.5.6 - Directory Traversal via Read Module ID Parameter
FlatNuke 2.5.5 - Remote Code Execution via CRLF Injection in Signature Field
bitweaver 1.3 - Cross-Site Scripting via Error and Feedback Parameters
bitweaver 1.3 - Information Disclosure via Invalid sort_mode Parameter
Foxit Reader Plugin 2.2.1.530 - Buffer Overflow
Foxit Reader Plugin 2.2.1.530 - Buffer Overflow
RealArcade 2.6.0.445 ActiveX - Exec Method Command Execution
RealArcade 2.6.0.445 ActiveX - Exec Method Command Execution
RunCms < 1.5.2 - SQL Injection via executed_queries Array Parameter