rgod
471 exploits
Active since Jul 2005
PHP Album 0.3.2.3 - Remote File Inclusion via language.php data_dir Parameter
php121_instant_messenger < 1.4 - SQL Injection and Remote Code Execution via sess_username Cookie
php-update < 2.7 - SQL Injection via newmessage, newname, newwebsite, or newemail Parameter
PHP-Stats <0.1.9.1b - Code Injection
php-stats < 0.1.9.1b - SQL Injection via HTTP Header or IP Parameter
php-stats < 0.1.9.1b - SQL Injection via HTTP Header or IP Parameter
PHP-Stats 0.1.9.1 - Remote Commans Execution
papoo < 3.0.0_rc3 - SQL Injection via forumthread.php msgid Parameter
PHP-Nuke 7.8 - SQL Injection / Remote Command Execution
PHP-Fusion 6.00.306 - Directory Traversal and Arbitrary File Execution via Locale Parameter
PHP-Fusion <= 6.00.307 - Authenticated SQL Injection via srch_where Parameter
PHP-Fusion 6.00.109 - SQL Injection
php_fusion < 6.01.4 - SQL Injection via _SERVER[REMOTE_ADDR] Parameter
php_icalendar < 2.2.1 - Unauthenticated Arbitrary File Upload via WebDAV PUT Request
PHP iCalendar <2.21 - Path Traversal
PHP Album 0.3.2.3 - Remote Command Execution
PHP Advanced Transfer Manager 1.30 - Multiple Directory Traversal Vulnerabilities
PHP Advanced Transfer Manager 1.30 - Multiple Cross-Site Scripting Vulnerabilities
Phorum 5 - Authenticated Directory Traversal and Arbitrary File Execution via GLOBALS[template] Parameter
PCPIN Chat 5.0.4 - 'login/language' Remote Code Execution
PBLang 4.65 - Directory Traversal via setcookie.php u Parameter
PBLang 4.65 - Remote Command Execution (1)
osCommerce 2.2 - 'extras' Source Code Disclosure
OWL Intranet Engine 0.82 - Remote File Inclusion via xrms_file_root Parameter
Nucleus CMS < 3.22 - Remote File Inclusion via GLOBALS[DIR_LIBS] Parameter