milw0rm Archive
    From 2010    

The CGI/PHP exploits are now all in one file to avoid triggering those stupid malware/virus detection systems.

  1. CGI Exploits
  2. PHP Exploits
  3. MS Windows WebDAV (ntdll.dll) Remote Exploit
  4. MS Windows WebDAV Remote PoC Exploit
  5. Linux Kernel 2.2.x - 2.4.x ptrace/kmod Local Root Exploit
  6. Sun SUNWlldap Library Hostname Buffer Overflow Exploit
  7. MS Windows RPC Locator Service Remote Exploit
  8. WordPress <= 2.0.2 (cache) Remote Shell Injection Exploit
  9. Samba 2.2.x Remote Root Buffer Overflow Exploit
  10. SETI@home Clients Buffer Overflow Exploit
  11. Apache HTTP Server 2.x Memory Leak Exploit
  12. Samba 2.2.8 Remote Root Exploit - sambal.c
  13. Apache <= 2.0.44 Linux Remote Denial of Service Exploit
  14. Linux Kernel < 2.4.20 Module Loader Local Root Exploit
  15. Chindi Server 1.0 Denial of Service Exploit
  16. Mac OS X <= 10.2.4 DirectoryService (PATH) Local Root Exploit
  17. PoPToP PPTP <= 1.1.4-b3 Remote Root Exploit
  18. Xeneo Web Server 2.2.9.0 Denial of Service Exploit
  19. Snort <=1.9.1 Remote Root Exploit (p7snort191.sh)
  20. PoPToP PPTP <= 1.1.4-b3 Remote Root Exploit (poptop-sane.c)
  21. MS Windows SMB Authentication Remote Exploit
  22. Qpopper 4.0.x poppassd Local Root Exploit
  23. Pi3Web 2.0.1 Denial of Service - Proof of Concept
  24. Real Server < 8.0.2 Remote Exploit (Windows Platforms)
  25. Sendmail <= 8.12.8 prescan() BSD Remote Root Exploit
  26. OpenSSH/PAM <= 3.6.1p1 Remote Users Discovery Tool
  27. OpenSSH/PAM <= 3.6.1p1 Remote Users Ident (gossh.sh)
  28. CommuniGate Pro Webmail 4.0.6 Session Hijacking Exploit
  29. Kerio Personal Firewall 2.1.4 Remote Code Execution Exploit
  30. Firebird 1.0.2 FreeBSD 4.7-RELEASE Local Root Exploit
  31. Snitz Forums 3.3.03 Remote Command Execution Exploit
  32. CdRecord Version <= 2.0 Mandrake local root exploit
  33. MS Windows XP (explorer.exe) Buffer Overflow Exploit
  34. WsMp3d 0.x Remote Root Heap Overflow Exploit
  35. Webfroot Shoutbox < 2.32 (Apache) Remote Exploit
  36. MS Windows IIS 5.0 - 5.1 Remote Denial of Service Exploit
  37. MS Windows WebDav II (New) Remote Root Exploit
  38. MS Internet Explorer Object Tag Exploit (MS03-020)
  39. Apache <= 2.0.45 APR Remote Exploit -Apache-Knacker.pl
  40. Atftpd 0.6 Remote Root Exploit (atftpdx.c)
  41. Mandrake Linux 8.2 /usr/mail local exploit (d86mail.pl)
  42. mnoGoSearch 3.1.20 Remote Command Execution Exploit
  43. Winmail Mail Server 2.3 Remote Format String Exploit
  44. ProFTPD 1.2.9RC1 (mod_sql) Remote SQL Injection Exploit
  45. phpBB 2.0.5 SQL Injection password disclosure Exploit
  46. Yahoo Messenger 5.5 Remote Exploit (DSR-ducky.c)
  47. Kerio MailServer 5.6.3 Remote Buffer Overflow Exploit
  48. phpBB 2.0.4 Remote php File Include Exploit
  49. MS Windows Media Services Remote Exploit (MS03-022)
  50. Linux eXtremail 1.5.x Remote Format Strings Exploit
  51. ColdFusion MX Remote Development Service Exploit
  52. MS Windows WebDav III remote root Exploit (xwdav)
  53. ICQ Pro 2003a Password Bypass exploit (ca1-icq.asm)
  54. CCBILL CGI Remote Exploit for whereami.cgi (ccbillx.c)
  55. LeapFTP 2.7.x Remote Buffer Overflow Exploit
  56. Samba 2.2.8 (Bruteforce Method) Remote Root Exploit
  57. MS Windows Media Services (nsiislog.dll) Remote Exploit
  58. Solaris 2.6/7/8 (TTYPROMPT in.telnet) Remote Authentication Bypass
  59. Citadel/UX BBS 6.07 Remote Exploit
  60. Cisco IOS IPv4 Packets Denial of Service Exploit
  61. Cisco IOS IPv4 Packet Denial of Service Exploit (cisco-bug-44020.c)
  62. MS Windows 2000 RPC DCOM Interface DoS Exploit
  63. Cisco IOS (using hping) Remote Denial of Service Exploit
  64. miniSQL (mSQL) 1.3 Remote GID Root Exploit
  65. MS Windows (RPC DCOM) Remote Buffer Overflow Exploit
  66. MS Windows SQL Server Denial of Service Remote Exploit (MS03-031)
  67. MS Windows (RPC DCOM) Remote Exploit (w2k+XP Targets)
  68. Apache 1.3.x mod_mylo Remote Code Execution Exploit
  69. Linux Kernel <= 2.4.20 decode_fh Denial of Service Exploit
  70. MS Windows RPC DCOM Remote Exploit (18 Targets)
  71. MS Windows (RPC DCOM) Remote Exploit (48 Targets)
  72. XGalaga 2.0.34 local game exploit (Red Hat 9.0)
  73. xtokkaetama 1.0b Local Game Exploit (Red Hat 9.0)
  74. Trillian 0.74 Remote Denial of Service Exploit
  75. wu-ftpd 2.6.2 off-by-one Remote Root Exploit
  76. man-db 2.4.1 open_cat_stream() Local uid=man Exploit
  77. MS Windows (RPC DCOM) Remote Exploit (Universal Targets)
  78. Cisco IOS 12.x/11.x HTTP Remote Integer Overflow Exploit
  79. wu-ftpd 2.6.2 Remote Root Exploit (advanced version)
  80. DameWare Mini Remote Control Server SYSTEM Exploit
  81. Oracle XDB FTP Service UNLOCK Buffer Overflow Exploit
  82. MS Windows 2000 RSVP Server Authority Hijacking PoC Exploit
  83. Piolet Client 1.05 Remote Denial of Service Exploit
  84. MS Internet Explorer Object Data Remote Exploit (M03-032)
  85. Gopherd <= 3.0.5 FTP Gateway Remote Overflow Exploit
  86. Real Server 7/8/9 Remote Root Exploit (Windows & Linux)
  87. GtkFtpd 1.0.4 Remote Root Buffer Overflow Exploit
  88. Linux pam_lib_smb < 1.1.6 /bin/login Remote Exploit
  89. eMule/xMule/LMule OP_SERVERMESSAGE Format String Exploit
  90. Stunnel <= 3.24, 4.00 Daemon Hijacking Proof of Concept Exploit
  91. Microsoft WordPerfect Document Converter Exploit (MS03-036)
  92. RealPlayer 9 *nix Local Privilege Escalation Exploit
  93. 4D WebSTAR FTP Server Suite Remote Buffer Overflow Exploit
  94. MS Windows (RPC DCOM) Scanner (MS03-039)
  95. MySQL 3.23.x/4.0.x Remote Exploit
  96. Pine <= 4.56 Remote Buffer Overflow Exploit
  97. MS Windows (RPC DCOM) Long Filename Overflow Exploit (MS03-026)
  98. Solaris Sadmind Default Configuration Remote Root Exploit
  99. Knox Arkeia Pro 5.1.12 Backup Remote Root Exploit
  100. MS Windows (RPC DCOM2) Remote Exploit (MS03-039)
  101. hztty 2.0 Local root exploit (Tested on Red Hat 9.0)
  102. GNU Cfengine 2.-2.0.3 Remote Stack Overflow Exploit
  103. IBM DB2 Universal Database 7.2 (db2licm) Local Exploit
  104. ProFTPD 1.2.9rc2 ASCII File Remote Root Exploit
  105. MS Windows (RPC2) Universal Exploit & DoS (RPC3) (MS03-039)
  106. ProFTPD 1.2.7 - 1.2.9rc2 Remote Root & brute-force Exploit
  107. MS Windows Messenger Service Denial of Service Exploit (MS03-043)
  108. mIRC 6.1 "IRC" Protocol Remote Buffer Overflow Exploit
  109. MS Exchange 2000 XEXCH50 Heap Overflow PoC (MS03-046)
  110. Solaris Runtime Linker (ld.so.1) Buffer Overflow Exploit (SPARC version)
  111. wu-ftpd 2.6.2 Remote Denial Of Service Exploit (wuftpd-freezer.c)
  112. NIPrint LPD-LPR Print Server <= 4.10 Remote Exploit
  113. MS Windows XP/2000 RPC Remote (non exec memory) Exploit
  114. OpenBSD (ibcs2_exec) Kernel Local Exploit
  115. MS Windows 2000/XP Workstation Service Overflow (MS03-049)
  116. TerminatorX <= 3.81 stack overflow local root exploit
  117. MS Frontpage Server Extensions fp30reg.dll Exploit (MS03-051)
  118. MS Windows (ListBox/ComboBox Control) Local Exploit (MS03-045)
  119. MS Windows Workstation Service WKSSVC Remote Exploit (MS03-049)
  120. IA WebMail 3.x (iaregdll.dll version 1.0.0.5) Remote Exploit
  121. OpenBSD 2.x - 3.3 exec_ibcs2_coff_prep_zmagic() Kernel Exploit
  122. Apache mod_gzip (with debug_mode) <= 1.2.26.1a Remote Exploit
  123. Opera 7.22 File Creation and Execution Exploit (Malicious Webserver)
  124. Linux Kernel 2.4.22 "do_brk()" local Root Exploit (PoC)
  125. MS Windows XP Workstation Service Remote Exploit (MS03-049)
  126. Linux Kernel <= 2.4.22 (do_brk) Local Root Exploit (working)
  127. Apache 1.3.*-2.0.48 mod_userdir Remote Users Disclosure Exploit
  128. Eznet v3.5.0 Remote Stack Overflow and Denial of Service Exploit
  129. HP-UX B11.11 /usr/bin/ct Local Format String Root Exploit
  130. MS Windows Messenger Service Remote Exploit FR (MS03-043)
  131. Eznet 3.5.0 Remote Stack Overflow Universal Exploit
  132. phpBB 2.0.6 search_id sql injection MD5 Hash Remote Exploit
  133. PHP-NUKE version <= 6.9 'cid' sql injection Remote Exploit
  134. Cyrus IMSPD v1.7 abook_dbname Remote Root Exploit
  135. Xsok v1.02 "-xsokdir" local buffer overflow game exploit
  136. Linux Kernel "do_mremap" Local Proof of Concept
  137. Linux Kernel "do_mremap" Local Proof of Concept II
  138. lftp <= 2.6.9 Remote Stack based Overflow Exploit
  139. SuSE linux 9.0 YaST config Skribt Local Exploit
  140. Linux Kernel 2.4.x mremap() bound checking Root Exploit
  141. Need for Speed 2 Remote Client Buffer Overflow Exploit
  142. MS Windows XP/2003 Samba Share Resource Exhaustion Exploit
  143. Serv-U FTPD 3.x/4.x "SITE CHMOD" Command Remote Exploit
  144. MS Internet Explorer URL Injection in History List (MS04-004)
  145. rsync <= 2.5.7 Local stack overflow Root Exploit
  146. MS Windows ASN.1 LSASS.EXE Remote Exploit (MS04-007)
  147. Linux Kernel "mremap()"#2 Local Proof-of-concept
  148. GateKeeper Pro 4.7 web proxy Remote Buffer Overflow Exploit
  149. PSOProxy 0.91 Remote Buffer Overflow Exploit (Win2k/XP)
  150. IPSwitch IMail LDAP Daemon Remote Buffer Overflow Exploit
  151. Serv-U FTPD 3.x/4.x/5.x (MDTM) Remote Overflow Exploit
  152. WFTPD Server <= 3.21 Remote Buffer Overflow Exploit
  153. Linux Kernel 2.x mremap missing do_munmap Exploit
  154. Red Faction <= 1.20 Server Reply Remote Buffer Overflow Exploit
  155. Eudora 6.0.3 Attachment Spoofing Exploit (windows)
  156. Foxmail 5.0 PunyLib.dll Remote Stack Overflow Exploit
  157. WS_FTP Server <= 4.0.2 ALLO Remote Buffer Overflow Exploit
  158. eSignal 7.6 STREAMQUOTE Remote Buffer Overflow Exploit
  159. Ethereal 0.10.0-0.10.2 IGAP Overflow Remote Root Exploit
  160. RealSecure / Blackice iss_pam1.dll Remote Overflow Exploit
  161. Multiple Cisco Products Vulnerabilities Exploit (Cisco Global Exploiter)
  162. FirstClass Desktop 7.1 (latest) Buffer Overflow Exploit
  163. Monit <= 4.1 Remote Root Buffer Overflow Exploit
  164. Monit <= 4.2 Remote Root Buffer Overflow Exploit
  165. eMule <= 0.42d IRC Remote Buffer Overflow Exploit
  166. MS Windows IIS SSL Remote Denial of Service Exploit (MS04-011)
  167. Poll It CGI v2.0 exploit
  168. traceroute Local Root Exploit
  169. News Update 1.1 Change Admin Password
  170. GnomeHack 1.0.5 Local Buffer Overflow Exploit
  171. Half Life (rcon) Remote Buffer Overflow Exploit
  172. /sbin/restore exploit (rh6.2)
  173. Oracle (oidldapd connect) Local Command Line Overflow Exploit
  174. Restore and Dump Local Exploit
  175. Slackware Linux /usr/bin/ppp-off Insecure /tmp Call Exploit
  176. xsplumber - strcpy() buffer overflow
  177. ListMail v112 - Command Execution
  178. UtilMind Mail List 1.7 - Users Can Execute Commands
  179. MS Windows IIS Unicode Remote Transversal Bug
  180. MS Windows IIS Unicode Remote Transversal Bug (2)
  181. MS Windows IIS Unicode Remote Transversal Bug (3)
  182. MS Windows IIS Unicode Remote Transversal Bug (4)
  183. dump 0.4b15 Local Root Exploit
  184. HP-UX 11.00/10.20 crontab Overwrite Files Exploit
  185. Solaris/SPARC 2.7 / 7 locale Format String Exploit
  186. HP-UX 11.0 pppd Stack Buffer Overflow Exploit
  187. BSDi suidperl Local Stack Buffer Overflow Exploit
  188. wu-ftpd 2.6.0 Remote Root Exploit
  189. BSDi 3.0 / 4.0 rcvtty[mh] Local Exploit
  190. vixie-cron Local Root Exploit
  191. BFTPd vsprintf() Format Strings Exploit
  192. rpc Suid Privledge Exploit
  193. dump 0.4b15 exploit (Redhat 6.2)
  194. BSDi 3.0 inc Local Root Buffer Overflow Exploit
  195. INND/NNRP < 1.6.X Remote Root Overflow Exploit
  196. GLIBC (via /bin/su) Local Root Exploit
  197. Solaris locale Format Strings (noexec stack) Exploit
  198. phf buffer overflow exploit for Linux-x86
  199. HP-UX FTPD Remote Buffer Overflow Exploit
  200. Solaris sadmind Remote Buffer Overflow Exploit
  201. MS Windows (Jolt2.c) Denial of Service Exploit
  202. mount exploit for glibc locale bug
  203. dislocate - Local i386 exploit in v1.3
