- Microsoft Access (Snapview.ocx 10.0.5529.0) ActiveX Remote Exploit
- BIND 9.4.1-9.4.2 Remote DNS Cache Poisoning Flaw Exploit (py)
- BIND 9.4.1-9.4.2 Remote DNS Cache Poisoning Flaw Exploit (meta)
- minix 3.1.2a tty panic Local Denial of Service Vulnerability
- IntelliTamper 2.0.7 (html parser) Remote Buffer Overflow Exploit (c)
- Pre Survey Poll (default.asp catid) SQL Injection Vulnerability
- IntelliTamper 2.07 (server header) Remote Code Execution Exploit
- YouTube Blog 0.1 (RFI/SQL/XSS) Multiple Remote Vulnerabilities
- IntelliTamper 2.0.7 (html parser) Remote Buffer Overflow Exploit
- ShopCartDx 4.30 (pid) Remote SQL Injection Vulnerability
- EZWebAlbum Insecure Cookie Handling Vulnerability
- Arctic Issue Tracker 2.0.0 (index.php filter) SQL Injection Exploit
- MojoAuto (mojoAuto.cgi mojo) Blind SQL Injection Exploit
- Interact E-Learning System 2.4.1 (help.php) LFI Vulnerabilities
- MojoClassifieds 2.0 Remote Blind SQL Injection Exploit
- MojoPersonals (mojoClassified.cgi mojo) Blind SQL Injection Exploit
- MojoJobs (mojoJobs.cgi mojo) Blind SQL Injection Exploit
- EZWebAlbum (dlfilename) Remote File Disclosure Vulnerability
- IntelliTamper 2.07 (map file) Local Arbitrary Code Execution Exploit (pl)
- HRS Multi (picture_pic_bv.asp key) Blind SQL Injection Exploit
- DigiLeave 1.2 (info_book.asp book_id) Blind SQL Injection Exploit
- IntelliTamper 2.0.7 (html parser) Remote Buffer Overflow PoC
- PHPFootball 1.6 (show.php) Remote SQL Injection Vulnerability
- Oracle Internet Directory 10.1.4 Remote Preauth DoS Exploit
- Apache mod_jk 1.2.19 Remote Buffer Overflow Exploit (win32)
- Siteframe (folder.php id) Remote SQL Injection Vulnerability
- Aprox CMS Engine 5.1.0.4 (index.php page) SQL Injection Vulnerability
- Artic Issue Tracker 2.0.0 (index.php filter) SQL Injection Vulnerability
- preCMS v.1 (index.php page) Remote SQL injection Vulnerability
- AlstraSoft Article Manager Pro 1.6 Blind SQL Injection Exploit
- Debian OpenSSH Remote SELinux Privilege Elevation Exploit (auth)
- AlstraSoft Video Share Enterprise 4.5.1 (UID) SQL Injection Vulnerability
- phpHoo3
- PPMate PPMedia Class ActiveX Control Buffer Overflow PoC
- Bea Weblogic -- Apache Connector Remote Denial of Service Exploit
- tplSoccerSite 1.0 Multiple Remote SQL Injection Vulnerabilities
- AlstraSoft Affiliate Network Pro (pgm) Remote SQL Injection Vulnerability
- Joomla Component DT Register Remote SQL injection Vulnerability
- PHPizabi 0.848b C1 HFP1 Remote Code Execution Exploit
- HockeySTATS Online 2.0 Multiple Remote SQL Injection Vulnerabilities
- Document Imaging SDK 10.95 ActiveX Buffer Overflow PoC
- PhotoPost vBGallery 2.4.2 Arbitrary File Upload Vulnerability
- Galatolo Web Manager 1.3a Insecure Cookie Handling Vulnerability
- php Help Agent
- Comdev Web Blogger
- Pragyan CMS 2.6.2 (sourceFolder) Remote File Inclusion Vulnerability
