x0r
54 exploits
Active since Oct 2008
Acc Real Estate 4.0 - Unauthenticated Authentication Bypass via username_cookie
Online Grades 3.2.4 - Info Disclosure
Online Grades 3.2.4 - SQL Injection
Chipmunk Blogger Script - Privilege Escalation
phpauctions - SQL Injection via profile.php user_id Parameter
FlexPHPDirectory 0.0.1 - SQL Injection via checkuser or checkpass Parameters
Acc Autos 4.0 - Unauthenticated Authentication Bypass via Cookie Manipulation
Graugon PHP Article Publisher 1.0 - SQL Injection via c or id Parameter
S-Cms 1.1 - SQL Injection via id Parameter
Weight Loss Recipe Book 3.1 - Authentication Bypass
webbdomain post_card < 1.02 - SQL Injection via Username Parameter
TlNews 2.2 - Unauthenticated Authentication Bypass via tlNews_login Cookie
Easy-script Tlguesbook - Authentication Bypass
The Rat CMS Alpha 2 - 'download.php' Priviledge Escalation
The Rat CMS Alpha 2 - SQL Injection via login.php user_id and password Parameters
tlAds 1.0 - Unauthenticated Authentication Bypass via tlAds_login Cookie
smNews - SQL Injection via Username Parameter
SurfMyTV Script 1.0 - 'view.php?id' SQL Injection
SilverNews 2.04 - Authentication Bypass / Local File Inclusion / Remote Code Execution
S-Cms 1.1 Stable - Unauthenticated Authentication Bypass via Login Cookie
Scripts For Sites Hotscripts-like Site - SQL Injection via software-description.php id Parameter
Potato News 1.0.0 - Unauthenticated Path Traversal via User Cookie Parameter
phpauctions - Cross-Site Scripting via profile.php user_id Parameter
PhpAddEdit 1.3 - Unauthenticated Authentication Bypass via addedit Cookie
PHP Krazy Image Host Script 1.01 - 'id' SQL Injection