  204. UUCP Exploit - file creation/overwriting (symlinks)
  205. expect (/usr/bin/expect) buffer overflow
  206. GnomeHack Local Buffer Overflow Exploit (gid=games)
  207. PHP 3.0.16/4.0.2 Remote Format Overflow Exploit
  208. Kwintv Local Buffer Overflow Exploit (gid=video(33))
  209. gnome_segv local buffer overflow
  210. BFTPd 1.0.12 Remote Exploit
  211. LPRng 3.6.22/23/24 Remote Root Exploit
  212. LPRng (RedHat 7.0) lpd Remote Root Format String Exploit
  213. Oops! 1.4.6 (one russi4n proxy-server) Heap Buffer Overflow Exploit
  214. Linux xsoldier-0.96 exploit (Red Hat 6.2)
  215. LPRng 3.6.24-1 Remote Root Exploit
  216. Pine (Local Message Grabber) Exploit
  217. Check Point VPN-1/FireWall-1 4.1 SP2 Blocked Port Bypass Exploit
  218. Solaris 2.7 / 2.8 Catman - Local Insecure tmp Symlink Exploit
  219. OpenBSD 2.6 / 2.7ftpd Remote Exploit
  220. SunOS 5.7 Catman - Local Insecure tmp Symlink Clobber Exploit
  221. Redhat 6.1 / 6.2 TTY Flood Users Exploit
  222. Linux Kernel 2.2 (TCP/IP Weakness) Exploit
  223. ml2 - local users can crash processes
  224. wu-ftpd 2.6.0 Remote Format Strings Exploit
  225. Solaris 2.6 / 7 / 8 Lock Users Out of mailx Exploit
  226. Fastgraf's whois.cgi Remote Command Execution Exploit
  227. BSD chpass (pw_error(3)) Local Root Exploit
  228. HP-UX 11.0 /bin/cu Privilege Escalation Exploit
  229. Solaris 2.5 / 2.5.1 getgrnam() Local Overflow Exploit
  230. GLIBC locale format strings exploit
  231. Solaris 7 / 8-beta arp Local Overflow Exploit
  232. APC UPS 3.7.2 (apcupsd) Local Denial of Service Exploit
  233. Seyon Exploit / Tested Version 2.1 rev. 4b i586-Linux
  234. IMAP4rev1 10.190 Authentication Stack Overflow Exploit
  235. Cisco Password Bruteforcer Exploit
  236. Redhat 6.1 man Local Exploit (egid 15)
  237. Solaris 2.6 / 2.7 /usr/bin/write Local Overflow Exploit
  238. jaZip 0.32-2 Local Buffer Overflow Exploit
  239. glibc-2.2 and openssh-2.3.0p1 exploits glibc >= 2.1.9x
  240. Tru64 5 (su) Env Local Stack Overflow Exploit
  241. splitvt < 1.6.5 Local Exploit
  242. SCO OpenServer 5.0.5 Env Local Stack Overflow Exploit
  243. Cisco Multiple Products Automated Exploit Tool
  244. Netscape Enterprise Server 4.0/sparc/SunOS 5.7 Remote Exploit
  245. Novell BorderManager Enterprise Edition 3.5 Denial of Service Exploit
  246. IRIX (5.3/6.2/6.3/6.4/6.5/6.5.11) /usr/bin/lpstat Local Exploit
  247. MS Windows 2000 sp1/sp2 isapi .printer Extension Overflow Exploit
  248. MS Windows 2000 sp1/sp2 isapi .printer Extension Overflow Exploit (2)
  249. BeroFTPD 1.3.4(1) Linux x86 Remote Root Exploit
  250. IRIX (5.3/6.2/6.3/6.4/6.5/6.5.11) /usr/lib/print/netprint Local Exploit
  251. MS Windows Utility Manager Local SYSTEM Exploit (MS04-011)
  252. WinZIP MIME Parsing Overflow Proof of Concept Exploit
  253. SquirrelMail chpasswd buffer overflow
  254. Linux Kernel <= 2.6.3 (setsockopt) Local Denial of Service Exploit
  255. MS Windows IIS 5.0 SSL Remote buffer overflow Exploit (MS04-011)
  256. MS Windows 2K/XP TCP Connection Reset Remote Attack Tool
  257. BIND 8.2.x (TSIG) Remote Root Stack Overflow Exploit
  258. BIND 8.2.x (TSIG) Remote Root Stack Overflow Exploit (2)
  259. BIND 8.2.x (TSIG) Remote Root Stack Overflow Exploit (3)
  260. Tru64 UNIX 4.0g /usr/bin/at Local Root Exploit
  261. BIND 8.2.x (TSIG) Remote Root Stack Overflow Exploit (4)
  262. IMAP4rev1 12.261/12.264/2000.284 (lsub) Remote Exploit
  263. Slackware 7.1 /usr/bin/mail Local Exploit
  264. FreeBSD 3.5.1/4.2 ports package local root exploit
  265. FreeBSD 3.5.1/4.2 Ports Package Local Root Exploit
  266. Progress Database Server 8.3b (prodb) Local Root Exploit
  267. sendtemp.pl Read Access to Files
  268. GLIBC 2.1.3 ld_preload Local Exploit
  269. MS Windows Lsasrv.dll RPC Remote Buffer Overflow Exploit (MS04-011)
  270. HP Web JetAdmin 6.5 (connectedNodes.ovpl) Remote Root Exploit
  271. MS Windows XP/2K Lsasrv.dll Remote Universal Exploit (MS04-011)
  272. XChat 1.8.0/2.0.8 socks5 Remote Buffer overflow Exploit
  273. Sasser Worm ftpd Remote Buffer Overflow Exploit (port 5554)
  274. Symantec Multiple Firewall DNS Response Denial of Service
  275. CVS Remote Entry Line Heap Overflow Root Exploit (Linux/FreeBSD)
  276. CVS Remote Entry Line Root Heap Overflow Exploit
  277. UNIX 7th Edition /bin/mkdir Local Buffer Overflow Exploit
  278. Borland Interbase <= 7.x Remote Exploit
  279. Subversion 1.0.2 svn_time_from_cstring() Remote Exploit
  280. Linux Kernel 2.4.x-2.6.x Assembler Inline Function Local DoS Exploit
  281. rlpr <= 2.04 msg() Remote Format String Exploit
  282. MPlayer <= 1.0pre4 GUI filename handling Overflow Exploit
  283. phpMyAdmin 2.5.7 Remote code injection Exploit
  284. MS Internet Explorer Remote Application.Shell Exploit
  285. MySQL 4.1/5.0 zero-length password Auth. Bypass Exploit
  286. Norton AntiVirus Denial of Service Vulnerability
  287. MS Outlook Express Window Opener Vulnerability
  288. MS Outlook Express Javascript Execution Vulnerability
  289. MS Internet Explorer Remote Wscript.Shell Exploit
  290. Resolv+ (RESOLV_HOST_CONF) Linux Library Local Exploit
  291. sudo.bin NLSPATH Local Root Exploit
  292. suid_perl 5.001 vulnerability
  293. Linux & BSD umount Local Root Exploit
  294. Xt Library Local Root Command Execution Exploit
  295. Ping of Death Remote Denial of Service Exploit
  296. BSD and Linux lpr Command Local Root Exploit
  297. Solaris 2.4 /bin/fdformat Local Buffer Overflow Exploits
  298. MS Windows NT Crash with an Extra Long Username DoS Exploit
  299. Solaris 2.5.1 lp and lpsched Symlink Vulnerabilities
  300. LibXt XtAppInitialize() overflow *xterm exploit
  301. Solaris 2.5.0/2.5.1 ps & chkey Data Buffer Exploit
  302. AIX 4.2 /usr/dt/bin/dtterm Local Buffer Overflow Exploit
  303. IRIX Multiple Buffer Overflow Exploits (LsD)
  304. AIX lquerylv Local Root Buffer Overflow Exploit
  305. IRIX /bin/login Local Buffer Overflow Exploit
  306. IRIX 5.3 /usr/sbin/iwsh Local Root Buffer Overflow
  307. Solaris 5.5.1 X11R6.3 xterm (-xrm) Local Root Exploit
  308. zgv $HOME overflow
  309. Linux imapd Remote Overflow File Retrieve Exploit
  310. Solaris 2.4 passwd, yppasswd, and nispasswd Overflow Exploits
  311. TCP SYN Denial of Service Exploit (bang.c)
  312. UDP Stress Tester Denial of Service Exploit
  313. Solaris /bin/login Remote Root Exploit (SPARC/x86)
  314. Squid 2.4.1 Remote Buffer Overflow Exploit
  315. wu-ftpd <= 2.6.1 Remote Root Exploit
  316. SSH (x2) Remote Root Exploit
  317. MS Windows 2000 Utility Manager Privilege Elevation Exploit (MS04-019)
  318. MS Windows 2K POSIX Subsystem Privilege Escalation Exploit (MS04-020)
  319. MS Windows 2000 Universal Language Utility Manager Exploit (MS04-019)
  320. MS Windows 2K/XP Task Scheduler .job Exploit (MS04-022)
  321. MS Internet Explorer Overly Trusted Location Cache Exploit
  322. MS Windows 2k Utility Manager (All-In-One) Exploit (MS04-019)
  323. OverByte ICS FTP Server Remote Denial of Service Exploit
  324. Medal of Honor Remote Buffer Overflow Vulnerability
  325. Lexmark Multiple HTTP Servers Denial of Service Vulnerability
  326. Drcat 0.5.0-beta (drcatd) Remote Root Exploit
  327. Flash FTP Server Directory Traversal
  328. Xitami Web Server Denial of Service Exploit
  329. Conceptronic CADSLR1 Router Denial of Service Vulnerability
  330. Samba <= 3.0.4 SWAT Authorization Buffer Overflow Exploit
  331. MS Internet Explorer (11 bytes) Denial of Service Exploit
  332. MS Windows SMS 2.0 Denial of Service Exploit
  333. Mac OS X Panther Internet Connect Local Root Exploit
  334. MS Windows XP Task Scheduler (.job) Universal Exploit (MS04-022)
  335. SoX Local Buffer Overflow Exploit
  336. Citadel/UX Remote Denial of Service Exploit (PoC)
  337. Apache HTTPd Arbitrary Long HTTP Headers DoS (c version)
  338. OpenFTPD (<= 0.30.2) Remote Exploit
  339. OpenFTPD <= 0.30.1 (message system) Remote Shell Exploit
  340. SoX Local Buffer Overflow Exploiter (Via Crafted WAV File)
  341. Linux Kernel File Offset Pointer Handling Memory Disclosure Exploit
  342. MS Internet Explorer Remote Null Pointer Crash (mshtml.dll)
  343. BlackJumboDog Remote Buffer Overflow Exploit
  344. CVSTrac Remote Arbitrary Code Execution Exploit
  345. Pavuk Digest Authentication Buffer Overflow Remote Exploit
  346. Serv-U 3x - 5.x Local Privilege Escalation Exploit
  347. Melange Chat Server 1.10 Remote Buffer Overflow Exploit
  348. PHP (php-exec-dir) Patch Command Access Restriction Bypass
  349. MS Messenger Denial of Service Exploit (MS03-043) (linux ver)
  350. xine 0.99.2 Remote Stack Overflow Exploit
  351. Dropbear SSH <= 0.34 Remote Root Exploit
  352. Ollydbg <= 1.10 Format String Bug
  353. LibPNG Graphics Library Remote Buffer Overflow Exploit
  354. GV PostScript Viewer Remote Buffer overflow Exploit
  355. Mac OS X <= 10.3.3 AppleFileServer Remote Root Overflow Exploit
  356. Remote CVS <= 1.11.15 (error_prog_name) Remote Exploit
  357. LibPNG <= 1.2.5 png_jmpbuf() Local Buffer Overflow Exploit
  358. ProFTPd Local pr_ctrls_connect Vuln - ftpdctl
  359. AOL Instant Messenger AIM "Away" Message Local Exploit
  360. OpenBSD ftp Exploit (teso)
  361. WU-IMAP 2000.287(1-2) Remote Exploit
  362. rsync <= 2.5.1 Remote Exploit
  363. rsync <= 2.5.1 Remote Exploit (2)
  364. GV PostScript Viewer Remote Buffer overflow Exploit (2)
  365. IPSwitch IMail Server <= 8.1 Local Password Decryption Utility
  366. IPD (Integrity Protection Driver) Local Exploit
  367. PlaySMS <= 0.7 SQL Injection Exploit
  368. XV 3.x BMP Parsing Local Buffer Overflow Exploit
  369. phpMyWebhosting SQL Injection Exploit
  370. AWStats Input Validation Hole in 'logfile'
  371. Qt BMP Parsing Bug Heap Overflow Exploit
  372. BSD (telnetd) Remote Root Exploit
  373. Sendmail 8.11.x Exploit (i386-Linux)
  374. MusicDaemon <= 0.0.3 v2 Remote DoS and /etc/shadow Stealer
  375. Hafiye 1.0 Remote Terminal Escape Sequence Injection Vulnerability
  376. SquirrelMail (chpasswd) Local Root Bruteforce Exploit
  377. Winamp <= 5.04 Skin File (.wsz) Remote Code Execution Exploit
  378. BadBlue 2.52 Web Server Multiple Connections Denial of Service Exploit
  379. Gaucho 1.4 Mail Client Buffer Overflow Vulnerability
  380. Painkiller <= 1.3.1 Denial of Service Exploit
  381. Easy File Sharing Webserver 1.25 Denial of Service Exploit
  382. Citadel/UX Remote Buffer Overflow Exploit
  383. D-Link DCS-900 Camera Remote IP Address Changer Exploit
  384. TiTan FTP Server Long Command Heap Overflow PoC Exploit
  385. WFTPD Pro Server 3.21 MLST Remote Denial of Service Exploit
  386. CesarFTP Server Long Command Denial of Service Exploit
  387. Ground Control <= 1.0.0.7 (Server/Client) Denial of Service Exploit
  388. TorrentTrader 1.0 RC2 SQL Injection Exploit
  389. AOL Instant Messenger AIM "Away" Message Remote Exploit
  390. Courier-IMAP <= 3.0.2-r1 auth_debug() Remote Format String Exploit
  391. CDRDAO Local Root Exploit
  392. Trillian 0.74i Remote Buffer Overflow Exploit (MSN Module Bug)
  393. PHP-Nuke 7.4 Remote Privilege Escalation
  394. Citadel/UX <= 6.23 Remote USER Directive Exploit (Private Version)
  395. cdrecord $RSH exec() SUID Shell Creation
  396. BlackJumboDog FTP Server 3.6.1 Remote Buffer Overflow Exploit
  397. Serv-U < 5.2 Remote Denial of Service Exploit
  398. Turbo Seek Null Byte Error Discloses Files to Remote Users
  399. PHP-Nuke SQL Injection Edit/Save Message(s) Bug
  400. htpasswd Apache 1.3.31 Local Exploit
  401. CDRecord's ReadCD Local Root Privileges
  402. SudoEdit 1.6.8 Local Change Permission Exploit
  403. MS Windows JPEG GDI+ Overflow Shellcoded Exploit
  404. MDaemon 6.5.1 IMAP/SMTP Remote Buffer Overflow Exploit
  405. MS Windows JPEG Processing Buffer Overrun Exploit (MS04-028)
  406. MS Windows JPEG GDI+ Overflow Administrator Exploit (MS04-028)
  407. glFTPd Local Stack Overflow Exploit (PoC) (Slackware 9.0/9.1/10.0)