- WinRemotePC Full+Lite 2008 r.2server Denial of Service Exploit
- pSys 0.7.0 Alpha Multiple Remote File Inclusion Vulnerability
- Galatolo Web Manager 1.3a
- Pluck 4.5.1 (blogpost) Local File Inclusion Vulnerability (win only)
- Bilboblog 2.1 Multiples Remote Vulnerabilities
- Yahoo Messenger 8.1 ActiveX Remote Denial of Service Exploit
- CodeDB (list.php lang) Local File Inclusion Vulnerability
- Scripteen Free Image Hosting Script 1.2 (cookie) Pass Grabber Exploit
- ITechBids 7.0 Gold (XSS/SQL) Multiple Remote Vulnerabilities
- MFORUM 0.1a Arbitrary Add-Admin Vulnerability
- Ultrastats
- Maian Search
- Maian Uploader
- Maian Weblog
- Maian Recipe
- Maian Links
- Maian Guestbook
- Simple DNS Plus
- fuzzylime cms 3.01 (commrss.php) Remote Code Execution Exploit
- Poppler <= 0.8.4 libpoppler uninitialized pointer Code Execution PoC
- Download Accelerator Plus - DAP 8.x m3u File Buffer Overflow Exploit (c)
- Linksys WRT54G (firmware 1.00.9) Security Bypass Vulnerabilities (2)
- Panda Security ActiveScan 2.0 (Update) Remote BOF Exploit
- CMailServer 5.4.6 (CMailCOM.dll) Remote SEH Overwrite Exploit
- Safari + Quicktime <= 7.3 RTSP Content-Type Remote BOF Exploit
- trixbox (langChoice) Local File Inclusion Exploit (connect-back) v2
- TrixBox 2.6.1 langChoice remote root exploit
- Avlc Forum (vlc_forum.php id) Remote SQL Injection Vulnerability
- jSite 1.0 OE (SQL/LFI) Multiple Remote Vulnerabilities
- WebCMS Portal Edition (id) Remote SQL Injection Vulnerability
- Joomla Component n-forms 1.01 Blind SQL Injection Exploit
- fuzzylime cms 3.01 (polladd.php poll) Remote Code Execution Exploit (pl)
- fuzzylime cms 3.01 (polladd.php poll) Remote Code Execution Exploit (php)
- Wizi Wiki Wig 1.0 (index.php c) Local File Inclusion Vulnerability
- Maian Music 1.0 Insecure Cookie Handling Vulnerability
- Maian Greetings 2.1 Insecure Cookie Handling Vulnerability
- Maian Gallery 2.0 Insecure Cookie Handling Vulnerability
- Maian Events 2.0 Insecure Cookie Handling Vulnerability
- Maian Cart 1.1 Insecure Cookie Handling Vulnerability
- reSIProcate 1.3.2 Remote Denial of Service PoC
- trixbox 2.6.1 (langChoice) Remote Root Exploit (py)
- Million Pixels 3 (id_cat) Remote SQL Injection Vulnerability
- Core Image Fun House
- Wysi Wiki Wyg 1.0 (index.php c) Local File Inclusion Vulnerability
- Facebook Newsroom CMS 0.5.0 Beta 1 Remote File Inclusion Vulnerability
- File Store PRO 3.2 Multiple Blind SQL Injection Vulnerabilities
- Download Accelerator Plus - DAP 8.x m3u File Buffer Overflow Exploit (c)
- Zen Cart 1.3.8 Multiple Local File Inclusion Vulnerabilities
- phpDatingClub (website.php page) Local File Inclusion Vulnerability
- gapicms 9.0.2 (dirDepth) Remote File Inclusion Vulnerability
- DreamNews Manager (id) Remote SQL Injection Vulnerability
- Dreampics Builder (page) Remote SQL Injection Vulnerability
- AuraCMS
- Poppler
- OllyDBG v1.10 and ImpREC v1.7f (export name) BOF PoC
