t0pP8uZz
120 exploits
Active since Jun 2007
openInvoice 0.90 beta and earlier - Unauthenticated Authentication Bypass via oiauth Cookie
b1gbb 2.24.0 - SQL Injection via id Parameter
BugMall Shopping Cart 2.5 - SQL Injection via Basic Search Box
BugMall Shopping Cart <2.5 - Info Disclosure
Pharmacy System < 2 - SQL Injection via ID Parameter
CCleague Pro 1.2 - SQL Injection via admin.php u Parameter
WebCards < 1.3 - SQL Injection via User Parameter
eztechhelp_ezcms < 1.2 - Unauthenticated Arbitrary File Manipulation via File Manager
AlstraSoft AskMe Pro < 2.1 - Cleartext Password Storage
Freelance Auction Script 1.0 - SQL Injection via browseproject.php pid Parameter
iScripts SocialWare - Info Disclosure
Terong PHP Photo Gallery 1.0 - Info Disclosure
iScripts SocialWare - Authenticated Arbitrary File Upload via Logo File
AlstraSoft Forum Pay Per Post Exchange 2.0 - SQL Injection via catid Parameter
dana_irc_client < 1.3 - Stack-based Buffer Overflow via Long IRC Message
AJ Square ZeusCart <2.0 - SQL Injection
hispah youtube_clone_script - SQL Injection via msg.php id Parameter
WSN Links Basic Edition - SQL Injection via catid Parameter
xeCMS <= 1.0.0 RC2 - Unauthenticated Authentication Bypass via xecms_username Cookie
xpoze_pro < 3.05 - Authenticated SQL Injection via reed Parameter
e-Commerce Plugin < 3.4 - Unauthenticated Arbitrary File Upload and Remote Code Execution via image_processing.php
WebCards < 1.3 - Authenticated Arbitrary File Upload via Add Image Macro
Web Slider 0.6 - Unauthenticated Privilege Escalation via Admin Cookie
WebBoard 2.0 - Arbitrary SQL Question/Anwser Delete
Vastal I-Tech Software Zone - SQL Injection via view_product.php cat_id Parameter