  408. MS Windows JPEG GDI+ Overflow Download Shellcode Exploit (MS04-028)
  409. GNU Sharutils <= 4.2.1 Local Format String PoC Exploit
  410. MS Windows JPEG GDI+ Remote Heap Overflow Exploit (MS04-028)
  411. HP-UX 11.0/11.11 swxxx Local Root Shell Exploit
  412. MyServer 0.7.1 (POST) Denial Of Service Exploit
  413. MS Windows JPEG GDI+ All-In-One Bind/Reverse/Admin/FileDownload
  414. WinRAR 1.0 Local Buffer Overflow Exploit
  415. Zinf 2.2.1 Local Buffer Overflow Exploit
  416. GlobalSCAPE - CuteFTP macros (*.mcr) Local Vulnerability
  417. Serendipity 0.7-beta1 SQL Injection Proof of Concept
  418. MSSQL 7.0 Remote Denial of Service Exploit
  419. Silent Storm Portal Multiple Vulnerabilities
  420. IPSwitch WhatsUp Gold 8.03 Remote Buffer Overflow Exploit
  421. Icecast <= 2.0.1 Win32 Remote Code Execution Exploit
  422. WordPress Blog HTTP Splitting Vulnerability
  423. Monolith Games Local Buffer Overflow Exploit
  424. Eudora 6.2.0.7 Attachment Spoofer Exploit
  425. Icecast <= 2.0.1 Win32 Remote Code Execution Exploit (modded)
  426. ocPortal 1.0.3 Remote File Inclusion
  427. YahooPOPs <= 1.6 SMTP Port Buffer Overflow Exploit
  428. MS Windows NNTP Service (XPAT) Denial of Service Exploit (MS04-036)
  429. BSD bmon <= 1.2.1_2 Local Exploit
  430. Monit <= 4.2 Basic Authentication Remote Root Exploit
  431. ProFTPD <= 1.2.10 Remote Users Enumeration Exploit
  432. YahooPOPs <= 1.6 SMTP Remote Buffer Overflow Exploit
  433. SLX Server 6.1 Arbitrary File Creation Exploit (PoC)
  434. MS Windows Metafile (.emf) Heap Overflow Exploit (MS04-032)
  435. MS Windows IIS WebDAV XML Denial of Service Exploit (MS04-030)
  436. BitchX 1.0c19 Local Root Exploit (suid?)
  437. Apache <= 1.3.31 mod_include Local Buffer Overflow Exploit
  438. Ability Server <= 2.34 (STOR) Remote Buffer Overflow Exploit
  439. Multiple (Almost all) Browsers Tabbed Browsing Vulnerabilities
  440. ShixxNote 6.net Remote Buffer Overflow Exploit
  441. socat <= 1.4.0.2 Local Format String Exploit (not setuid)
  442. Ability Server <= 2.34 (APPE) Remote Buffer Overflow Exploit
  443. Quick 'n EasY <= 3.0 FTP Server Remote Denial of Service Exploit
  444. BaSoMail Server 1.24 POP3/SMTP Remote Denial of Service Exploit
  445. MailCarrier 2.51 SMTP EHLO / HELO Buffer Overflow Exploit
  446. BaSoMail Multiple Buffer Overflow Denial of Service Exploit
  447. GD Graphics Library Heap Overflow Proof of Concept Exploit
  448. libxml 2.6.12 nanoftp Remote Buffer Overflow Proof of Concept Exploit
  449. SCO Openserver 5.0.7 (MMDF deliver) Local Root Exploit
  450. Master of Orion III <= 1.2.5 Denial of Service Exploit
  451. Age of Sail II <= 1.04.151 Remote Buffer Overflow Exploit
  452. Alpha Black Zero <= 1.04 Remote Denial of Service Exploit
  453. Chatman <= 1.5.1 RC1 Broadcast Crash Exploit
  454. Flash Messaging <= 5.2.0g Remote Denial of Service Exploit
  455. WvTFTPd 0.9 Remote Root Heap Overflow Exploit
  456. zgv 5.5 Multiple Arbitrary Code Execution PoC Exploits
  457. Chesapeake TFTP Server 1.0 Directory Traversal and DoS PoC Exploit
  458. MS Internet Explorer (IFRAME Tag) Buffer Overflow Exploit
  459. MiniShare <= 1.4.1 Remote Buffer Overflow Exploit
  460. Ability Server 2.34 FTP STOR Buffer Overflow Exploit (Unix Exploit)
  461. CCProxy Log Remote Stack Overflow Exploit
  462. Qwik SMTP 0.3 Remote Root Format String Exploit
  463. CCProxy 6.2 (ping) Remote Buffer Overflow Exploit
  464. SlimFTPd <= 3.15 Remote Buffer Overflow Exploit
  465. Linux Kernel (<= 2.4.27 , 2.6.8) binfmt_elf Executable File Read Exploit
  466. WinFTP Server 1.6 Denial of Service Exploit
  467. Kerio Personal Firewall <= 4.1.1 Multiple IP Options DoS Exploit
  468. IPSwitch IMail 8.13 (DELETE) Remote Stack Overflow Exploit
  469. NetNote Server (<= 2.2 build 230) Crafted String DoS Exploit
  470. Multiple AntiVirus (zip file) Detection Bypass Exploit
  471. UBB.threads 6.2.*-6.3.* one char bruteforce exploit
  472. vBulletin LAST.PHP SQL Injection Vulnerability
  473. Secure Network Messenger <= 1.4.2 Denial of Service Exploit
  474. miniBB Input Validation Hole in 'user' Parameter
  475. MiniShare Remote Buffer Overflow Exploit (c source)
  476. MailCarrier 2.51 Remote Buffer Overflow Exploit
  477. SLMail 5.5 POP3 PASS Buffer Overflow Exploit
  478. MS Windows Compressed Zipped Folders Exploit (MS04-034)
  479. MS Internet Explorer 6.0 SP2 File Download Security Warning Bypass
  480. TWiki 20030201 search.pm Remote Command Execution Exploit
  481. DMS POP3 Server (1.5.3 build 37) Buffer Overflow Exploit
  482. GFHost PHP GMail Remote Command Execution Exploit
  483. phpBB <= 2.0.10 Remote Command Execution Exploit
  484. Invision Power Board v2.0.0 - 2.0.2 Sql Injection Exploit
  485. wodFtpDLX Client ActiveX Control Buffer Overflow Crash Exploit
  486. CoffeeCup FTP Clients (Direct <= 6.2.0.62) (Free <= 3.0.0.10) BoF Exploit
  487. Halo <= 1.05 Broadcast Client Crash Exploit
  488. Prozilla 1.3.6 Remote Stack Overflow Exploit
  489. Soldier of Fortune II <= 1.3 Server/Client Denial of Service Exploit
  490. Winamp <= 5.06 IN_CDDA.dll Remote Buffer Overflow Exploit
  491. Star Wars Battlefront <= 1.1 Fake Players Denial of Service Exploit
  492. atari800 Local Root Exploit
  493. MailEnable Mail Server IMAP <= 1.52 Remote Buffer Overflow Exploit
  494. EZshopper Directory Transversal in loadpage.cgi
  495. PHP <= 4.3.7/ 5.0.0RC3 memory_limit Remote Exploit
  496. 3Dmax 6.x backburner Manager <= 2.2 Denial of Service Exploit
  497. Mercury Mail 4.01 (Pegasus) IMAP Buffer Overflow Exploit
  498. WS_FTP Server <= 5.03 MKD Remote Buffer Overflow Exploit
  499. Orbz Game <= 2.10 Remote Buffer Overflow Exploit
  500. Jana Server <= 2.4.4 (http/pna) Denial of Service Exploit
  501. Mercury Mail 4.01 (Pegasus) IMAP Buffer Overflow Exploit (c code)
  502. Aspell (word-list-compress) Command Line Stack Overflow
  503. Mercury Mail 4.01 (Pegasus) IMAP Buffer Overflow v2 (c code)
  504. Neverwinter Nights special Fake Players Denial of Service Exploit
  505. Kreed <= 1.05 Format String and Denial of Service Exploit
  506. phpBB <= 2.0.10 Remote Command Execution Exploit (cgi version)
  507. Hosting Controller <= 0.6.1 Hotfix 1.4 Directory Browsing Vulnerability
  508. phpBB v1.0.0 - 2.0.10 admin_cash.php remote exploit
  509. GetRight <= 5.2a Skin File (*.grs) Buffer Overflow Exploit
  510. Battlefield 1942 <= 1.6.19 and Vietnam <= 1.2 Broadcast Client Crash
  511. Mac OS X Adobe Version Cue Local Root Exploit
  512. Citadel/UX <= 6.27 Remote Root Format String Exploit
  513. Codename Eagle <= 1.42 Socket Unreacheable DoS Exploit
  514. Lithtech Engine (new protocol) Socket Unreacheable DoS
  515. TipxD <= 1.1.1 Local Format String Vulnerability (not setuid)
  516. Linux Kernel <= 2.4.28 and <= 2.6.9 scm_send local DoS Exploit
  517. Linux Kernel (<= 2.6.9, 2.4.22-28) (igmp.c) Local Denial of Service Exploit
  518. OpenText FirstClass 8.0 HTTP Daemon /Search Remote DoS
  519. Ricoh Aficio 450/455 PCL 5e Printer ICMP Denial of Service Exploit
  520. wget <= 1.9 Directory Traversal Exploit
  521. Linux Kernel <= 2.6.9, <= 2.4.28 vc_resize int Local Overflow Exploit
  522. Linux Kernel <= 2.6.9, <= 2.4.28 Memory Leak Local DoS
  523. Linux Kernel <= 2.6.9, <= 2.4.28 ip_options_get Local Overflow
  524. Ability Server <= 2.34 Remote APPE Buffer Overflow Exploit
  525. WinRAR <= 3.4.1 Corrupt ZIP File Vulnerability PoC
  526. Cscope <= 15.5 Symlink Vulnerability Exploit
  527. PHP <= 4.3.9 & phpBB 2.x with unserialize() Remote Exploit (compiled)
  528. Ultrix 4.5/MIPS dxterm Local Buffer Overflow Exploit
  529. AIX 5.1 to 5.3 paginit Local Stack Overflow Exploit
  530. MS Internet Explorer & MSN Memory_Access_Violation DoS
  531. AIX 4.3/5.1 - 5.3 lsmcode Local Root Command Execution
  532. phpBB highlight Arbitrary File Upload (Santy.A)
  533. phpMyChat 0.14.5 Remote Improper File Permissions Exploit
  534. e107 include() Remote Exploit
  535. Webmin BruteForce and Command Execution Exploit
  536. CrystalFTP Pro 2.8 Remote Buffer Overflow Exploit
  537. SHOUTcast DNAS/Linux 1.9.4 Format String Remote Exploit
  538. Solaris 7/8/9 CDE LibDTHelp Local Buffer Overflow Exploit
  539. Solaris 7/8/9 CDE LibDTHelp Local Buffer Overflow Exploit (2)
  540. Solaris 8/9 passwd circ() Local Root Exploit
  541. Solaris 2.5.1/2.6/7/8 rlogin /bin/login Buffer Overflow Exploit (SPARC)
  542. Linux Kernel 2.6.x chown() Group Ownership Alteration Exploit
  543. MS Internet Explorer (<= XP SP2) HTML Help Control Local Zone Bypass
  544. Sanity.b - phpBB <= 2.0.10 Bot Install (AOL/Yahoo Search)
  545. MS Windows Kernel ANI File Parsing Crash Vulnerability
  546. PhpInclude.Worm - PHP Scripts Automated Arbitrary File Inclusion
  547. Netcat v1.1 "-e" Switch Remote Buffer Overflow Exploit
  548. PHP <= 4.3.7 openlog() Buffer Overflow Exploit
  549. MS Internet Explorer Remote Code Execution with Parameters - PoC
  550. MS Windows 2000 WINS Remote Code Execution Exploit
  551. MS Windows NetDDE Remote Buffer Overflow Exploit (MS04-031)
  552. SOLDNER Secret Wars <= 30830 Denial of Service Exploit
  553. QWikiwiki Directory Traversal Vulnerability
  554. iWebNegar Configuration Nullification Denial of Service Exploit
  555. FreeBSD TOP Format String Vulnerability
  556. phpBB <= 2.0.10 Bot Install (Altavista) (ssh.D.Worm)
  557. HTGET <= 0.9.x Local Root Exploit
  558. Gore <= 1.50 Socket Unreacheable Denial of Service Exploit
  559. Norton Antivirus < 2005 Remote Stack Overflow Exploit
  560. Linux Kernel <= 2.4.29-rc2 uselib() Privilege Elevation
  561. Webmin Web Brute Force v1.5 (cgi-version)
  562. Webmin BruteForce + Command Execution v1.5
  563. MS Windows Improper Token Validation Local Exploit (working)
  564. Veritas Backup Exec Agent 8.x/9.x Browser Overflow (c version)
  565. MS Internet Explorer .ANI Remote Stack Overflow (0.2)
  566. ITA Forum <= 1.49 SQL Injection Exploit
  567. Breed <= patch #1 zero-length Remote Crash Exploit
  568. Exim <= 4.41 dns_build_reverse Local Exploit PoC
  569. Apple iTunes Playlist Local Parsing Buffer Overflow Exploit
  570. Apple iTunes Playlist Buffer Overflow Download Shellcoded Exploit
  571. Peer2Mail <= 1.4 Encrypted Password Dumper Exploit
  572. NodeManager Professional 2.00 Buffer Overflow Vulnerability
  573. Mac OS X <= 10.3.7 Input Validation Flaw parse_machfile() DoS
  574. fkey <= 0.0.2 Local File Accessibility Exploit
  575. Apache OpenSSL Remote Exploit (Multiple Targets) (OpenFuckV2.c)
  576. MS Internet Explorer .ANI files handling Universal Exploit (MS05-002)
  577. Mac OS X <= 10.3.7 mRouter Local Privilege Escalation Exploit
  578. Golden FTP Server <= 2.02b Remote Buffer Overflow Exploit
  579. Funduc Search and Replace Compressed File Local BoF Exploit
  580. Apple QuickTime <= 6.5.2.10 (.qtif) Image Parsing Vulnerability
  581. MS Internet Explorer .ANI files handling Downloader Exploit (MS05-002)
  582. AWStats configdir Remote Command Execution Exploit (c code)
  583. AWStats configdir Remote Command Execution Exploit (perl code)
  584. Siteman <= 1.1.10 Remote Administrative Account Addition Exploit
  585. Berlios gpsd <= 2.7.x Remote Format String Vulnerability
  586. /usr/bin/trn Local Exploit (not suid)
  587. Linux Kernel 2.4 uselib() Privilege Elevation Exploit
  588. Linux ncpfs Local Exploit
  589. Xpand Rally <= 1.0.0.0 (Server/Clients) Crash Exploit
  590. Savant Web Server 3.1 Remote Buffer Overflow Exploit
  591. TinyWeb 1.9 Denial of Service Exploit
  592. Painkiller <= 1.35 in-game cd-key alpha-numeric Buffer Overflow Exploit
  593. ngIRCd <= 0.8.2 Remote Format String Exploit
  594. Newspost 2.1 socket_getline() Remote Buffer Overflow Exploit v2
  595. LiteForum 2.1.1 sql injection exploit
  596. Savant Web Server 3.1 Remote Buffer OverflowExploit (win2003)
  597. Operator Shell (osh) 1.7-12 Local Root Exploit
  598. ngIRCd <= 0.8.1 Remote Denial of Service Exploit (2)
  599. PerlDesk 1.x SQL-Injection Exploit
  600. Setuid perl PerlIO_Debug() overflow
  601. Setuid perl PerlIO_Debug() root owned file creation
  602. Mac OS X DS_Store Arbitrary File Overwrite Exploit
  603. 3CServer 1.1 FTP Server Remote Exploit
  604. Mac OS X Adobe Version Cue Local Root Exploit
  605. Exim <= 4.42 Local Root Exploit
  606. Foxmail 2.0 (MAIL FROM:) Denial of Service Exploit
  607. DelphiTurk CodeBank 3.1 Local Username and Password Disclosure
  608. Mac OS X AppleFileServer Remote Denial of Service Exploit
  609. PostNuke PostWrap Module Remote Exploit
  610. PHP-Nuke v7.4 admin exploit (old exploit)
  611. MSN Messenger PNG Image Buffer Overflow Download Shellcoded Exploit
  612. DelphiTurk FTP v1.0 Passwords to Local Users Exploit
  613. MSN Messenger PNG Image Buffer Overflow (linux compile)
  614. ELOG <= 2.5.6 Remote Shell Exploit
  615. Prozilla <= 1.3.7.3 Remote Format String Exploit
  616. MyPHP Forum 1.0 SQL Injection Exploit
  617. CMScore SQL Injection Exploit
  618. Chipmunk Forums SQL Injection Exploit
  619. Armagetron Advanced <= 0.2.7.0 Server Crash Exploit
  620. DelphiTurk e-Posta v1.0 Local Exploit
  621. Exim <= 4.43 auth_spa_server() Remote PoC Exploit
  622. Quake 3 Engine Infostring Crash and Shutdown Exploit
  623. MercuryBoard <= 1.1.1 Working Sql Injection
  624. CA BrightStor ARCserve Backup Remote Buffer Overlow PoC
  625. GNU a2ps "Anything to PostScript" Local Exploit (not suid)
  626. AwStats <= 6.4 Denial Of Service (with Advisory)
  627. vBulletin <= 3.0.4 "forumdisplay.php" Code Execution
  628. Savant Web Server 3.1 Remote BoF (French Win OS support)
  629. vBulletin <= 3.0.4 "forumdisplay.php" Code Execution (part 2)
  630. Serv-U 4.x "site chmod" Remote Buffer Overflow Exploit
  631. Dream FTP 1.2 Remote Format String Exploit
  632. VisualBoyAdvanced 1.7.x Local Shell Exploit (non suid) (updated)
  633. 3Com Ftp Server 2.0 Remote Overflow Exploit
  634. Medal of Honor Spearhead Server Remote Buffer Overflow (Linux)
  635. 3Com 3CDaemon FTP Unauthorized "USER" Remote BoF Exploit
  636. Knox Arkeia Server Backup 5.3.x Remote Root Exploit
  637. Thomson TCW690 POST Password Validation Exploit
  638. SHOUTcast 1.9.4 File Request Format String Remote Exploit (win)
  639. GNU Cfengine 2.17p1 RSA Authentication Heap Overflow Exploit
  640. vBulletin <= 3.0.6 php Code Injection
  641. PeerFTP 5 Local Password Disclosure Exploit
  642. eXeem 0.21 Local Password Disclosure Exploit
  643. SendLink 1.5 Local Password Disclosure Exploit
  644. WWW File Share Pro 2.72 Local Password Disclosure Exploit
  645. Chat Anywhere 2.72a Local Password Disclosure Exploit
  646. WebConnect 6.4.4 - 6.5 Directory Traversal and Denial of Service Exploit
  647. Avaya IP Office Phone Manager Local Password Disclosure Exploit
  648. AWStats 5.7 - 6.2 Multiple Remote Exploit
  649. Soldier of Fortune 2 <= 1.03 "cl_guid" Server Crash
  650. wu-ftpd <= 2.6.2 File Globbing Denial of Service Exploit
  651. Knet <= 1.04c Buffer Overflow Denial of Service Exploit
  652. eXeem 0.21 Local Password Disclosure Exploit (asm)
  653. BadBlue 2.5 Easy File Sharing Remote Buffer Overflow
  654. Einstein <= 1.01 Local Password Disclosure Exploit
  655. BadBlue 2.55 Web Server Remote Buffer Overflow
  656. Einstein <= 1.01 Local Password Disclosure Exploit (asm)
