vir0e5 a.k.a banditc0de

2 exploits Active since May 2010
CVE-2012-1416 EXPLOITDB html WORKING POC
SocialCMS 1.0.2 - Cross-Site Request Forgery in Administrator Account Management
Multiple cross-site request forgery (CSRF) vulnerabilities in SocialCMS 1.0.2 allow remote attackers to hijack the authentication of administrators for requests that (1) add administrator accounts via a member_new action to my_admin/admin1_members.php or (2) modify the default site title via a save action to my_admin/admin1_configuration.php.
CVE-2010-2018 EXPLOITDB text WORKING POC
Lokomedia CMS 1.4.1 and 2.0 - Path Traversal via downlot.php file Parameter
Directory traversal vulnerability in downlot.php in Lokomedia CMS 1.4.1 and 2.0 allows remote attackers to read arbitrary files via a .. (dot dot) in the file parameter.