trueend5
25 exploits
Active since Mar 2005
bcoos 1.0.10 - Path Traversal and Arbitrary File Execution via xoopsOption[pagetype] Parameter
YaBB 2.0 RC1 - Cross-Site Scripting via Username Parameter in Usersrecentposts Action
vBulletin 3.5.2 - Event Title HTML Injection
ThWboard < 3 Beta 2.84 - SQL Injection via Calendar Year Parameter
ThWboard < 3 Beta 2.84 - SQL Injection via Calendar Year Parameter
ThWboard < 3 Beta 2.84 - SQL Injection via Calendar Year Parameter
RunCMS 1.6 - 'disclaimer.php' Remote File Overwrite
RunCMS 1.6 - Local File Inclusion
Phppost - Cross-Site Scripting
Phppost - Cross-Site Scripting
phpoutsourcing Noah's classifieds - SQL Injection
Noah's Classifieds 1.3 - Cross-Site Scripting via inf, upperTemplate, or lowerTemplate Parameters
Noah's Classifieds 1.3 - Remote File Inclusion via upperTemplate or lowerTemplate Parameter
Noah's Classifieds 1.3 - Directory Traversal via otherTemplate Parameter
Noah's Classifieds 1.3 - SQL Injection via Search Tool
phpoutsourcing Noah's classifieds <1.3 - XSS
Noahs Classifieds 1.3 - 'lowerTemplate' Remote Code Execution
Joomla! Component Poll 1.0.10 - Arbitrary Add Votes
Joomla! 1.0.7 / Mambo 4.5.3 - 'feed' Full Path Disclosure / Denial of Service
Geeklog <= 1.4.0sr2 - Cross-Site Scripting via getimage.php Image Parameter
ekinboard 1.0.3 - Cross-Site Scripting via Profile ID Parameter and Post Titles
bcoos 1.0.10 and 1.0.13 - SQL Injection via bid Parameter
Beehive Forum <0.6.2 - SQL Injection
GuppY 4.5.11 - Directory Traversal and Arbitrary File Write via dwnld.php pg Parameter
PersianBlog - 'Userslist.asp' SQL Injection