rgod
471 exploits
Active since Jul 2005
FCKeditor 2.0-2.2 - Unauthenticated Arbitrary File Upload via Extension Blacklist Bypass
exV2 Content Management System < 2.0.4.3 - Authenticated SQL Injection via Sort Parameter
exV2 CMS < 2.0.4.3 - Directory Traversal & File Deletion via Avatar Upload
Exponent CMS 0.96.3 - Path Traversal
Etomite < 0.6.1 - SQL Injection via Username Parameter
Etomite < 0.6.1 - Unauthenticated Arbitrary File Upload via rfiles.php nfile Parameter
EnterpriseGS 1.0 rc4 - Remote Command Execution
DoceboLMS 2.0.4 - Directory Traversal via FCKeditor2rc2 Connector Type Parameter
e107 < 0.75 - GLOBALS Overwrite Remote Code Execution
Drupal 4.6.x < 4.6.7 and 4.7.0 - Arbitrary File Upload and Execution via Multiple File Extensions
DotClear 1.2.4 - Remote File Inclusion via blog_dc_path Parameter
DokuWiki 2006-03-09b - 'dwpage.php' System Disclosure
DokuWiki 2006-03-09b - 'dwpage.php' Remote Code Execution
DocMGR 0.54.2 - Remote File Inclusion via Uninitialized $siteModInfo Variable
DoceboLms 2.0.x - 'connector.php' Directory Traversal
Docebo < 3.5.0.3 - SQL Injection via Accept-Language HTTP Header
Discuz! GBK 5.0.0 - SQL Injection via cdb_auth Cookie
Discuz! 4.x - SQL Injection / Admin Credentials Disclosure
Digital Scribe 1.4 - Login SQL Injection
DEV web management system <1.5 - SQL Injection
DeluxeBB < 1.06 - Remote Code Execution via Double Extension File Upload
dbbs < 2.0-alpha - Cross-Site Scripting via ulocation or uhobbies Parameters
Cyphor < 0.19 - SQL Injection via show.php id Parameter
Cyphor 0.19 - SQL Injection and Cross-Site Scripting via fid Parameter
Claroline 1.7.6 - Remote File Inclusion via includePath Cookie