  657. Scrapland <= 1.0 Server Termination Denial of Service Exploit
  658. Trillian Basic 3.0 PNG Image Processing Buffer Overflow Exploit
  659. AWStats 5.7 - 6.2 Multiple Remote Exploit (extra)
  660. Foxmail 1.1.0.1 POP3 Temp Dir Stack Overflow Exploit
  661. Apache <= 2.0.52 HTTP GET request Denial of Service Exploit
  662. Nokia Symbian 60 (Bluetooth Nickname) Remote Restart (update)
  663. PHP Form Mail 2.3 Arbitrary File Inclusion
  664. phpBB <= 2.0.12 Session Handling Authentication Bypass (tutorial)
  665. CA License Server (GETCONFIG) Remote Buffer Overflow Exploit (c)
  666. Aztek Forum <= 4.0 [myadmin.php] Database Dumper Exploit
  667. MS Windows XP/2003 Remote Denial of Service Exploit
  668. The Includer CGI <= 1.0 Remote Command Execution
  669. RealPlayer 10 ".smil" File Local Buffer Overflow Exploit
  670. phpWebLog <= 0.5.3 Arbitrary File Inclusion
  671. PHP mcNews <= 1.3 (skinfile) Remote File Include Vulnerability
  672. paNews 2.0b4 Remote Admin Creation SQL Injection Exploit
  673. Ethereal <= 0.10.9 "3G-A11" Remote Buffer Overflow Exploit
  674. MS Internet Explorer "mshtml.dll" CSS Parsing Buffer Overflow
  675. OpenBSD 2.0 - 3.6 TCP TIMESTAMP Remote Denial of Service Exploit
  676. Download Center Lite (DCL) <= 1.5 Remote File Inclusion
  677. phpBB <= 2.0.12 Session Handling Authentication Bypass (tutorial 2)
  678. SocialMPN Arbitrary File Injection Exploit
  679. phpDEV5 Remote Default Insecure Users Vuln
  680. Ethereal <= 0.10.9 "3G-A11" Remote Buffer Overflow Exploit (2)
  681. Sentinel LM 7.x UDP License Service Remote Buffer Overflow Exploit
  682. PaX Double-Mirrored VMA munmap Local Root Exploit
  683. Frank McIngvale LuxMan 0.41 Local Buffer Overflow Exploit
  684. Ethereal <= 0.10.9 "3G-A11" Remote Buffer Overflow Exploit
  685. LimeWire 4.1.2 - 4.5.6 Inappropriate Get Request Remote Exploit
  686. Freeciv Server <= 2.0.0beta8 Denial of Service Exploit
  687. ZPanel <= 2.5 Remote SQL Injection Exploit
  688. GoodTech Telnet Server < 5.0.7 Buffer Overflow Crash Exploit
  689. GoodTech Telnet Server < 5.0.7 Remote BoF Exploit (updated)
  690. iSnooker <= 1.6.8 Local Password Disclosure Exploit
  691. iPool <= 1.6.81 Local Password Disclosure Exploit
  692. PlatinumFTP <= 1.0.18 Multiple Remote Denial of Service Exploit
  693. MailEnable 1.8 Remote Format String Denial of Service Exploit
  694. phpDEV5 System-Call Local Denial of Service Exploit
  695. phpBB <= 2.0.12 Change User Rights Authentication Bypass
  696. PostScript Utilities - psnup Argument Buffer Overflow
  697. MCPWS Personal WebServer <= 1.3.21 Denial of Service Exploit
  698. phpMyFamily <= 1.4.0 Admin Bypass SQL Injection
  699. Ocean FTP Server 1.00 Denial of Service Exploit
  700. Linux Kernel 2.4.x / 2.6.x uselib() Local Privilege Escalation Exploit
  701. Mac OS X <= 10.3.8 (CF_CHARSET_PATH) Local Root Buffer Overflow
  702. phpBB <= 2.0.12 Change User Rights Authentication Bypass (c code)
  703. AIX <= 5.3.0 (invscout) Local Command Execution Vulnerability
  704. SPECTral Personal SMTP Server <= 0.4.2 Denial of Service Exploit
  705. Smail 3.2.0.120 Remote Root Heap Overflow Exploit
  706. PunBB version <= 1.2.2 Authentication Bypass Exploit
  707. mtftpd <= 0.0.3 Remote Root Exploit
  708. Cyrus imapd 2.2.4 - 2.2.8 (imapmagicplus) Remote Exploit
  709. Linux Kernel <= 2.6.10 Local Denial of Service Exploit
  710. BakBone NetVault 6.x/7.x Local Stack Buffer Overflow Exploit
  711. BakBone NetVault 6.x/7.x Remote Heap Buffer Overflow Exploit (2)
  712. phpBB <= 2.0.13 'downloads.php' mod Remote Exploit
  713. ArGoSoft FTP Server <= 1.4.2.8 Denial of Service Exploit
  714. MS Windows (WINS) Remote Buffer Overflow Exploit (v.3)
  715. phpBB <= 2.0.13 'Calendar Pro' mod Remote Exploit
  716. Linux Kernel PPC64/IA64 (AIO) Local Denial of Service Exploit
  717. GetDataBack Data Recovery 2.31 Local Exploit
  718. Aeon 0.2a Local Linux Exploit (perl code)
  719. Aeon 0.2a Local Linux Exploit (c code)
  720. MailEnable Enterprise 1.x Imapd Remote Exploit
  721. MailEnable Enterprise 1.x SMTP Remote Denial of Service Exploit
  722. FTP Now <= 2.6.14 Local Password Disclosure Exploit
  723. FireFly 1.0 Local Proxy Password Disclosure Exploit
  724. P2P Share Spy 2.2 Local Password Disclosure Exploit
  725. PHP-Nuke 6.x - 7.6 Top module Remote Sql Injection Exploit (working)
  726. The Includer CGI <= 1.0 Remote Command Execution (new version)
  727. The Includer CGI <= 1.0 Remote Command Execution (new version2)
  728. sash <= 3.7 Local Buffer Overflow Exploit
  729. ACNews <= 1.0 Admin Authentication Bypass SQL Injection Exploit
  730. Linux Kernel 2.4/2.6 bluez Local Root Privilege Escalation Exploit (update)
  731. MS Jet Database (msjet40.dll) DB File Buffer Overflow Exploit
  732. PunBB 1.2.4 (change_email) SQL Injection Exploit
  733. MS Jet Database (msjet40.dll) Reverse Shell Exploit
  734. MS Internet Explorer DHTML Object Memory Corruption Exploit
  735. MS Internet Explorer DHTML Object Handling Vulns (MS05-020)
  736. Oracle Database Server <= 10.1.0.2 Buffer Overflow Exploit
  737. Oracle Database PL/SQL Statement Multiple SQL Injection Exploits
  738. gld 1.4 (Postfix Greylisting Daemon) Remote Format String Exploit
  739. Morpheus <= 4.8 Local Chat Passwords Disclosure Exploit
  740. DeluxeFtp 6.x Local Password Disclosure Exploit
  741. BitComet 0.57 Local Proxy Password Disclosure Exploit
  742. MS Windows (HTA) Script Execution Exploit (MS05-016)
  743. Serendipity 0.8beta4 exit.php SQL Injection Exploit
  744. Sumus 0.2.2 httpd Remote Buffer Overflow Exploit
  745. Yager <= 5.24 Multiple Denial of Service Exploit
  746. MS Windows Malformed IP Options DoS Exploit (MS05-019)
  747. Mozilla Browsers x (Link) Code Execution Exploit
  748. WheresJames Webcam Publisher Beta 2.0.0014 Remote Buffer Overflow
  749. PMSoftware Simple Web Server (GET Request) Remote BoF Exploit
  750. PostgreSQL <= 8.01 Remote Reboot Denial of Service Exploit
  751. MS Exchange Server Remote Code Execution Exploit (MS05-021)
  752. Multiple OS (win32/aix/cisco) Crafted ICMP Messages DoS Exploit
  753. PMsoftware Simple Web Server 1.0 Remote Stack Overflow Exploit
  754. BitchX <= 1.0c20 Local Buffer Overflow Exploit
  755. MS Jet Database (msjet40.dll) Reverse Shell Exploit
  756. MailEnable Enterprise & Professional https Remote BoF Exploit
  757. Yager <= 5.24 Remote Buffer Overflow Exploit
  758. E-Cart <= 1.1 (index.cgi) Remote Command Execution Exploit
  759. NetFTPd 4.2.2 User Authentication Remote Buffer Overflow Exploit
  760. Ethereal / tcpdump (rsvp_print) Infinite Loop Denial of Service Exploit
  761. Tcpdump 3.8.x (ldp_print) Infinite Loop Denial of Service Exploit
  762. Tcpdump 3.8.x (rt_routing_info) Infinite Loop Denial of Service Exploit
  763. Tcpdump 3.8.x/3.9.1 (isis_print) Infinite Loop DoS Exploit
  764. MySQL MaxDB Webtool <= 7.5.00.23 Remote Stack Overflow Exploit
  765. GoText 1.01 Local User Informations Disclosure Exploit
  766. FilePocket 1.2 Local Proxy Password Disclosure Exploit
  767. ICUII 7.0 Local Password Disclosure Exploit
  768. NotJustBrowsing 1.0.3 Local Password Disclosure Exploit
  769. Golden FTP Server Pro 2.52 Remote Buffer Overflow Exploit
  770. Golden FTP Server Pro 2.52 Remote Buffer Overflow Exploit (2nd)
  771. Golden FTP Server Pro 2.52 Remote Buffer Overflow Exploit (3rd)
  772. Snmppd SNMP Proxy Daemon Remote Format String Exploit
  773. BulletProof FTP Server 2.4.0.31 Local Privilege Escalation Exploit
  774. Solaris 10.x ESRI Arcgis Local Root Format String Exploit
  775. ARPUS/Ce Local File Overwrite Exploit (setuid)
  776. ARPUS/Ce Local Overflow Exploit (setuid) (perl)
  777. GlobalScape Secure FTP Server 3.0 Buffer Overflow Exploit
  778. MS Windows WINS Vulnerability and OS/SP Scanner
  779. HP-UX FTPD <= 1.1.214.4 "REST" Remote Brute Force Exploit
  780. Ashley's Web Server Denial of Service Exploit
  781. Hosting Controller <= 0.6.1 Unauthenticated User Registration Exploit
  782. I-Mall Commerce (i-mall.cgi) Remote Command Execution Exploit
  783. dSMTP Mail Server 3.1b Linux Remote Root Format String Exploit
  784. ZeroBoard Worm Source Code
  785. DataTrac Activity Console Denial of Service Exploit
  786. Ethereal <= 0.10.10 (dissect_ipc_state) Remote Denial of Service Exploit
  787. Mozilla Firefox Install Method Remote Arbitrary Code Execution Exploit
  788. Hosting Controller <= 0.6.1 Unauthenticated User Registeration (2nd)
  789. Remote File Manager 1.0 Denial of Service Exploit
  790. PhotoPost Arbitrary Data Remote Exploit
  791. BakBone NetVault 6.x/7.x Remote Heap Buffer Overflow
  792. ZPanel <= 2.5b10 Remote SQL Injection Exploit
  793. Linux Mandrake <= 10.2 cdrdao Local Root Exploit (unfixed)
  794. Linux Kernel <= 2.6.12-rc4 (ioctl_by_bdev) Local Denial of Service Exploit
  795. Gaim <= 1.2.1 URL Handling Remote Stack Overflow Exploit
  796. MS Windows XP/2003 IPv6 Remote Denial of Service Exploit
  797. AIX 5.1 Bellmail Local Race Condition Exploit (Instructions w/ Exploit)
  798. Fusion SBX <= 1.2 Remote Command Execution Exploit
  799. WebAPP v0.9.9.2.1 Remote Command Execution Exploit (2nd updated)
  800. WebAPP v0.9.9.2.1 Remote Command Execution Exploit (1st)
  801. Woltlab Burning Board <= 2.3.1 register.php SQL-Injection Exploit
  802. Mozilla Firefox view-source:javascript url Code Execution Exploit
  803. TCP TIMESTAMPS Denial of Service Exploit
  804. Exim <= 4.41 dns_build_reverse Local Exploit
  805. Maxwebportal <= 1.36 password.asp Change Password Exploit (3 - perl)
  806. Maxwebportal <= 1.36 password.asp Change Password Exploit (2 - php)
  807. Maxwebportal <= 1.36 password.asp Change Password Exploit (1 - html)
  808. Invision Power Board <= 2.0.3 Login.PHP SQL Injection Exploit
  809. Invision Power Board <= 2.0.3 Login.PHP SQL Injection (tutorial)
  810. Hosting Controller <= 0.6.1 Unauthenticated User Registeration (3rd)
  811. phpStat <= 1.5 (setup.php) Authentication Bypass Exploit (perl)
  812. phpStat <= 1.5 (setup.php) Authentication Bypass Exploit (php)
  813. phpStat <= 1.5 (setup.php) Authentication Bypass Exploit (php 2)
  814. MS Windows COM Structured Storage Local Exploit (MS05-012)
  815. Zeroboard 4.1 preg_replace Remote nobody Shell Exploit
  816. Ethereal <= 0.10.10 (SIP) Protocol Dissector Remote BoF Exploit
  817. MyBulletinBoard (MyBB) <= 1.00 RC4 SQL Injection Exploit
  818. myBloggie 2.1.1 - 2.1.2 SQL Injection Exploit
  819. MS Internet Explorer - Multiple Stack Overflows Crash
  820. MS Internet Explorer - javascript "window()" Crash
  821. e-Post SPA-PRO 4.01 (imap) Remote Buffer Overflow Exploit
  822. FutureSoft TFTP Server 2000 Remote Denial of Service Exploit
  823. Crob FTP Server <= 3.6.1 Remote Stack Overflow Exploit
  824. ePSXe <= 1.6.0 nogui() Local Exploit
  825. PostNuke <= 0.750 readpmsg.php SQL Injection Exploit
  826. Portail PHP < 1.3 SQL Injection Exploit
  827. Kaspersky AntiVirus "klif.sys" Privilege Escalation Vulnerability
  828. WordPress <= 1.5.1.1 SQL Injection Exploit
  829. WinZIP <= 8.1 Command Line Local Buffer Overflow Exploit
  830. IPSwitch IMAP Server LOGON Remote Stack Overflow
  831. Invision Power Board <= 1.3.1 Login.PHP SQL Injection (working)
  832. Tcpdump bgp_update_print Remote Denial of Service Exploit
  833. GNU Mailutils imap4d 0.5 < 0.6.90 Remote Format String Exploit
  834. Webhints <= 1.03 Remote Command Execution Exploit (perl code) (1)
  835. Webhints <= 1.03 Remote Command Execution Exploit (c code) (2)
  836. Webhints <= 1.03 Remote Command Execution Exploit (perl code) (3)
  837. Mac OS X 10.4 launchd Race Condition Exploit
  838. AIX 5.2 netpmon Local Elevated Privileges Exploit
  839. AIX 5.2 ipl_varyon Local Elevated Privileges Exploit
  840. AIX 5.2 paginit Local Root Exploit
  841. ViRobot Advanced Server 2.0 (addschup) Remote Cookie Exploit
  842. eXtropia Shopping Cart web_store.cgi Remote Exploit
  843. Mambo 4.5.2.1 Fetch Password Hash Remote Exploit
  844. PHP Arena <= 1.1.3 pafiledb.php Remote Change Password Exploit
  845. Ultimate PHP Board <= 1.9.6 GOLD users.dat Password Decryptor
  846. Claroline e-Learning <= 1.6 Remote Hash SQL Injection Exploit
  847. Claroline e-Learning <= 1.6 Remote Hash SQL Injection Exploit (2)
  848. PeerCast <= 0.1211 Remote Format String Exploit
  849. Apache <= 2.0.49 Arbitrary Long HTTP Headers Denial of Service
  850. Simple Machines Forum <= 1.0.4 (modify) SQL Injection Exploit
  851. MercuryBoard <= 1.1.4 SQL Injection Exploit
  852. WordPress <= 1.5.1.1 "add new admin" SQL Injection Exploit
  853. Forum Russian Board 4.2 Full Command Execution Exploit
  854. Mambo <= 4.5.2.1 SQL Injection Exploit
  855. Cacti <= 0.8.6d Remote Command Execution Exploit
  856. phpBB <= 2.0.15 Register Multiple Users Denial of Service (perl code)
  857. phpBB <= 2.0.15 Register Multiple Users Denial of Service (c code)
  858. MS Windows (SMB) Transaction Response Handling Exploit (MS05-011)
  859. MS Outlook Express NNTP Buffer Overflow Exploit (MS05-030)
  860. TCP-IP Datalook <= 1.3 Local Denial of Service Exploit
  861. PHP-Fusion <= 6.00.105 Accessible Database Backups Download Exploit
  862. UBB Threads < 6.5.2 Beta (mailthread.php) SQL Injection Exploit
  863. ASPNuke <= 0.80 (article.asp) SQL Injection Exploit
  864. ASPNuke <= 0.80 (comment_post.asp) SQL Injection Exploit
  865. Stream / Raped Denial of Service Attack (win version)
  866. Solaris 9 / 10 ld.so Local Root Exploit (1)
  867. Solaris 9 / 10 ld.so Local Root Exploit (2)
  868. MS Windows Message Queuing BoF Universal Exploit (MS05-017) (v.0.3)
  869. phpBB 2.0.15 (highlight) Remote PHP Code Execution
  870. Wordpress <= 1.5.1.2 xmlrpc Interface SQL Injection Exploit
  871. XML-RPC Library <= 1.3.0 (xmlrpc.php) Remote Code Injection Exploit
  872. MS Internet Explorer (javaprxy.dll) COM Object Remote Exploit
  873. phpBB 2.0.15 (highlight) Database Authentication Details Exploit
  874. Nokia Affix < 3.2.0 btftp Remote Client Exploit
  875. XOOPS <= 2.0.11 xmlrpc.php SQL Injection Exploit
  876. xmlrpc.php Library <= 1.3.0 Remote Command Execute Exploit (2)
  877. xmlrpc.php Library <= 1.3.0 Remote Command Execute Exploit (3)
  878. Willing Webcam 2.8 Licence Info Disclosure Local Exploit
  879. Access Remote PC 4.5.1 Local Password Disclosure Exploit
  880. Sudo 1.3.1 - 1.6.8p Pathname Validation Local Root Exploit (openbsd)
  881. Drupal <= 4.5.3 & <= 4.6.1 Comments PHP Injection Exploit
  882. Mozilla FireFox <= 1.0.1 Remote GIF Heap Overflow Exploit
  883. TCP Chat (TCPX) 1.0 Denial of Service Exploit
  884. Internet Download Manager <= 4.05 Input URL Stack Overflow Exploit
  885. Solaris SPARC / x86 Local Socket Hijack Exploit
  886. PrivaShare <= 1.3 Denial of Service Exploit
  887. AnalogX SimpleServer:WWW <= 1.05 Denial of Service Exploit
  888. phpBB <= 2.0.16 XSS Remote Cookie Disclosure Exploit
  889. Hosting Controller <= 0.6.1 HotFix 2.1 Change Credit Limit Exploit
  890. BlogTorrent <= 0.92 Remote Password Disclosure Exploit
  891. Baby Web Server <= 2.6.2 Command Validation Exploit
  892. Remote File Explorer <= 1.0 Denial of Service Exploit
  893. wMailServer 1.0 Remote Denial of Service Exploit
  894. Mozilla Firefox <= 1.0.4 "Set As Wallpaper" Code Execution Exploit