- Download Accelerator Plus - DAP 8.x (m3u) Local BOF Exploit 0day
- Multiple Vendors Malicious SVG File Denial of Service PoC
- BoonEx Ray 3.5 (sIncPath) Remote File Inclusion Vulnerability
- Mole Group Last Minute Script
- trixbox (langChoice) Local File Inclusion Exploit (connect-back)
- Joomla Component com_content 1.0.0 (ItemID) SQL Injection Vuln
- Boonex Dolphin 6.1.2 Multiple Remote File Inclusion Vulnerabilities
- BrewBlogger 2.1.0.1 Arbitrary Add Admin Exploit
- Mole Group Real Estate Script
- Mole Group Hotel Script 1.0 Remote SQL Injection Vulnerability
- Last Minute Script
- SmartPPC Pay Per Click Script (idDirectory) Blind SQL Injection Exploit
- Neutrino 0.8.4 Atomic Edition Remote Code Execution Exploit
- Triton CMS Pro (X-Forwarded-For) Blind SQL Injection Exploit
- fuzzylime cms 3.01a (file) Local File Inclusion Exploit
- WebXell Editor 0.1.3 Arbitrary File Upload Vulnerability
- SmartPPC Pay Per Click Script (idDirectory) Blind SQL Injection Vuln
- Safari + Quicktime
- CMailServer 5.4.6 (CMailCOM.dll) Remote SEH Overwrite Exploit
- ContentNow 1.4.1 (Upload/XSS) Multiple Remote Vulnerabilities
- XPOZE Pro 3.06 (uid) Remote SQL Injection Vulnerability
- fuzzylime (cms) 3.01 Remote Command Execution Exploit
- ImperialBB
- Kasseler CMS 1.3.0 (LFI/XSS) Multiple Vulnerabilities
- Thelia 1.3.5 Multiple Vulnerabilities Exploit
- Site@School
- Panda Security ActiveScan 2.0 (Update) Remote BOF Exploit
- Joomla Component DBQuery
- Joomla Component altas 1.0 Multiple Remote SQL Injection Exploit
- 1024 Cms
- pHNews CMS Multiple Local File Inclusion Vulnerabilities
- phpWebNews 0.2 MySQL Edition (det) SQL Injection Vulnerability
- phpWebNews 0.2 MySQL Edition (id_kat) SQL Injection Vulnerability
- CMS WebBlizzard (index.php page) Blind SQL Injection Exploit
- phPortal 1.2 Multiple Remote File Inclusions Exploit
- Joomla Component QuickTime VR 0.1 Remote SQL Injection Exploit
- Joomla Component is 1.0.1 Multiple Remote SQL Injection Exploit
- Joomla Component com_brightweblinks (catid) SQL Injection Vulnerability
- XchangeBoard 1.70 (boardID) Remote SQL Injection Vulnerability
- CMS little (index.php template) Local File Inclusion Vulnerability
- Joomla Component mygallery (cid) Remote SQL Injection Vulnerability
- Joomla Component versioning 1.0.2 (id) SQL Injection Vulnerability
- plx Ad Trader 3.2 (adid) Remote SQL Injection Vulnerability
- Efestech Shop 2.0 (cat_id) Remote SQL Injection Vulnerability
- PHP-Nuke Platinium
- VanGogh Web CMS 0.9 (article_ID) Remote SQL Injection Vulnerability
- Sisplet CMS (index.php id) Remote SQL Injection Vulnerability
- CAT2 (spaw_root) Local File Inclusion Vulnerability
- php-Agenda 2.2.4 (index.php page) Local File Inclusion Vulnerability
- OpenBSD 4.0 (FIRST ANIMATED EXPLOIT) Local Root Exploit (vga)
- BusyBox (uname) Local Format String Exploit
