str0ke
106 exploits
Active since May 1997
See-Commerce 1.0.625 - Remote File Inclusion via owimg.php3 path Parameter
Saphp Lesson - SQL Injection via ForumID Parameter
PwsPHP 1.2.3 - SQL Injection via Sondages Module id Parameter
phpWebSite <= 0.10.2 - SQL Injection via Topic Parameter
Project-Based Calendaring System 0.7.1 - Authenticated Arbitrary File Upload via yopy_upload.php
PHP Advanced Transfer Manager <1.20 - RCE
phpMyFamily 1.4.0 - SQL Injection via Multiple Parameters
phpblock A8.4 - Remote Code Execution via PATH_TO_CODE Parameter
phpBB 2.0.19 - 'user_sig_bbcode_uid' Remote Code Execution
phpBB 2.0.16 - Cross-Site Scripting Remote Cookie Disclosure
phpBB <= 2.0.15 - Remote File Inclusion in viewtopic.php
phpBB 2.0.12 - Privilege Escalation
Pathos Content Management System 0.92-2 - Remote File Inclusion via warn.php file Parameter
PHP-Nuke 6.x-7.6 - SQL Injection via Top Module querylang Parameter
PHP <1.3 - Remote Code Execution
PHP Fidonet Tosser 1.3.0 - Remote Code Execution via SRC_PATH Parameter
OneCMS 2.4 - SQL Injection via userreviews.php abc Parameter
MAXdev MDForum <2.0.1 - Path Traversal
MercuryBoard 1.1.1 - SQL Injection via Reply Post t or qu Parameter
MangoBery CMS 0.5.5 - Remote File Inclusion via Site_Path Parameter
Keep It Simple Guest Book <5.1.1 - Path Traversal
Limbo CMS 1.0.4.1-1.0.4.2 - Remote Code Execution via Itemid Parameter
KGB < 1.9 - Directory Traversal and Arbitrary File Execution via skinnn Parameter
jaf_cms 4.0 RC2 - Remote Code Execution via URL Parameter Injection
Invision Power Board 1.3.1 - 'login.php' SQL Injection