  895. phpBB <= 2.0.16 XSS Remote Cookie Disclosure Exploit (cookie grabber)
  896. MS Windows Netman Service Local Denial of Service Exploit
  897. NetPanzer <= 0.8 Remote Denial of Service Exploit
  898. e107 <= 0.617 XSS Remote Cookie Disclosure Exploit
  899. Remote Control Server 1.6.2 Denial of Service Exploit
  900. Small HTTP Server <= 3.05.28 Arbitrary Data Execution Exploit
  901. DzSoft PHP Editor <= 3.1.2.8 Denial of Service Exploit
  902. MS Internet Explorer / MSN ICC Profiles Crash PoC Exploit
  903. Open Bulletin Board <= 1.0.5 SQL Injection Exploit
  904. Hosting Controller <= 6.1 HotFix 2.2 Add Domain without Quota Exploit
  905. phpBB 2.0.15 Remote PHP Code Execution Exploit (metasploit)
  906. HP OpenView OmniBack II Generic Remote Exploit
  907. Intruder Client 1.00 Remote Command Execution & DoS Exploit
  908. MS Windows Color Management Module Overflow Exploit (MS05-036)
  909. SlimFTPd <= 3.16 Remote Buffer Overflow Exploit
  910. vim 6.3 < 6.3.082 (modlines) Local Command Execution Exploit
  911. FtpLocate <= 2.02 (current) Remote Command Execution Exploit
  912. FTPshell Server <= 3.38 Remote Denial of Service Exploit
  913. GNU Mailutils imap4d <= 0.6 Remote Format String Exploit
  914. IPSwitch IMail Server <= 8.15 IMAPD Remote Root Exploit
  915. BusinessMail Server <= 4.60.00 Remote Denial of Service Exploit
  916. ProRat Server <= 1.9 (Fix-2) Buffer Overflow Crash Exploit
  917. MS Windows (LegitCheckControl.dll) Genuine Advantage Validation Patch
  918. Quick 'n EasY <= 3.0 FTP Server Remote Denial of Service Exploit
  919. CA BrightStor ARCserve Backup Agent (dbasqlr.exe) Remote Exploit
  920. CA BrightStor ARCserve Backup (dsconfig.exe) Buffer Overflow
  921. CA BrightStor ARCserve Backup Auto Scanner / Exploiter
  922. vBulletin <= 3.0.6 (Template) Command Execution Exploit (metasploit)
  923. MySQL Eventum <= 1.5.5 (login.php) SQL Injection Exploit
  924. PHP-Fusion <= 6.0 106 BBCode IMG Tag Script Injection Exploit
  925. Acunetix HTTP Sniffer Denial of Service Exploit
  926. nbSMTP <= 0.99 (util.c) Client-Side Command Execution Exploit
  927. Ethereal 10.x AFP Protocol Dissector Remote Format String Exploit
  928. Flatnuke <= 2.5.5 Remote Code Execution
  929. Wordpress <= 1.5.1.3 Remote Code Execution 0-Day Exploit
  930. MS Windows XP SP2 (rdpwd.sys) Remote Kernel DoS Exploit
  931. MS Internet Explorer (blnmgr.dll) COM Object Remote Exploit (MS05-038)
  932. Wordpress <= 1.5.1.3 Remote Code Execution eXploit (metasploit)
  933. MS Windows Plug-and-Play Service Remote Overflow (MS05-039)
  934. Veritas Backup Exec Remote File Access Exploit (windows)
  935. MS Windows Plug-and-Play Service Remote Universal Exploit (MS05-039)
  936. ZENworks 6.5 Desktop/Server Management Remote Stack Overflow
  937. MDaemon 8.0.3 IMAPD CRAM-MD5 Authentication Overflow Exploit
  938. Novell eDirectory 8.7.3 iMonitor Remote Stack Overflow
  939. Grandstream Budge Tone 101/102 VOIP Phone Denial of Service Exploit
  940. Operator Shell (osh) 1.7-13 Local Root Exploit
  941. Chris Moneymakers World Poker Championship 1.0 DoS Exploit
  942. GTChat <= 0.95 Alpha Remote Denial of Service Exploit
  943. WS_FTP Server <= 5.03 (RNFR) Buffer Overflow Exploit
  944. Mercury/32 Mail Server <= 4.01a (check) Buffer Overflow Exploit
  945. Golden FTP Server Pro <= 2.52 (USER) Remote Buffer Overflow Exploit
  946. BakBone NetVault 7.1 Local Privilege Escalation Exploit
  947. GoodTech SMTP Server <= 5.14 Denial of Service Exploit
  948. IA eMailServer Corporate Edition Version <= 5.2.2 DoS Exploit
  949. BusinessMail <= 4.60.00 Remote Buffer Overflow Exploit
  950. Inframail Advantage Server Edition 6.0 <= 6.37 (SMTP) BoF Exploit
  951. Inframail Advantage Server Edition 6.0 <= 6.37 (FTP) BoF Exploit
  952. Solaris <= 10 LPD Arbitrary File Delete Exploit (metasploit)
  953. WinAce 2.6.0.5 Temporary File Parsing Buffer Overflow Vulnerability
  954. Debian 2.2 /usr/bin/pileup Local Root Exploit
  955. Elm < 2.5.8 (Expires Header) Remote Buffer Overflow Exploit
  956. MyBulletinBoard (MyBB) <= 1.00 RC4 SQL Injection Exploit
  957. Mercora IMRadio <= 4.0.0.0 Local Password Disclosure Exploit
  958. ZipTorrent <= 1.3.7.3 Local Proxy Password Disclosure Exploit
  959. GTChat <= 0.95 Alpha (adduser) Remote Denial of Service Exploit
  960. Ventrilo <= 2.3.0 Remote Denial of Service Exploit (all platforms)
  961. MS Windows IIS 5.0 (500-100.asp) Server Name Spoof Exploit
  962. MS Windows Plug-and-Play Service Remote Universal Exploit (spanish fix)
  963. MS Windows Plug-and-Play Service Remote Universal Exploit (french fix)
  964. MySQL 4.0.17 UDF Dynamic Library Exploit
  965. Solaris 2.6/7/8/9 (ld.so.1) Local Root Exploit (sparc)
  966. Battlefield (BFCC/BFVCC/BF2CC) Login Bypass/Pass Stealer/DoS Exploit
  967. Savant Web Server 3.1 Remote Buffer Overflow Exploit
  968. Adobe Version Cue 1.0/1.0.1 Local Root Exploit (OSX)
  969. Adobe Version Cue 1.0/1.0.1 (-lib) Local Root Exploit (OSX)
  970. Gopher <= 3.0.9 (+VIEWS) Remote (Client Side) Buffer Overflow Exploit
  971. HP OpenView Network Node Manager <= 7.50 Remote Exploit
  972. vBulletin <= 3.0.8 Accessible Database Backup Searcher (update 3)
  973. DameWare Mini Remote Control 4.0 < 4.9 (Client Agent) Remote Exploit
  974. Simple PHP Blog <= 0.4.0 Multiple Remote Exploits
  975. P2P Pro 1.0 (command) Denial of Service Exploit
  976. Free SMTP Server <= 2.2 Spam Filter Vulnerability
  977. man2web <= 0.88 Multiple Remote Command Execution Exploit (update2)
  978. CUPS Server <= 1.1 (Get Request) Denial of Service Exploit
  979. MS Windows (keybd_event) Local Privilege Elevation Exploit
  980. MS Windows CSRSS Local Privilege Escalation Exploit (MS05-018)
  981. BNBT BitTorrent EasyTracker <= 7.7r3 Denial of Service Exploit
  982. PBLang <= 4.65 Remote Command Execution Exploit
  983. FTP Internet Access Manager <= 1.2 Command Execution Exploit
  984. PBLang <= 4.65 Remote Command Execution Exploit (2)
  985. Mozilla Products (Host:) Buffer Overflow Denial of Service String
  986. Class-1 Forum <= 0.24.4 Remote Code Execution Exploit
  987. phpMyFamily <= 1.4.0 SQL Injection Exploit
  988. GNU Mailutils imap4d 0.6 (search) Remote Format String Exploit
  989. WebAdmin <= 2.0.4 USER Buffer Overflow Exploit
  990. PhpTagCool <= 1.0.3 SQL Injection Attacks Exploit
  991. COOL! Remote Control <= 1.12 Remote Denial of Service Exploit
  992. Snort <= 2.4.0 SACK TCP Option Error Handling Denial of Service Exploit
  993. AzDGDatingLite <= 2.1.3 Remote Code Execution Exploit
  994. Wireless Tools 26 (iwconfig) Local Root Exploit (some setuid)
  995. phpWebSite <= 0.10.0 (module) SQL Injection Exploit
  996. Stoney FTPd Denial Of Service Exploit (rxBot mods ftpd)
  997. PHP-Nuke <= 7.8 (modules.php) SQL Injection Exploit
  998. Fastream NETFile Web Server <= 7.1.2 (HEAD) DoS Exploit
  999. CuteNews <= 1.4.0 (shell inject) Remote Command Execution Exploit
  1000. MCCS (Multi-Computer Control Systems) Command DoS Exploit
  1001. Mercury Mail <= 4.01a (Pegasus) IMAP Buffer Overflow Exploit
  1002. Mozilla Browsers 0xAD (HOST:) Remote Heap Buffer Overrun Exploit (v2)
  1003. My Little Forum <= 1.5 (searchstring) SQL Injection Exploit
  1004. phpMyFAQ <= 1.5.1 (User-Agent) Remote Shell Injection Exploit
  1005. MailGust <= 1.9 (board takeover) SQL Injection Exploit
  1006. Qpopper <= 4.0.8 (poppassd) Local Root Exploit (linux)
  1007. Qpopper <= 4.0.8 (poppassd) Local Root Exploit (freebsd)
  1008. WzdFTPD <= 0.5.4 Remote Command Execution Exploit
  1009. RealPlayer/Helix Player Remote Format String Exploit (linux)
  1010. Mozilla Firefox <= 1.0.7 Integer Overflow Denial of Service Exploit
  1011. GNU Mailutils imap4d 0.6 (search) Remote Format String Exploit (fbsd)
  1012. MultiTheftAuto 0.5 patch 1 Server Crash and MOTD Deletion Exploit
  1013. Barracuda Spam Firewall < 3.1.18 Command Execution Exploit (meta)
  1014. PHP-Fusion 6.00.109 (msg_send) SQL Injection Exploit
  1015. Prozilla <= 1.3.7.4 (ftpsearch) Results Handling Buffer Overflow Exploit
  1016. Virtools Web Player <= 3.0.0.100 Buffer Overflow DoS Exploit
  1017. Utopia News Pro <= 1.1.3 (news.php) SQL Injection Exploit
  1018. Cyphor <= 0.19 (board takeover) SQL Injection Exploit
  1019. xine-lib <= 1.1 (media player library) Remote Format String Exploit
  1020. CA iGateway (debug mode) Remote Buffer Overflow Exploit
  1021. phpMyAdmin 2.6.4-pl1 Remote Directory Traversal Exploit
  1022. versatileBulletinBoard 1.00 RC2 (board takeover) SQL Injection Exploit
  1023. RBExplorer 1.0 (Hijacking Command) Denial of Service Exploit
  1024. phpBB 2.0.13 (admin_styles.php) Remote Command Execution Exploit
  1025. Solaris 10 DtPrintinfo/Session Local Root Exploit (x86)
  1026. w-Agora <= 4.2.0 (quicklist.php) Remote Code Execution Exploit
  1027. TYPSoft FTP Server <= 1.11 (RETR) Denial of Service Vulnerability
  1028. MuOnline Loopholes Web Server (pkok.asp) SQL Injection Exploit
  1029. Mozilla (Firefox <= 1.0.7) (Thunderbird <= 1.0.6) Denial of Service Exploit
  1030. Opera <= 8.02 Remote Denial of Service Exploit
  1031. Opera <= 8.02 Remote Denial of Service Exploit (2)
  1032. Lynx <= 2.8.6dev.13 Remote Buffer Overflow Exploit (PoC)
  1033. Mozilla (Firefox <= 1.0.7) (Mozilla <= 1.7.12) Denial of Service Exploit
  1034. e107 <= 0.6172 (resetcore.php) Remote SQL Injection Exploit
  1035. HP-UX FTP Server Preauthentication Directory Listing Exploit (meta)
  1036. MS Windows IIS SA WebAgent 5.2/5.3 Redirect Overflow Exploit (meta)
  1037. HP-UX <= 11.11 lpd Remote Command Execution Exploit (meta)
  1038. CA Unicenter 3.1 CAM log_security() Stack Overflow Exploit (meta)
  1039. Veritas NetBackup <= 6.0 (bpjava-msvc) Remote Exploit (linux)
  1040. Veritas NetBackup <= 6.0 (bpjava-msvc) Remote Exploit (win32)
  1041. Veritas NetBackup <= 6.0 (bpjava-msvc) Remote Exploit (OS X)
  1042. Ethereal 0.9.1 - 0.10.12 SLIMP3 Remote Buffer Overflow PoC
  1043. XMail 1.21 (-t Command Line Option) Local Root Buffer Overflow Exploit
  1044. Net Portal Dynamic System <= 5.0 (register users) Denial of Service
  1045. MS Windows Plug-and-Play (Umpnpmgr.dll) DoS Exploit (MS05-047)
  1046. PHP-Nuke 7.8 SQL Injection / Remote Command Execution Exploit
  1047. MS Windows Plug-and-Play (Umpnpmgr.dll) DoS Exploit (MS05-047) (2)
  1048. Snort <= 2.4.2 Back Orifice Parsing Remote Buffer Overflow Exploit
  1049. TClanPortal <= 1.1.3 (id) Remote SQL Injection Exploit
  1050. MS Internet Explorer 6.0 (mshtmled.dll) Denial of Service Exploit
  1051. Mirabilis ICQ 2003a Buffer Overflow Download Shellcoded Exploit
  1052. Subdreamer 2.2.1 SQL Injection / Command Execution Exploit
  1053. Snort <= 2.4.2 BackOrifice Remote Buffer Overflow Exploit (meta)
  1054. VuBB Forum RC1 (m) Remote SQL Injection Exploit
  1055. Battle Carry <= .005 Socket Termination Denial of Service Exploit
  1056. Blitzkrieg 2 <= 1.21 (server/client) Denial of Service Exploit
  1057. FlatFrag <= 0.3 Buffer Overflow / Denial of Service Exploit
  1058. Glider collectn kill <= 1.0.0.0 Buffer Overflow (PoC)
  1059. Scorched 3D <= 39.1 Multiple Vulnerabilities (All-in-One) (PoC)
  1060. GO-Global Windows Clients <= 3.1.0.3270 Buffer Overflow (PoC)
  1061. GO-Global Windows Server <= 3.1.0.3270 Buffer Overflow (PoC)
  1062. Lynx <= 2.8.6dev.13 Remote Buffer Overflow Exploit (port bind)
  1063. CuteNews <= 1.4.1 (shell inject) Remote Command Execution Exploit
  1064. gpsdrive <= 2.09 (friendsd2) Remote Format String Exploit (ppc)
  1065. gpsdrive <= 2.09 (friendsd2) Remote Format String Exploit (x86)
  1066. WzdFTPD <= 0.5.4 (SITE) Remote Command Execution Exploit (meta)
  1067. linux-ftpd-ssl 0.17 (MKD/CWD) Remote Root Exploit
  1068. ibProArcade 2.x module (vBulletin/IPB) Remote SQL Injection Exploit
  1069. F-Secure Internet Gatekeeper for linux < 2.15.484 Local Root Exploit
  1070. ATutor 1.5.1pl2 SQL Injection / Command Execution Exploit
  1071. SuSE Linux <= 9.3, 10 (chfn) Local Root Privilege Escalation Exploit
  1072. Operator Shell (osh) 1.7-14 Local Root Exploit
  1073. Sudo <= 1.6.8p9 (SHELLOPTS/PS4 ENV variables) Local Root Exploit
  1074. FreeBSD (4.x , < 5.4) master.passwd Disclosure Exploit
  1075. Moodle <= 1.6dev SQL Injection / Command Execution Exploit
  1076. Snort <= 2.4.2 Back Orifice Pre-Preprocessor Remote Exploit (3)
  1077. Snort <= 2.4.2 Back Orifice Pre-Preprocessor Remote Exploit (4)
  1078. XOOPS (wfdownloads) 2.05 Module Multiple Vulnerabilities Exploit
  1079. Veritas Storage Foundation 4.0 VCSI18N_LANG Local Overflow Exploit
  1080. Coppermine Photo Gallery <= 1.3.2 File Retrieval SQL Injection Exploit
  1081. Unclassified NewsBoard 1.5.3 Patch 3 Blind SQL Injection Exploit
  1082. Arki-DB 1.0 (catid) Remote SQL Injection Vulnerabilities
  1083. Cyphor 0.19 (show.php id) Remote SQL Injection Exploit
  1084. Wizz Forum 1.20 (TopicID) Remote SQL Injection Exploit
  1085. PHPWebThings <= 1.4 (msg/forum) SQL Injection Exploit
  1086. PHPWebThings <= 1.4 (forum) SQL Injection Exploit
  1087. PHP-Nuke <= 7.8 Search Module Remote SQL Injection Exploit
  1088. FTGate4 Groupware Mail Server 4.1 (imapd) Remote Buffer Overflow PoC
  1089. MS Windows 2k UPNP (getdevicelist) Memory Leak DoS Exploit
  1090. EkinBoard 1.0.3 (config.php) SQL Injection / Command Execution Exploit
  1091. FreeFTPD <= 1.0.8 (USER) Remote Buffer Overflow Exploit
  1092. Macromedia Flash Plugin <= 7.0.19.0 (Action) Denial of Service Exploit
  1093. MailEnable 1.54 Pro Universal IMAPD W3C Logging BoF Exploit
  1094. Google Search Appliance proxystylesheet XSLT Java Code Execution
  1095. FileZilla Server Terminal 0.9.4d Buffer Overflow PoC
  1096. Mambo <= 4.5.2 Globals Overwrite / Remote Command Exection Exploit
  1097. Cisco PIX Spoofed TCP SYN Packets Remote Denial of Service Exploit
  1098. FreeFTPD <= 1.0.10 (PORT Command) Denial of Service Exploit
  1099. eFiction <= 2.0 Fake GIF Shell Upload Exploit
  1100. MS Windows MSDTC Service Remote Memory Modification PoC (MS05-051)
  1101. Guppy <= 4.5.9 (REMOTE_ADDR) Remote Commands Execution Exploit
  1102. MS Windows Metafile (gdi32.dll) Denial of Service Exploit (MS05-053)
  1103. Xaraya <= 1.0.0 RC4 create() Denial of Service Exploit
  1104. MS Windows Metafile (mtNoObjects) Denial of Service Exploit (MS05-053)
  1105. QNX RTOS 6.3.0 (phgrafx) Local Buffer Overflow Exploit (x86)
  1106. Microsoft Windows DTC Remote Exploit (PoC) (MS05-051) (updated)
  1107. WinEggDropShell 1.7 Multiple PreAuth Remote Stack Overflow PoC
  1108. Zen Cart <= 1.2.6d (password_forgotten.php) SQL Injection Exploit
  1109. sobexsrv 1.0.0_pre3 Bluetooth syslog() Remote Format String Exploit
  1110. DoceboLMS <= 2.0.4 connector.php Shell Upload Exploit
  1111. WIDCOMM Bluetooth Software < 3.0 Remote Buffer Overflow Exploit
  1112. SimpleBBS <= 1.1 Remote Commands Execution Exploit
  1113. SugarSuite Open Source <= 4.0beta Remote Code Execution Exploit
  1114. Appfluent Database IDS < 2.1.0.103 (Env Variable) Local Exploit
  1115. SimpleBBS <= 1.1 Remote Commands Execution Exploit (c code)
  1116. Mozilla Firefox <= 1.5 (history.dat) Looping Vulnerability PoC
  1117. Website Baker <= 2.6.0 Login Bypass / Remote Code Execution Exploit
  1118. SugarSuite Open Source <= 4.0beta Remote Code Execution Exploit (c)