- HIOX Banner Rotator 1.3 (hm) Remote File Inclusion Vulnerability
- Mambo Component n-gallery Multiple SQL Injection Vulnerabilities
- AShop Deluxe 4.x (catalogue.php cat) Remote SQL Injection Exploit
- pSys v0.7.0 Alpha (chatbox.php) Remote SQL Injection Vulnerability
- myBloggie 2.1.6 Multiple Remote SQL Injection Vulnerabilities
- Catviz 0.4.0 beta1 Multiple Remote SQL Injection Vulnerabilities
- BareNuked CMS 1.1.0 Arbitrary Add Admin Exploit
- RCM Revision Web Development (products.php) SQL Injection Vulnerability
- Pivot 1.40.5 Dreamwind load_template() Credentials Disclosure Exploit
- AcmlmBoard 1.A2 (pow) Remote SQL Injection Vulnerability
- eSHOP100 (SUB) Remote SQL Injection Vulnerability
- Surgemail 39e-1 Post Auth IMAP Remote Buffer Overflow DoS
- SebracCMS
- Joomla Component beamospetition Remote SQL Injection Vulnerability
- Joomla Component Xe webtv (id) Blind SQL Injection Exploit
- Online Booking Manager 2.2 (id) SQL Injection Vulnerability
- Joomla Component jabode (id) Remote SQL Injection Vulnerability
- PowerAward 1.1.0 RC1 (LFI /XSS) Multiple Remote Vulnerabilities
- PHP-Fusion Mod classifieds (lid) Remote SQL Injection Vulnerability
- SePortal 2.4 (poll.php poll_id) Remote SQL Injection Vulnerability
- OTManager CMS 2.4 Insecure Cookie Handling Vulnerability
- W1L3D4 Philboard 1.2 (Blind SQL/XSS) Multiple Remote Vulnerabilities
- OTManager CMS 24a (LFI/XSS) Multiple Remote Vulnerabilities
- Keller Web Admin CMS 0.94 Pro Local File Inclusion Vulnerability (1st)
- Orca 2.0 (params.php) Remote File Inclusion Vulnerability
- A+ PHP Scripts NMS Insecure Cookie Handling Vulnerability
- Softbiz FAQ Script Multiple SQL Injection Vulnerabilities
- phpBLASTER CMS 1.0 RC1 Multiple Local File Inclusion Vulnerabilities
- XnView 1.93.6 for Windows .taac Local Buffer Overflow Exploit PoC
- Cheats Complete Website 1.1.1 (itemid) SQL Injection Vulnerability
- Drinks Complete Website 2.1.0 (drinkid) SQL Injection Vulnerability
- Jokes Complete Website 2.1.3 (jokeid) SQL Injection Vulnerability
- Tips Complete Website 1.2.0 (tipid) SQL Injection Vulnerability
- Riddles Complete Website 1.2.1 (riddleid) SQL Injection Vulnerability
- Seagull PHP Framework
- Galmeta Post CMS 0.2 Multiple Local File Inclusion Vulnerabilities
- Joomla Component YaNC (listid) SQL Injection Vulnerability
- PHP-Fusion Mod Kroax
- PolyPager
- Keller Web Admin CMS 0.94 Pro Local File Inclusion Vulnerability
- Joomla Component netinvoice 1.2.0 SP1 SQL Injection Vulnerability
- PHPmotion
- MyPHP CMS 0.3.1 (page.php pid) Remote SQL Injection Vulnerability
- Page Manager CMS Remote Arbitrary File Upload Vulnerability
- Mambo Component Articles (artid) Blind SQL Injection Exploit
- Jokes & Funny Pics Script (sb_jokeid) SQL Injection Vulnerability
- mUnky 0.0.1 (index.php zone) Local File Inclusion Vulnerability
- Webdevindo-CMS 0.1 (index.php hal) Remote SQL Injection Vulnerability
- TOKOKITA (barang.php produk_id) Remote SQL Injection Exploit
- Link ADS 1 (out.php linkid) Remote SQL Injection Vulnerability
- E-topbiz ViralDX 2.07 (adclick.php bannerid) SQL Injection Vulnerability
- HiveMaker Directory (index.php cid) SQL Injection Vulnerability
- DUcalendar 1.0 (detail.asp iEve) Remote SQL Injection Vulnerability
- Linksys WRT54G (firmware 1.00.9) Security Bypass Vulnerabilities (2)
- ShareCMS 0.1 Multiple Remote SQL Injection Vulnerabilities
- Relative Real Estate Systems
- Demo4 CMS 1b (fckeditor) Arbitrary File Upload Exploit
- cmsWorks 2.2 RC4 (fckeditor) Remote Arbitrary File Upload Exploit
- cmsWorks 2.2 RC4 (mod_root) Remote File Inclusion Vulnerability
- Ourvideo CMS 9.5 (RFI/LFI/XSS) Multiple Remote Vulnerabilities
- MM Chat 1.5 (LFI/XSS) Multiple Remote Vulnerabilities
- uTorrent / BitTorrent WebIU HTTP 1.7.7/6.0.1 Range header DoS Exploit
- TinX CMS 1.1 (LFI/XSS) Multiple Remote Vulnerabilities
- Dagger CMS 2008 (dir_inc) Remote File Inclusion Vulnerability
- Joomla Component com_facileforms 1.4.4 RFI Vulnerability
- Demo4 CMS (index.php id) Remote SQL Injection Vulnerability
- MyBlog: PHP and MySQL Blog/CMS software (SQL/XSS) Vulnerabilities
- MVC-Web CMS 1.0/1.2 (index.asp newsid) SQL Injection Vulnerability
- ResearchGuide 0.5 (guide.php id) SQL Injection Vulnerability
- Ready2Edit (pages.php menuid) Remote SQL Injection Vulnerability
- BlogPHP 2.0 Remote Privilege Escalation Exploit
- HoMaP-CMS 0.1 (index.php go) Remote SQL Injection Vulnerability
- emuCMS 0.3 (fckeditor) Arbitrary File Upload Exploit
- ODARS CMS 1.0.2 Remote File Inclusion Vulnerability
- CMReams CMS 1.3.1.1 Beta2 (LFI/XSS) Multiple Remote Vulnerabilities
- Hedgehog-CMS 1.21 (header.php) Remote File Inclusion Vulnerability
- HomePH Design 2.10 RC2 (RFI/LFI/XSS) Multiple Vulnerabilities
- HoMaP-CMS 0.1 (plugin_admin.php) Remote File Inclusion Vulnerability
- MiGCMS 2.0.5 Multiple Remote File Inclusion Vulnerabilities
- RSS-Aggregator (display.php path) Remote File Inclusion Vulnerability
- PageSquid CMS (index.php page) Remote SQL Injection Vulnerability
- IGSuite 3.2.4 (reverse shell) Blind SQL Injection Exploit
- phpDMCA 1.0.0 Multiple Remote File Inclusion Vulnerabilities
- CMS Mini 0.2.2 Multiple Local File Inclusion Vulnerabilities
- sHibby sHop
- DUdForum 3.0 (forum.asp iFor) Remote SQL Injection Vulnerability
- Joomla Component EXP Shop (catid) SQL Injection Vulnerability
- phpAuction 3.2.1 (item.php id) Remote SQL Injection Vulnerability
- Top Auction Pro (category) Remote SQL Injection Vulnerability
- AJ HYIP ACME (news.php id) Remote SQL Injection Vulnerability
- Offl
- CCLeague Pro
- Le.cms
- LaserNet CMS
- Scientific Image DataBase
- Aprox CMS Engine v5(.1.0.4) Local File Inclusion Vulnerability
- PHP KnowledgeBase Script 2.4 (cat_id) SQL Injection Vulnerability
- eNews 0.1 (delete.php) Arbitrary Delete Post Vulnerability