  1119. Oracle 9.2.0.1 Universal XDB HTTP Pass Overflow Exploit
  1120. Lyris ListManager Read Message Attachment SQL Injection Exploit
  1121. Flatnuke 2.5.6 Privilege Escalation / Remote Commands Execution Exploit
  1122. Counter Strike 2D <= 0.1.0.1 Denial of Service Vulnerability
  1123. Mozilla Firefox <= 1.04 compareTo() Remote Code Execution Exploit
  1124. phpCOIN 1.2.2 (phpcoinsessid) SQL Inj / Remote Code Execution Exploit
  1125. Macromedia Flash Media Server 2 Remote Denial of Service Exploit
  1126. MS Internet Explorer 6.0 (pre tag multiple single tags) Denial of Service
  1127. Limbo <= 1.0.4.2 _SERVER[REMOTE_ADDR] Overwrite Remote Exploit
  1128. Watchfire AppScan QA 5.0.x Remote Code Execution Exploit PoC
  1129. Mercury Mail Transport System 4.01b Remote Exploit (PH SERVER)
  1130. MS Windows IIS Malformed HTTP Request Denial of Service Exploit (c)
  1131. MS Windows IIS Malformed HTTP Request Denial of Service Exploit (pl)
  1132. MailEnable Enterprise Edition 1.1 (EXAMINE) Buffer Overflow Exploit
  1133. PHPGedView <= 3.3.7 Arbitrary Remote Code Execution Exploit
  1134. Eudora Qualcomm WorldMail 3.0 (IMAPd) Remote Overflow Exploit
  1135. Golden FTP Server <= 1.92 (APPE) Remote Overflow Exploit (meta)
  1136. phpBB <= 2.0.18 Remote Bruteforce/Dictionary Attack Tool (updated)
  1137. phpBB <= 2.0.18 Remote XSS Cookie Disclosure Exploit
  1138. PHP-Fusion 6.00.3 (rating) Parameter Remote SQL Injection Exploit
  1139. Dev Web Management System <= 1.5 (cat) Remote SQL Injection Exploit
  1140. phpBB <= 2.0.17 (signature_bbcode_uid) Remote Command Exploit
  1141. MS Internet Explorer 6.0 (mshtml.dll datasrc) Denial of Service Vuln
  1142. BZFlag <= 2.0.4 (undelimited string) Denial of Service Exploit
  1143. Windows XP/2003 Metafile Escape() Code Execution Exploit (meta)
  1144. MS Internet Explorer 6.0 (mshtml.dll div) Denial of Service Exploit
  1145. phpDocumentor <= 1.3.0 rc4 Remote Commands Execution Exploit
  1146. MS Windows IIS Malformed HTTP Request Denial of Service Exploit (cpp)
  1147. Linux Kernel <= 2.6.11 (CPL 0) Local Root Exploit (k-rad3.c)
  1148. CubeCart <= 3.0.6 Remote Command Execution Exploit
  1149. WebWiz Products (1.0 , <= 3.06) Login Bypass SQL Injection Exploits
  1150. CuteNews <= 1.4.1 (categories.mdu) Remote Command Execution Exploit
  1151. Valdersoft Shopping Cart <= 3.0 Remote Command Execution Exploit
  1152. SCO Openserver 5.0.7 (termsh) Local Privilege Escalation Exploit
  1153. WinRAR 3.30 Long Filename Buffer Overflow Exploit
  1154. WinRAR 3.30 Long Filename Buffer Overflow Exploit (more targets) (2)
  1155. FlatCMS <= 1.01 (file_editor.php) Remote Command Execution Exploit
  1156. PHP <= 4.4.0 (mysql_connect function) Local Buffer Overflow Exploit
  1157. MS Windows 2k Kernel APC Data-Free Local Escalation Exploit (MS05-055)
  1158. BlueCoat WinProxy 6.0 R1c (Host) Remote Stack/SEH Overflow Exploit
  1159. BlueCoat WinProxy <= 6.0 R1c (GET Request) Denial of Service Exploit
  1160. Magic News Plus <= 1.0.3 Admin Pass Change Exploit
  1161. Cisco IP Phone 7940 (Reboot) Denial of Service Exploit
  1162. Xmame 0.102 (-lang) Local Buffer Overflow Exploit
  1163. eStara Softphone <= 3.0.1.46 (SIP) Remote Buffer Overflow Exploit
  1164. eStara Softphone <= 3.0.1.46 (SIP) Remote Buffer Overflow Exploit (2)
  1165. Xmame 0.102 (-lang) Local Buffer Overflow Exploit (c code)
  1166. HomeFtp 1.1 (NLST) Denial of Service Vulnerability
  1167. Farmers WIFE 4.4 sp1 (FTP) Remote System Access Exploit
  1168. MiniNuke <= 1.8.2 Multiple SQL Injection Vulnerabilities
  1169. MiniNuke <= 1.8.2 (news.asp hid) SQL Injection Exploit
  1170. MS Windows Metafile (WMF) Remote File Download Exploit Generator
  1171. Veritas NetBackup 4/5 Volume Manager Daemon Remote BoF Exploit
  1172. Cerberus FTP Server <= 2.32 Denial of Service Exploit
  1173. MS Internet Explorer <= 6.x (IMG / XML elements) Denial of Service
  1174. Tftpd32 2.81 (GET Request) Format String Denial of Service PoC
  1175. Xmame <= 0.102 (-pb/-lang/-rec) Local Buffer Overflow Exploit
  1176. ezDatabase <= 2.0 (db_id) Remote Command Execution Exploit
  1177. Eterm LibAST < 0.7 (-X Option) Local Privilege Escalation Exploit
  1178. creLoaded <= 6.15 (HTMLAREA) Automated Perl Exploit
  1179. Cisco Aironet Wireless Access Points Memory Exhaustion ARP Attack DoS
  1180. Sami FTP Server 2.0.1 Remote Stack Based Buffer Overflow PoC
  1181. SquirrelMail 3.1 Change Passwd Plugin Local Buffer Overflow Exploit
  1182. Sami FTP Server 2.0.1 Remote Buffer Overflow Exploit (meta)
  1183. Phpclanwebsite 1.23.1 (par) Remote SQL Injection Exploit
  1184. Oracle Database Server 9i/10g (XML) Buffer Overflow Exploit
  1185. SHOUTcast <= 1.9.4 File Request Format String Exploit (Leaked)
  1186. phpBB <= 2.0.19 XSS Remote Cookie Disclosure Exploit
  1187. Winamp <= 5.12 (Crafted PLS) Remote Buffer Overflow Exploit (0-Day)
  1188. xeCMS 1.0.0 RC 2 (cookie) Remote Command Execution Exploit
  1189. Winamp <= 5.12 (Crafted PLS) Remote Buffer Overflow Exploit (meta)
  1190. Invision Power Board Dragoran Portal Mod <= 1.3 SQL Injection Exploit
  1191. Sami FTP Server 2.0.1 Remote Buffer Overflow Exploit (cpp)
  1192. SoftiaCom WMailserver 1.0 SMTP Remote Buffer Overflow Exploit (meta)
  1193. Arescom NetDSL-1000 (telnetd) Remote Denial of Service Exploit
  1194. MS Windows Services ACLs Local Privilege Escalation Exploit (updated)
  1195. eXchange POP3 5.0.050203 (rcpt to) Remote Buffer Overflow Exploit
  1196. LoudBlog <= 0.4 (path) Arbitrary Remote Inclusion Exploit
  1197. Clever Copy <= 3.0 Admin Auth Details / Remote SQL Injection Exploit
  1198. phpBB 2.0.19 (Style Changer/Demo Mod) SQL Injection Exploit
  1199. Microsoft HTML Help Workshop (.hhp file) Buffer Overflow Exploit
  1200. MyQuiz 1.01 (PATH_INFO) Arbitrary Command Execution Exploit
  1201. ASPThai.Net Guestbook <= 5.5 (Auth Bypass) SQL Injection Exploit
  1202. Sony/Ericsson Bluetooth (Reset Display) Denial of Service Exploit
  1203. Mozilla Firefox 1.5 location.QueryInterface() Code Execution (linux)
  1204. MS Internet Explorer 7.0 Beta 2 (urlmon.dll) Denial of Service Vuln
  1205. CPGNuke Dragonfly 9.0.6.1 Remote Commands Execution Exploit
  1206. QNX Neutrino 6.2.1 (phfont) Race Condition Local Root Exploit
  1207. Mozilla Firefox 1.5 location.QueryInterface() Code Execution (osx)
  1208. QNX RTOS 6.3.0 Insecure rc.local Permissions Plus System Crash Exploit
  1209. SPIP <= 1.8.2g Remote Commands Execution Exploit
  1210. Half-Life CSTRIKE Server <= 1.6 (non steam) Denial of Service Exploit
  1211. FCKEditor 2.0 <= 2.2 (connector.php) Remote Shell Upload Exploit
  1212. RunCMS <= 1.2 (class.forumposts.php) Arbitrary Remote Inclusion Exploit
  1213. Power Daemon <= 2.0.2 (WHATIDO) Remote Format String Exploit
  1214. OpenVMPSd <= 1.3 Remote Format String Exploit (Multiple Targets)
  1215. Microsoft HTML Help Workshop (.hhp file) Buffer Overflow Exploit (new)
  1216. Invision Power Board <= 2.1.4 (Register Users) Denial of Service Exploit
  1217. Microsoft HTML Help Workshop (.hhp file) Buffer Overflow Exploit (new)
  1218. DocMGR <= 0.54.2 (file_exists) Remote Commands Execution Exploit
  1219. Invision Power Board Army System Mod 2.1 SQL Injection Exploit
  1220. EnterpriseGS <= 1.0 rc4 Remote Commands Execution Exploit
  1221. FlySpray 0.9.7 (install-0.9.7.php) Remote Commands Execution Exploit
  1222. Microsoft HTML Help Workshop (.hhp file) Buffer Overflow Exploit (3)
  1223. D-Link Wireless Access Point (Fragmented UDP) DoS Exploit
  1224. webSPELL <= 4.01 (title_op) Remote SQL Injection Exploit
  1225. MyBulletinBoard (MyBB) <= 1.03 Multiple SQL Injection Exploit
  1226. Windows Media Player 7.1 <= 10 BMP Heap Overflow PoC (MS06-005)
  1227. PHPKIT <= 1.6.1R2 (filecheck) Remote Commands Execution Exploit
  1228. Windows Media Player 7.1 <= 10 BMP Heap Overflow PoC (MS06-005) (2)
  1229. YapBB <= 1.2 (cfgIncludeDirectory) Remote Command Execution Exploit
  1230. MS Windows Media Player 9 Plugin Overflow Exploit (MS06-006) (meta)
  1231. MS Windows Media Player 10 Plugin Overflow Exploit (MS06-006)
  1232. MS Windows Color Management Module Overflow Exploit (MS05-036) (2)
  1233. AWStats < 6.4 (referer) Remote Command Execution Exploit
  1234. Zorum Forum 3.5 (rollid) Remote SQL Injection Exploit
  1235. Gravity Board X <= 1.1 (csscontent) Remote Code Execution Exploit
  1236. Coppermine Photo Gallery <= 1.4.3 Remote Commands Execution Exploit
  1237. Admbook <= 1.2.2 (X-Forwarded-For) Remote Command Execution Exploit
  1238. BXCP <= 0.2.9.9 (tid) Remote SQL Injection Exploit
  1239. MiniNuke <= 1.8.2b (pages.asp) Remote SQL Injection Exploit
  1240. GeekLog 1.sh (error.log) Remote Commands Execution Exploit (gpc = Off)
  1241. ilchClan <= 1.05g (tid) Remote SQL Injection Exploit
  1242. PunBB <= 2.0.10 (Register Multiple Users) Denial of Service Exploit
  1243. MySQL 4.x/5.0 User-Defined Function Local Privilege Escalation Exploit
  1244. Mac OS X Safari Browser (Safe File) Remote Code Execution Exploit
  1245. MS Windows Media Player Plugin Overflow Exploit (MS06-006)(3)
  1246. Noahs Classifieds <= 1.3 (lowerTemplate) Remote Code Execution
  1247. NOCC Webmail <= 1.0 (Local Inclusion) Remote Code Execution Exploit
  1248. PHP-Nuke 7.5 - 7.8 (Search) Remote SQL Injection Exploit
  1249. VHCS <= 2.4.7.1 (Add User) Authentication Bypass Exploit
  1250. phpWebSite <= 0.10.0-full (topics.php) Remote SQL Injection Exploit
  1251. Lansuite <= 2.1.0 Beta (fid) Remote SQL Injection Exploit
  1252. iGENUS WebMail <= 2.0.2 (config_inc.php) Remote Code Execution Exploit
  1253. Pentacle In-Out Board <= 6.03 (newsdetailsview) Remote SQL Injection
  1254. Pentacle In-Out Board <= 6.03 (login.asp) Remote Auth Bypass
  1255. SaphpLesson 2.0 (forumid) Remote SQL Injection Exploit
  1256. ArGoSoft FTP Server <= 1.4.3.5 Remote Buffer Overflow PoC
  1257. PwsPHP <= 1.2.3 (index.php) Remote SQL Injection Exploit
  1258. 4Images <= 1.7.1 (Local Inclusion) Remote Code Execution Exploit
  1259. SCO Unixware 7.1.3 (ptrace) Local Privilege Escalation Exploit
  1260. CrossFire <= 1.8.0 (oldsocketmode) Remote Buffer Overflow PoC
  1261. MS Internet Explorer 6.0 SP0 IsComponentInstalled() Remote Exploit
  1262. Kerio Personal Firewall <= 2.1.4 Remote Authentication Packet Overflow
  1263. FarsiNews <= 2.5 Directory Traversal Arbitrary (users.db) Access Exploit
  1264. MyBulletinBoard (MyBB) <= 1.03 (misc.php COMMA) SQL Injection
  1265. FreeBSD 6.0 (nfsd) Remote Kernel Panic Denial of Service Exploit
  1266. Limbo CMS <= 1.0.4.2 (ItemID) Remote Code Execution Exploit
  1267. phpRPC Library <= 0.7 XML Data Decoding Remote Code Execution
  1268. vuBB <= 0.2 (Cookie) Final Remote SQL Injection Exploit (mq=off)
  1269. Woltlab Burning Board 2.x Datenbank MOD (fileid) Remote SQL Injection
  1270. Apple Mac OS X (/usr/bin/passwd) Custom Passwd Local Root Exploit
  1271. phpRPC Library <= 0.7 XML Data Decoding Remote Code Execution (2)
  1272. Aztek Forum 4.00 (XSS/SQL) Multiple Vulnerabilities (PoC)
  1273. MyBulletinBoard (MyBB) <= 1.04 (misc.php COMMA) SQL Injection (2)
  1274. PHP-Stats <= 0.1.9.1 Remote Commands Execution Exploit
  1275. TotalECommerce <= 1.0 (index.asp id) Remote SQL Injection Exploit
  1276. Multiple Routers (IRC Request) Disconnect Denial of Service Vulnerability
  1277. XM Easy Personal FTP Server 1.0 (Port) Remote Overflow PoC
  1278. Fantastic News <= 2.1.2 (script_path) Remote Code Execution Exploit
  1279. LibTiff 3.7.1 (BitsPerSample Tag) Local Buffer Overflow Exploit
  1280. MS Visual Studio 6.0 sp6 (Malformed .dbp File) Buffer Overflow Exploit
  1281. D2-Shoutbox 4.2 IPB Mod (load) Remote SQL Injection Exploit
  1282. Freeciv <= 2.0.7 (Jumbo Malloc) Denial of Service Crash
  1283. LieroX <= 0.62b Remote Server/Client Denial of Service Exploit
  1284. Sauerbraten <= 2006_02_28 Multiple BoF/Crash Vulnerabilities Exploit
  1285. Cube <= 2005_08_29 Multiple BoF/Crash Vulnerabilities Exploit
  1286. OWL Intranet Engine 0.82 (xrms_file_root) Code Execution Exploit
  1287. CilemNews System <= 1.1 (yazdir.asp haber_id) SQL Injection Exploit
  1288. Limbo CMS <= 1.0.4.2 (ItemID) Remote Code Execution Exploit (meta)
  1289. Alien Arena 2006 Gold Edition <= 5.00 Multiple Vulnerabilities Exploit
  1290. RevilloC MailServer 1.21 (USER) Remote Buffer Overflow Exploit PoC
  1291. Gallery <= 2.0.3 stepOrder[] Remote Commands Execution Exploit
  1292. RedBLoG <= 0.5 (cat_id) Remote SQL Injection Exploit
  1293. d2kBlog 1.0.3 (memName) Remote SQL Injection Exploit
  1294. Light Weight Calendar 1.x (date) Remote Code Execution Vulnerability
  1295. JiRos Banner Experience 1.0 (Create Admin Bypass) Remote Exploit
  1296. Dropbear / OpenSSH Server (MAX_UNAUTH_CLIENTS) Denial of Service
  1297. Guppy <= 4.5.11 (Delete Databases) Remote Denial of Service Exploit
  1298. PeerCast <= 0.1216 (nextCGIarg) Remote Buffer Overflow Exploit
  1299. GuestBook Script <= 1.7 (include_files) Remote Code Execution Exploit
  1300. Jupiter CMS <= 1.1.5 Multiple XSS Attack Vectors
  1301. SGI IRIX <= 6.5.28 (runpriv) Design Error Vulnerability
  1302. PeerCast <= 0.1216 (nextCGIarg) Remote Buffer Overflow Exploit (2)
  1303. Ubuntu Breezy 5.10 Installer Password Disclosure Vulnerability
  1304. Simple PHP Blog <= 0.4.7.1 Remote Command Execution Exploit
  1305. crossfire-server <= 1.9.0 SetUp() Remote Buffer Overflow Exploit
  1306. Apple Mac OS X 10.4.5 Mail.app (Real Name) Buffer Overflow Exploit
  1307. MS Windows Telephony Service Command Execution Exploit (MS05-040)
  1308. php iCalendar <= 2.21 (Cookie) Remote Code Execution Exploit
  1309. php iCalendar <= 2.21 (publish.ical.php) Remote Code Execution Exploit
  1310. KnowledgebasePublisher 1.2 (include) Remote Code Execution Exploit
  1311. Nodez <= 4.6.1.1 Mercury Multiple Remote Vulnerabilities
  1312. BetaParticle Blog <= 6.0 (fldGalleryID) Remote SQL Injection Exploit
  1313. ShoutLIVE <= 1.1.0 (savesettings.php) Remote Code Execution Exploit
  1314. Python <= 2.4.2 realpath() Local Stack Overflow Exploit
  1315. Mercur Mailserver 5.0 SP3 (IMAP) Remote Buffer Overflow Exploit
  1316. Mercur Mailserver 5.0 SP3 (IMAP) Denial of Service Exploit
  1317. SoftBB 0.1 (mail) Remote Blind SQL Injection Exploit
  1318. gCards <= 1.45 Multiple Vulnerabilities All-In-One Exploit
  1319. X.Org X11 (X11R6.9.0/X11R7.0) Local Root Privilege Escalation Exploit
  1320. ASPPortal <= 3.1.1 (downloadid) Remote SQL Injection Exploit
  1321. MS Internet Explorer 6.0 (script action handlers) (mshtml.dll) DoS
  1322. MS Windows XP/2003 (IGMP v3) Denial of Service Exploit (MS06-007)
  1323. FreeWPS <= 2.11 (images.php) Remote Code Execution Exploit
  1324. ASP.NET w3wp (COM Components) Remote Crash Exploit
  1325. BomberClone < 0.11.6.2 (Error Messages) Remote Buffer Overflow Exploit
  1326. MS Windows XP/2003 (IGMP v3) Denial of Service Exploit (MS06-007) (2)
  1327. MS Internet Explorer 6.0 (mshtml.dll checkbox) Crash
  1328. XHP CMS <= 0.5 (upload) Remote Command Execution Exploit
  1329. MS Internet Explorer (createTextRang) Remote Code Execution Exploit
  1330. MS Internet Explorer (createTextRang) Download Shellcoded Exploit
  1331. WebAlbum <= 2.02pl COOKIE[skin2] Remote Code Execution Exploit
  1332. PHP Ticket <= 0.71 (search.php) Remote SQL Injection Exploit
  1333. phpBookingCalendar <= 1.0c [details_view.php] Remote SQL Injection
  1334. TFT Gallery <= 0.10 [Password Disclosure] Remote Exploit
  1335. CuteNews <= 1.4.1 (function.php) Local File Include Exploit
  1336. Vavoom <= 1.19.1 [Multiple Vulnerabilities] Denial of Service Exploit
  1337. csDoom <= 0.7 [Multiple Vulnerabilities] Denial of Service Exploit
  1338. MS Office Products Array Index Bounds Error (unpatched) PoC
  1339. Aztek Forum 4.00 (myadmin.php) User Privilege Escalation Exploit
  1340. PHPCollab 2.x / NetOffice 2.x (sendpassword.php) SQL Injection Exploit
  1341. GreyMatter WebLog <= 1.21d Remote Command Execution Exploit (1)
  1342. GreyMatter WebLog <= 1.21d Remote Command Execution Exploit (2)
  1343. MS Internet Explorer (createTextRang) Remote Exploit (meta update)
  1344. Plogger <= Beta 2.1 Administrative Credentials Disclosure Exploit
  1345. RealPlayer <= 10.5 (6.0.12.1040-1348) SWF Buffer Overflow PoC
  1346. EzASPSite <= 2.0 RC3 (Scheme) Remote SQL Injection Exploit
  1347. Tru64 UNIX 5.0 (Rev. 910) rdist NLSPATH Buffer Overflow Exploit
  1348. Tru64 UNIX 5.0 (Rev. 910) edauth NLSPATH Buffer Overflow Exploit
  1349. PeerCast <= 0.1216 Remote Buffer Overflow Exploit (win32) (meta)
  1350. Claroline <= 1.7.4 (scormExport.inc.php) Remote Code Execution Exploit
  1351. MS Internet Explorer (createTextRang) Download Shellcoded Exploit (2)
  1352. SQuery <= 4.5 (libpath) Remote File Inclusion Exploit
  1353. PHPNuke-Clan 3.0.1 (vwar_root2) Remote File Inclusion Exploit
  1354. ReloadCMS <= 1.2.5 Cross Site Scripting / Remote Code Execution Exploit
  1355. VWar 1.5.0 R12 Remote File Inclusion Exploit
  1356. Total Commander 6.x (unacev2.dll) Buffer Overflow PoC Exploit
  1357. mpg123 0.59r Malformed mp3 (SIGSEGV) Proof of Concept
  1358. AngelineCMS 0.8.1 (installpath) Remote File Inclusion Exploit
  1359. Libxine <= 1.14 MPEG Stream Buffer Overflow Vulnerability PoC
  1360. Ultr@VNC <= 1.0.1 VNCLog::ReallyPrint Remote Buffer Overflow PoC
  1361. Ultr@VNC <= 1.0.1 client Log::ReallyPrint Buffer Overflow PoC
  1362. INDEXU <= 5.0.1 (base_path) Remote File Inclusion Exploit
  1363. Crafty Syntax Image Gallery <= 3.1g Remote Code Execution Exploit
  1364. phpMyChat <= 0.14.5 (SYS enter) Remote Code Execution Exploit
  1365. phpMyChat 0.15.0dev (SYS enter) Remote Code Execution Exploit
  1366. Horde Help Viewer <= 3.1 Remote Command Execution Exploit
  1367. ADODB < 4.70 (tmssql.php) Denial of Service Vulnerability
  1368. ADODB < 4.70 (PhpOpenChat 3.0.x) Server.php SQL Injection Exploit
  1369. dnGuestbook <= 2.0 Remote SQL Injection Vulnerabilities
  1370. Autonomous LAN Party <= 0.98.1.0 Remote File Inclusion Vulnerability
  1371. XBrite Members <= 1.1 (id) Remote SQL Injection Exploit
  1372. Sire 2.0 (lire.php) Remote File Inclusion/Arbitary File Upload Vulnerability
  1373. Linux Kernel 2.6.x sys_timer_create() Local Denial of Service Exploit
  1374. PHPList <= 2.10.2 GLOBALS[] Remote Code Execution Exploit
  1375. Horde <= 3.0.9, 3.1.0 (Help Viewer) Remote Code Execution (metasploit)
  1376. phpBB <= 2.0.19 (user_sig_bbcode_uid) Remote Code Execution Exploit
  1377. Clansys v.1.1 (showid) Remote SQL Injection Exploit
  1378. Simplog <= 0.9.2 (s) Remote Commands Execution Exploit
  1379. Ultr@VNC <= 1.0.1 client Log::ReallyPrint Buffer Overflow Exploit
  1380. Sphider <= 1.3 (configset.php) Arbitrary Remote Inclusion Exploit
  1381. PHP121 Instant Messenger <= 1.4 Remote Code Execution Exploit
  1382. Mozilla Firefox <= 1.5.0.1, Camino <= 1.0 Null Pointer Dereference Crash
  1383. vBulletin ImpEx <= 1.74 Remote Command Execution Exploit
  1384. Censtore <= 7.3.x (censtore.cgi) Remote Command Execution Exploit
  1385. quizz <= 1.01 (quizz.pl) Remote Command Execution Exploit
  1386. panic-reloaded TCP Denial of Service Tool
  1387. PAJAX <= 0.5.1 Remote Code Execution Exploit
  1388. phpWebSite <= 0.10.2 (hub_dir) Remote Commands Execution Exploit
  1389. osCommerce <= 2.2 (extras) Source Code Disclosure Vulnerability
  1390. SysInfo 1.21 (sysinfo.cgi) Remote Command Execution Exploit
  1391. PHP Album <= 0.3.2.3 Remote Command Execution Exploit
  1392. Novell Messenger Server 2.0 (Accept-Language) Remote Overflow Exploit
  1393. Symantec Sygate Management Server (login) SQL Injection Exploit
  1394. Sybase EAServer 5.2 (WebConsole) Remote Stack Overflow Exploit
  1395. Fuju News 1.0 Authentication Bypass / Remote SQL Injection Exploit
  1396. Blackorpheus ClanMemberSkript 1.0 Remote SQL Injection Exploit
  1397. FlexBB <= 0.5.5 (/inc/start.php _COOKIE) Remote SQL ByPass Exploit
  1398. MyEvent <= 1.3 (myevent_path) Remote File Inclusion Vulnerability
  1399. Neon Responder 5.4 (Clock Synchronization) Denial of Service Exploit
  1400. Internet PhotoShow (page) Remote File Inclusion Exploit
  1401. PHP Net Tools <= 2.7.1 Remote Code Execution Exploit
  1402. PCPIN Chat <= 5.0.4 (login/language) Remote Code Execution Exploit
  1403. Mambo <= 4.5.3 , Joomla <=1.0.7 (feed) Denial of Service Exploit
  1404. RechnungsZentrale V2 <= 1.1.3 Remote Inclusion Vulnerability
  1405. ASPSitem <= 1.83 (Haberler.asp) Remote SQL Injection Exploit
  1406. PHPSurveyor <= 0.995 (surveyid) Remote Command Execution Exploit
  1407. Symantec Scan Engine 5.0.x.x Change Admin Password Remote Exploit
  1408. CoreNews <= 2.0.1 (userid) Remote SQL Injection Exploit
  1409. Simplog <= 0.9.3 (tid) Remote SQL Injection Exploit
  1410. dForum <= 1.5 (DFORUM_PATH) Multiple Remote File Inclusions
  1411. My Gaming Ladder Combo System <= 7.0 Remote Code Execution Exploit
  1412. Skulltag <= 0.96f (Version String) Remote Format String PoC
  1413. OpenTTD <= 0.4.7 (multiple vulnerabilities) Denial of Service Exploit
  1414. Clansys <= v.1.1 (index.php page) PHP Code Insertion Vulnerability
  1415. Built2Go PHP Movie Review <= 2B Remote File Inclusion Vulnerability
  1416. Apple Mac OS X Safari <= 2.0.3 (417.9.2) Multiple Vulnerabilities PoC
  1417. FlexBB <= 0.5.5 (function/showprofile.php) SQL Injection Exploit
  1418. BK Forum <= 4.0 (member.asp) Remote SQL Injection Vulnerability
  1419. Apple Mac OS X Safari <= 2.0.3 (417.9.2) (ROWSPAN) DoS PoC
  1420. Mozilla Firefox <= 1.5.0.2 (js320.dll/xpcom_core.dll) Denial of Service PoC
  1421. Fenice OMS 1.10 (long get request) Remote Buffer Overflow Exploit
  1422. OCE 3121/3122 Printer (parser.exe) Denial of Service Exploit
  1423. Oracle <= 10g Release 2 (DBMS_EXPORT_EXTENSION) Local SQL Exploit
  1424. Invision Power Board <= 2.1.5 (lastdate) Remote Code Execution Exploit
  1425. BL4 SMTP Server < 0.1.5 Remote Buffer Overflow PoC
  1426. TopList <= 1.3.8 (phpBB Hack) Remote File Inclusion Vulnerability
  1427. Advanced GuestBook <= 2.4.0 (phpBB) File Inclusion Vulnerability
  1428. TopList <= 1.3.8 (phpBB Hack) Remote Inclusion Exploit
  1429. Advanced GuestBook <= 2.4.0 (phpBB) Remote File Inclusion Exploit
  1430. Invision Power Board <= 2.1.5 search.php Remote Code Execution Exploit
  1431. OpenPHPNuke <= 2.3.3 Remote File Inclusion Vulnerability
  1432. Knowledge Base Mod <= 2.0.2 (phpBB) Remote Inclusion Vulnerability
  1433. Limbo CMS <= 1.0.4.2 (sql.php) Remote File Inclusion Vulnerability
  1434. Aardvark Topsites PHP <= 4.2.2 (path) Remote File Inclusion Vuln
  1435. phpMyAgenda <= 3.0 Final (rootagenda) Remote Include Vulnerability
  1436. Aardvark Topsites PHP <= 4.2.2 (lostpw.php) Remote Include Exploit
  1437. Invision Power Board <= 2.1.5 (from_contact) SQL Injection Exploit
  1438. X7 Chat <= 2.0 (help_file) Remote Commands Execution Exploit
  1439. Darwin Streaming Server <= 4.1.2 (parse_xml.cgi) Code Execution Exploit
  1440. Fast Click (<= 1.1.3 , <= 2.3.8) (show.php) Remote File Inclusion Exploit
  1441. MySQL <= 5.0.20 COM_TABLE_DUMP Memory Leak/Remote BoF Exploit
  1442. MySQL (<= 4.1.18, 5.0.20) Local/Remote Information Leakage Exploit
  1443. Golden FTP Server Pro 2.70 (APPE) Remote Buffer Overflow PoC
  1444. Albinator <= 2.0.6 (Config_rootdir) Remote File Inclusion Exploit
  1445. zawhttpd <= 0.8.23 (GET) Remote Buffer Overflow DoS
  1446. Auction <= 1.3m (phpbb_root_path) Remote File Include Exploit
  1447. XM Easy Personal FTP Server <= 4.3 (USER) Remote Buffer Overflow PoC
  1448. acFTP FTP Server <= 1.4 (USER) Remote Buffer Overflow PoC
  1449. Quake 3 Engine 1.32b R_RemapShader() Remote Client BoF Exploit
  1450. Limbo CMS <= 1.0.4.2 (catid) Remote SQL Injection Exploit
  1451. StatIt v4 (statitpath) Remote File Inclusion Exploit
  1452. TotalCalendar <= 2.30 (inc) Remote File Include Vulnerability
  1453. FileCOPA FTP Server <= 1.01 (USER) Remote Pre-Auth DoS
  1454. AWStats <= 6.5 (migrate) Remote Shell Command Injection Exploit
  1455. HiveMail <= 1.3 (addressbook.add.php) Remote Code Execution Exploit
  1456. acFTP FTP Server <= 1.4 (USER) Remote Denial of Service Exploit
  1457. TinyFTPD <= 1.4 (USER) Remote Buffer Overflow DoS
  1458. VP-ASP 6.00 (shopcurrency.asp) Remote SQL Injection Vulnerability
  1459. PHP-Fusion <= 6.00.306 Multiple Vulnerabilities Exploit
  1460. Jetbox CMS <= 2.1 (relative_script_path) Remote File Inclusion Exploit
  1461. ACal <= 2.2.6 (day.php) Remote File Inclusion Vulnerability
  1462. EQdkp <= 1.3.0 (dbal.php) Remote File Inclusion Vulnerability
  1463. Dokeos LMS <= 1.6.4 (authldap.php) Remote File Include Exploit
  1464. Claroline e-Learning 1.75 (ldap.inc.php) Remote File Inclusion Exploit
  1465. ActualAnalyzer Server <= 8.23 (rf) Remote File Include Vulnerability
  1466. ActualAnalyzer Pro <= 6.88 (rf) Remote File Include Exploit
  1467. phpListPro <= 2.01 Multiple Remote File Include Vulnerabilities
  1468. Intel Wireless Service (s24evmon.exe) Shared Memory Exploit
  1469. phpRaid <= 3.0.b3 (phpBB/SMF) Remote File Inclusion Vulnerabilities
  1470. pafileDB <= 2.0.1 (mxBB/phpBB) Remote File Inclusion Vulnerability
  1471. MS Internet Explorer <= 6.0.2900 SP2 (CSS Attribute) Denial of Service
  1472. Medal of Honor (getinfo) Remote Buffer Overflow Exploit
  1473. Unclassified NewsBoard <= 1.6.1 patch 1 Arbitrary Local Inclusion Exploit
  1474. Foing <= 0.7.0 (phpBB) Remote File Inclusion Vulnerability
  1475. Php Blue Dragon CMS <= 2.9 Remote File Include Vulnerability
  1476. phpBB <= 2.0.20 (Admin/Restore DB/default_lang) Remote Exploit
  1477. Outgun <= 1.0.3 bot 2 Multiple Remote Vulnerabilities Exploit
  1478. Empire <= 4.3.2 (strncat) Denial of Service Exploit
  1479. Genecys <= 0.2 (BoF/NULL pointer) Denial of Service Exploit
  1480. Raydium <= SVN 309 Multiple Remote Vulnerabilities Exploit
  1481. Sugar Suite Open Source <= 4.2 (OptimisticLock) Remote Exploit
  1482. freeSSHd <= 1.0.9 Key Exchange Algorithm Buffer Overflow Exploit
  1483. PuTTy.exe <= 0.53 (validation) Remote Buffer Overflow Exploit (meta)
  1484. TR Newsportal <= 0.36tr1 (poll.php) Remote File Inclusion Vulnerability
  1485. Squirrelcart <= 2.2.0 (cart_content.php) Remote Inclusion Vulnerability
  1486. RealVNC 4.1.0 - 4.1.1 (VNC Null Authentication) Auth Bypass Patch/EXE
  1487. GNUnet <= 0.7.0d (Empty UDP Packet) Remote Denial of Service Exploit
  1488. DeluxeBB <= 1.06 (name) Remote SQL Injection Exploit (mq=off)
  1489. RealVNC 4.1.0 - 4.1.1 (Null Authentication) Auth Bypass Exploit (meta)
  1490. ezUserManager <= 1.6 Remote File Inclusion Vulnerability
  1491. PHP-Fusion <= 6.00.306 (srch_where) SQL Injection Exploit
  1492. DeluxeBB <= 1.06 (Attachment mod_mime) Remote Exploit
  1493. Quezza BB <= 1.0 (quezza_root_path) File Inclusion Vulnerability
  1494. RealVNC 4.1.0 - 4.1.1 (VNC Null Authentication) Vulnerability Scanners
  1495. ScozNews <= 1.2.1 (mainpath) Remote File Inclusion Vulnerability
  1496. libextractor <= 0.5.13 Multiple Heap Overflow PoC Exploits
  1497. Mozilla Firefox <= 1.5.0.3 (Loop) Denial of Service Exploit
  1498. phpBazar <= 2.1.0 Remote (Include/Auth Bypass) Vulnerabilities
  1499. phpListPro <= 2.0.1 (Language) Remote Code Execution Exploit
  1500. IntelliTamper 2.07 (*.map file) Local Arbitrary Code Execution Exploit
  1501. Zix Forum <= 1.12 (layid) SQL Injection Vulnerability
  1502. phpMyDirectory <= 10.4.4 (ROOT_PATH) Remote Inclusion Vulnerability
  1503. CaLogic Calendars 1.2.2 (CLPath) Remote File Include Vulnerabilities
  1504. Woltlab Burning Board <= 2.3.5 (links.php) SQL Injection Exploit
  1505. XOOPS <= 2.0.13.2 xoopsOption[nocommon] Remote Exploit
  1506. Fusion News v.1.0 (fil_config) Remote File Inclusion Exploit
  1507. Cyrus IMAPD 2.3.2 (pop3d) Remote Buffer Overflow Exploit
  1508. UBB Threads 6.4.x-6.5.2 (thispath) Remote File Inclusion Vulnerability
  1509. portmap 5 beta (Set/Dump) Local Denial of Service Exploit
  1510. Nucleus CMS <= 3.22 (DIR_LIBS) Arbitrary Remote Inclusion Exploit
  1511. Docebo <= 3.0.3 Multiple Remote File Include Vulnerabilities
  1512. phpCommunityCalendar <= 4.0.3 Multiple (XSS/SQL) Vulnerabilities
  1513. PunkBuster < 1.229 (WebTool Service) Remote Buffer Overflow DoS
  1514. netPanzer 0.8 rev 952 (frameNum) Server Terminiation Exploit
  1515. Drupal <= 4.7 (attachment mod_mime) Remote Exploit
  1516. BASE <= 1.2.4 melissa (Snort Frontend) Remote Inclusion Vulnerabilities
  1517. open-medium.CMS <= 0.25 (404.php) Remote File Include Vulnerability
  1518. Back-End CMS <= 0.7.2.2 (BE_config.php) Remote Include Vulnerability
  1519. Socketmail <= 2.2.6 (site_path) Remote File Include Vulnerability
  1520. V-Webmail <= 1.6.4 (pear_dir) Remote File Include Vulnerability
  1521. DoceboLMS <= 2.0.5 (help.php) Remote File Include Vulnerability
  1522. APC ActionApps CMS 2.8.1 Remote File Include Vulnerabilities
  1523. tiffsplit (libtiff <= 3.8.2) Local Stack Buffer Overflow PoC
  1524. Plume CMS <= 1.0.3 (manager_path) Remote File Include Vulnerability
  1525. qjForum (member.asp) SQL Injection Vulnerability
  1526. Easy-Content Forums 1.0 Multiple SQL/XSS Vulnerabilities
  1527. Hot Open Tickets <= 11012004 (CLASS_PATH) Remote Include Vuln
  1528. PrideForum 1.0 (forum.asp) Remote SQL Injection Vulnerability
  1529. MiniNuke 2.x (create an admin) Remote SQL Injection Exploit
  1530. MS Internet Explorer (HTML Tag) Memory Corruption (MS06-013)
  1531. tinyBB <= 0.3 Remote (Include / SQL Injection) Vulnerabilities
  1532. Enigma Haber <= 4.3 Multiple Remote SQL Injection Vulnerabilities
  1533. F@cile Interactive Web <= 0.8x Remote (Include / XSS) Vulnerabilities
  1534. Eggblog < 3.07 Remote (SQL Injection / Privilege Escalation) Exploit
  1535. UBB Threads 5.x / 6.x Multiple Remote File Inclusion Vulnerabilities
  1536. Activity MOD Plus <= 1.1.0 (phpBB Mod) File Inclusion Vulnerability
  1537. ASPSitem <= 2.0 Remote (SQL Injection / DB Disclosure) Vulnerabilities
  1538. Blend Portal <= 1.2.0 (phpBB Mod) Remote File Inclusion Vulnerability
  1539. CosmicShoppingCart (search.php) Remote SQL Injection Vulnerability
  1540. Fastpublish CMS 1.6.9 config[fsBase] Remote Include Vulnerabilities
  1541. Speedy ASP Forum (profileupdate.asp) User Pass Change Exploit
  1542. Nukedit CMS <= 4.9.6 Unauthorized Admin Add Exploit
  1543. gnopaste <= 0.5.3 (common.php) Remote File Include Vulnerability
  1544. gxine 0.5.6 (HTTP Plugin) Remote Buffer Overflow PoC
  1545. pppBlog <= 0.3.8 (randompic.php) System Disclosure Exploit
  1546. Ottoman CMS <= 1.1.3 (default_path) Remote File Include Vulnerabilities
  1547. metajour 2.1 (system_path) Remote File Include Vulnerabilities
  1548. MS Internet Explorer (inetconn.dll) Stack Overflow Crash
  1549. TinyPHP Forum <= 3.6 (profile.php) Remote Code Execution Exploit
  1550. AssoCIateD CMS 1.1.3 (root_path) Remote File Include Vulnerability
  1551. aspWebLinks 2.0 Remote SQL Injection / Admin Pass Change Exploit
  1552. Bytehoard 2.1 (server.php) Remote File Include Vulnerability
  1553. Redaxo CMS <= 3.2 (INCLUDE_PATH) Remote File Include Vulnerabilities
  1554. iShopCart vGetPost() Remote Buffer Overflow Exploit (cgi)
  1555. Igloo <= 0.1.9 (Wiki.php) Remote File Include Vulnerability
  1556. ashNews 0.83 (pathtoashnews) Remote File Include Vulnerabilities
  1557. Informium 0.12.0 (common-menu.php) Remote File Include Vulnerabilities
  1558. PHP-Nuke <= 7.9 Final (phpbb_root_path) Remote File Inclusions
  1559. Mozilla Firefox <= 1.5.0.4 (marquee) Denial of Service Exploit
  1560. Pixelpost <= 1-5rc1-2 Remote Privilege Escalation Exploit
  1561. DotClear <= 1.2.4 (prepend.php) Arbitrary Remote Inclusion Exploit
  1562. BlueShoes Framework <= 4.6 Remote File Include Vulnerabilities
  1563. WebspotBlogging <= 3.0.1 (path) Remote File Include Vulnerability
  1564. CS-Cart <= 1.3.3 (classes_dir) Remote File Include Vulnerability
  1565. ProPublish 2.0 (catid) Remote SQL Injection Vulnerability
  1566. LifeType <= 1.0.4 SQL Injection / Admin Credentials Disclosure Exploit
  1567. FunkBoard CF0.71 (profile.php) Remote User Pass Change Exploit
  1568. SCart 2.0 (page) Remote Code Execution Exploit
  1569. Claroline <= 1.7.6 (includePath) Remote Code Execution Exploit
  1570. Particle Wiki <= 1.0.2 (version) Remote SQL Injection Vulnerability
  1571. dotWidget CMS <= 1.0.6 (file_path) Remote File Include Vulnerabilities
  1572. Linux Kernel < 2.6.16.18 (Netfilter NAT SNMP Module) Remote DoS Exploit
  1573. DreamAccount <= 3.1 (da_path) Remote File Include Vulnerabilities
  1574. Dmx Forum <= 2.1a (edit.php) Remote Password Disclosure Exploit
  1575. Wikiwig <= 4.1 (wk_lang.php) Remote File Include Vulnerability
  1576. myNewsletter <= 1.1.2 (adminLogin.asp) Login Bypass Exploit
  1577. QBik Wingate 6.1.1.1077 (POST) Remote Buffer Overflow Exploit
  1578. OpenEMR <= 2.8.1 (fileroot) Remote File Include Vulnerability
  1579. Xtreme/Ditto News <= 1.0 (post.php) Remote File Include Vulnerability
  1580. Back-End CMS <= 0.7.2.1 (jpcache.php) Remote Include Vulnerability
  1581. D-Link Access-Point <= 2.10na (DWL Series) Config Disclosure Vuln
  1582. cms-bandits 2.5 (spaw_root) Remote File Include Vulnerabilities
  1583. Enterprise Payroll Systems <= 1.1 (footer) Remote Include Vulnerability
  1584. Guestex Guestbook 1.00 (email) Remote Code Execution Exploit
  1585. MailEnable Enterprise <= 2.0 (ASP Version) Multiple Vulnerabilities
  1586. 0verkill 0.16 (ASCII-ART Game) Remote Integer Overflow Crash Exploit
  1587. empris <= r20020923 (phormationdir) Remote Include Vulnerability
  1588. aePartner <= 0.8.3 (dir[data]) Remote Include Vulnerability
  1589. phpOnDirectory <= 1.0 Remote File Include Vulnerabilities
  1590. WebprojectDB <= 0.1.3 (INCDIR) Remote File Include Vulnerability
  1591. free QBoard <= 1.1 (qb_path) Remote File Include Vulnerability
  1592. MaxiSepet <= 1.0 (link) SQL Injection Vulnerability
  1593. RCblog <= 1.03 (post) Remote Command Execution Exploit
  1594. AWF CMS 1.11 (spaw_root) Remote File Include Vulnerability
  1595. Content-Builder (CMS) 0.7.5 Multiple Include Vulnerabilities
  1596. blur6ex <= 0.3.462 (ID) Admin Disclosure / Blind SQL Injection Exploit
  1597. DCP-Portal 6.1.x (root) Remote File Include Vulnerability
  1598. CesarFTP 0.99g (MKD) Remote Buffer Overflow Exploit
  1599. aWebNews <= 1.5 (visview.php) Remote File Include Vulnerability
  1600. Minerva <= 2.0.8a Build 237 (phpbb_root_path) File Include Vulnerability
  1601. MyBulletinBoard (MyBB) < 1.1.3 Remote Code Execution Exploit
  1602. MS Windows (NtClose DeadLock) Vulnerability PoC (MS06-030)
  1603. MS Windows XP/2K (Mrxsmb.sys) Privilege Escalation PoC (MS06-030)
  1604. The Bible Portal Project <= 2.12 (destination) File Include Vulnerability
  1605. Php Blue Dragon CMS <= 2.9.1 (template.php) File Include Vulnerability
  1606. Content-Builder (CMS) <= 0.7.2 Multiple Include Vulnerabilities
  1607. CesarFTP 0.99g (MKD) Remote Buffer Overflow Exploit (meta)
  1608. DeluxeBB <= 1.06 (templatefolder) Remote File Include Vulnerabilities
  1609. Pico Zip 4.01 (Long Filename) Buffer Overflow Exploit
  1610. bitweaver <= 1.3 (tmpImagePath) Attachment mod_mime Exploit
  1611. CMS Faethon <= 1.3.2 (mainpath) Remote File Inclusion Vulnerability
  1612. Mambo <= 4.6rc1 (Weblinks) Blind SQL Injection Exploit
  1613. FlashBB <= 1.1.8 (phpbb_root_path) Remote File Include Exploit
  1614. Joomla <= 1.0.9 (Weblinks) Remote Blind SQL Injection Exploit
  1615. Ad Manager Pro 2.6 (ipath) Remote File Include Vulnerability
  1616. Sun iPlanet Messaging Server 5.2 HotFix 1.16 Root Password Disclosure
  1617. INDEXU <= 5.0.1 (admin_template_path) Remote Include Vulnerabilities
  1618. PHP Live Helper <= 1.x (abs_path) Remote File Include Vulnerability
  1619. Microsoft Excel Unicode Local Overflow Exploit PoC
  1620. IdeaBox <= 1.1 (gorumDir) Remote File Include Vulnerability
  1621. Micro CMS <= 0.3.5 (microcms_path) Remote File Include Vulnerability
  1622. WeBBoA Host Script 1.1 Remote SQL Injection Vulnerability
  1623. ASP Stats Generator <= 2.1.1 SQL Injection Vulnerabilities
  1624. Ultimate PHP Board <= 1.96 GOLD Multiple Vulnerabilities Exploit
  1625. BandSite CMS <= 1.1.1 (root_path) Remote File Include Vulnerabilities
  1626. dotProject <= 2.0.3 (baseDir) Remote File Inclusion Vulnerability
  1627. Winamp <= 5.21 (Midi File Header Handling) Buffer Overflow PoC
  1628. SmartSiteCMS 1.0 (root) Remote File Inclusion Vulnerability
  1629. Opera 9 (long href) Remote Denial of Service Exploit
  1630. DataLife Engine <= 4.1 Remote SQL Injection Exploit (perl)
  1631. DataLife Engine <= 4.1 Remote SQL Injection Exploit (php)
  1632. MS Windows RRAS Remote Stack Overflow Exploit (MS06-025)
  1633. Mambo <= 4.6rc1 (Weblinks) Remote Blind SQL Injection Exploit (2)
  1634. Ralf Image Gallery <= 0.7.4 Multiple Remote Vulnerabilities
  1635. Harpia CMS <= 1.0.5 Remote File Include Vulnerabilities
  1636. Microsoft Excel Unspecified Remote Code Execution Exploit
  1637. w-Agora <= 4.2.0 (inc_dir) Remote File Include Exploit
  1638. Jaws <= 0.6.2 (Search gadget) Remote SQL Injection Exploit
  1639. BitchX <= 1.1-final do_hook() Remote Denial of Service Exploit
  1640. phpMySms 2.0 (ROOT_PATH) Remote File Include Vulnerability
  1641. XM Easy Personal FTP Server 5.0.1 (Port) Remote Overflow PoC
  1642. MyBulletinBoard (MyBB) <= 1.1.3 (usercp.php) Create Admin Exploit
  1643. MagNet BeeHive CMS (header) Remote File Include Vulnerability
  1644. THoRCMS <= 1.3.1 (phpbb_root_path) Remote File Include Vulnerability
  1645. DeluxeBB <= 1.07 (cp.php) Create Admin Exploit
  1646. DreamAccount <= 3.1 (auth.api.php) Remote File Include Exploit
  1647. CBSMS Mambo Module <= 1.0 Remote File Include Vulnerability
  1648. Pearl For Mambo <= 1.6 Multiple Remote File Include Vulnerabilities
  1649. Scout Portal Toolkit <= 1.4.0 (forumid) Remote SQL Injection Exploit
  1650. Microsoft Excel 2003 Hlink Stack/SEH Buffer Overflow Exploit
  1651. RsGallery2 <= 1.11.2 (rsgallery.html.php) File Include Vulnerability
  1652. BLOG:CMS <= 4.0.0k Remote SQL Injection Exploit
  1653. XOOPS myAds Module (lid) Remote SQL Injection Vulnerability
  1654. Mac OS X <= 10.4.6 (launchd) Local Format String Exploit (x86)
  1655. GeekLog <= 1.4.0sr3 (_CONF[path]) Remote File Include Vulnerabilities
  1656. GeekLog <= 1.4.0sr3 f(u)ckeditor Remote Code Execution Exploit
  1657. MS Windows RRAS RASMAN Registry Stack Overflow Exploit (MS06-025)
  1658. MS Windows TCP/IP Protocol Driver Remote Buffer Overflow Exploit
  1659. deV!Lz Clanportal [DZCP] <= 1.34 (id) Remote SQL Injection Exploit
  1660. Stud.IP <= 1.3.0-2 Multiple Remote File Include Vulnerabilities
  1661. Plume CMS 1.1.3 (dbinstall.php) Remote File Include Vulnerability
  1662. Randshop <= 1.1.1 (header.inc.php) Remote File Include Vulnerability
  1663. Opera Web Browser 9.00 (iframe) Remote Denial of Service Exploit
  1664. Mac OS X <= 10.4.6 (launchd) Local Format String Exploit (ppc)
  1665. SmartSiteCMS 1.0 (root) Multiple Remote File Inclusion Vulnerabilities
  1666. BXCP <= 0.3.0.4 (where) Remote SQL Injection Exploit
  1667. Quake 3 Engine Client CG_ServerCommand() Remote Overflow Exploit
  1668. Quake 3 Engine Client CS_ITEMS Remote Overflow Exploit (Win32)
  1669. Microsoft Excel Universal Hlink Local Buffer Overflow Exploit
  1670. ImgSvr <= 0.6.5 (long http post) Denial of Service Exploit
  1671. galleria Mambo Module <= 1.0b Remote File Include Vulnerability
  1672. WonderEdit Pro CMS (template_path) Remote File Include Vulnerabilities
  1673. MyPHP CMS <= 0.3 (domain) Remote File Include Vulnerability
  1674. WinRAR <= 3.60 beta 6 (SFX Path) Stack Overflow Exploit PoC
  1675. WinRAR <= 3.60 beta 6 (SFX Path) Local Stack Overflow Exploit
  1676. Microsoft Excel 2000/2003 Hlink Local Buffer Overflow Exploit (french)
  1677. Hosting Controller <= 6.1 Hotfix 3.1 Privilege Escalation Vulnerability
  1678. Microsoft Excel 2003 Hlink Local Buffer Overflow Exploit (italian)
  1679. MS Internet Explorer 6 Table.Frameset NULL Dereference Vulnerability
  1680. MS Internet Explorer 6 (Internet.HHCtrl) Heap Overflow Vulnerability
  1681. Pivot <= 1.30 RC2 Privileges Escalation/Remote Code Execution Exploit
  1682. WinRAR <= 3.60 beta 6 (SFX Path) Local Stack Overflow Exploit (french)
  1683. PAPOO <= 3_RC3 SQL Injection/Admin Credentials Disclosure Exploit
  1684. SimpleBoard Mambo Component <= 1.1.0 Remote Include Vulnerability
  1685. com_forum Mambo Component <= 1.2.4RC3 Remote Include Vulnerability
  1686. Sabdrimer PRO <= 2.2.4 (pluginpath) Remote File Include Vulnerability
  1687. Webmin < 1.290 / Usermin < 1.220 Arbitrary File Disclosure Exploit
  1688. Ottoman CMS <= 1.1.3 (default_path) Remote File Inclusion Exploit
  1689. Microsoft Word 2000/2003 Hlink Local Buffer Overflow Exploit PoC
  1690. SIPfoundry sipXtapi (CSeq) Remote Buffer Overflow Exploit PoC
  1691. Microsoft Word 2000/2003 Unchecked Boundary Condition Vulnerability
  1692. EJ3 TOPo 2.2 (descripcion) Remote Command Execution Exploit
  1693. SQuery <= 4.5 (gore.php) Remote File Inclusion Vulnerability
  1694. Linux Kernel 2.6.13 <= 2.6.17.4 sys_prctl() Local Root Exploit
  1695. Linux Kernel 2.6.13 <= 2.6.17.4 sys_prctl() Local Root Exploit (2)
  1696. Linux Kernel 2.6.13 <= 2.6.17.4 sys_prctl() Local Root Exploit (3)
  1697. phpBB 3 (memberlist.php) Remote SQL Injection Exploit
  1698. Phorum 5 (pm.php) Arbitrary Local Inclusion Exploit
  1699. CzarNews <= 1.14 (tpath) Remote File Inclusion Vulnerability
  1700. Invision Power Board 2.1 <= 2.1.6 Remote SQL Injection Exploit
  1701. Linux Kernel 2.6.13 <= 2.6.17.4 sys_prctl() Local Root Exploit (4)
  1702. MyBulletinBoard (MyBB) <= 1.1.5 (CLIENT-IP) SQL Injection Exploit
  1703. Linux Kernel <= 2.6.17.4 (proc) Local Root Exploit
  1704. Winlpd 1.2 Build 1076 Remote Buffer Overflow Exploit
  1705. Rocks Clusters <= 4.1 (umount-loop) Local Root Exploit
  1706. Rocks Clusters <= 4.1 (mount-loop) Local Root Exploit
  1707. Webmin < 1.290 / Usermin < 1.220 Arbitrary File Disclosure Exploit (perl)
  1708. FlushCMS <= 1.0.0-pre2 (class.rich.php) Remote Inclusion Vulnerability
  1709. mail2forum phpBB Mod <= 1.2 (m2f_root_path) Remote Include Vulns
  1710. com_videodb Mambo Component <= 0.3en Remote Include Vulnerability
  1711. SMF Forum Mambo Component <= 1.3.1.3 Include Vulnerability
  1712. com_extcalendar Mambo Component <= 2.0 Include Vulnerability
  1713. com_loudmouth Mambo Component <= 4.0j Include Vulnerability
  1714. pc_cookbook Mambo Component <= 0.3 Include Vulnerability
  1715. perForms Mambo Component <= 1.0 Remote File Inclusion
  1716. com_hashcash Mambo Component <= 1.2.1 Include Vulnerability
  1717. HTMLArea3 Mambo Module <= 1.5 Remote Include Vulnerability
  1718. Sitemap Mambo Component <= 2.0.0 Remote Include Vulnerability
  1719. pollxt Mambo Component <= 1.22.07 Remote Include Vulnerability
  1720. MiniBB Mambo Component <= 1.5a Remote File Include Vulnerabilities
  1721. Linux Kernel 2.6.13 <= 2.6.17.4 prctl() Local Root Exploit (logrotate)
  1722. Eskolar CMS 0.9.0.0 Remote Blind SQL Injection Exploit
  1723. Invision Power Board 2.1 <= 2.1.6 Remote SQL Injection Exploit (2)
  1724. BT Voyager 2091 (Wireless ADSL) Multiple Vulnerabilities
  1725. toendaCMS <= 1.0.0 (FCKeditor) Remote File Upload Exploit
  1726. PHP-Post 1.0 Cookie Modification Privilege Escalation Vulnerability
  1727. Dumb <= 0.9.3 (it_read_envelope) Remote Heap Overflow PoC
  1728. MS Internet Explorer 6 (Content-Type) Stack Overflow Crash
  1729. iManage CMS <= 4.0.12 (absolute_path) Remote File Inclusion
  1730. FileCOPA FTP Server <= 1.01 (LIST) Remote Buffer Overflow Exploit
  1731. Cisco/Protego CS-MARS < 4.2.1 (JBoss) Remote Code Execution Exploit
  1732. SiteDepth CMS <= 3.0.1 (SD_DIR) Remote File Include Vulnerability
  1733. LoudBlog <= 0.5 (id) SQL Injection / Admin Credentials Disclosure
  1734. Sendmail <= 8.13.5 Remote Signal Handling Exploit PoC
  1735. MS Internet Explorer (MDAC) Remote Code Execution Exploit (MS06-014)
  1736. Cyrus IMAPD 2.3.2 (pop3d) Remote Buffer Overflow Exploit (2)
  1737. MS Windows DHCP Client Broadcast Attack Exploit (MS06-036)
  1738. Microsoft IIS ASP Stack Overflow Exploit (MS06-034)
  1739. MS Windows Mailslot Ring0 Memory Corruption Exploit (MS06-035)
  1740. PHP Forge <= 3 beta 2 (cfg_racine) Remote File Inclusion Vulnerability
  1741. D-Link Router UPNP Stack Overflow Denial of Service Exploit (PoC)
  1742. PHP Live! <= 3.2.1 (help.php) Remote Inclusion Vulnerability
  1743. Apache Tomcat < 5.5.17 Remote Directory Listing Vulnerability
  1744. MoSpray Mambo Component <= 18RC1 Remote Include Vulnerability
  1745. ArticlesOne <= 07232006 (page) Remote Include Vulnerability
  1746. Mam-Moodle Mambo Component alpha Remote Inclusion Vulnerability
  1747. Cheese Tracker <= 0.9.9 Local Buffer Overflow Exploit PoC
  1748. multibanners Mambo Component <= 1.0.1 Remote Inclusion Vulnerability
  1749. Solaris <= 10 sysinfo() Local Kernel Memory Disclosure Exploit
  1750. X7 Chat <= 2.0.4 (old_prefix) Remote Blind SQL Injection Exploit
  1751. PrinceClan Chess Mambo Com <= 0.8 Remote Inclusion Vulnerability
  1752. SIPfoundry sipXtapi (CSeq) Remote Buffer Overflow Exploit
  1753. Etomite CMS <= 0.6.1 (username) SQL Injection Exploit (mq = off)
  1754. Etomite CMS <= 0.6.1 (rfiles.php) Remote Command Execution Exploit
  1755. libmikmod <= 3.2.2 (GT2 loader) Local Heap Overflow PoC
  1756. eIQnetworks License Manager Remote Buffer Overflow Exploit (1262)
  1757. eIQnetworks License Manager Remote Buffer Overflow Exploit (494)
  1758. AIM Triton 1.0.4 (SipXtapi) Remote Buffer Overflow Exploit (PoC)
  1759. WMNews <= 0.2a (base_datapath) Remote Inclusion Vulnerability
  1760. a6mambohelpdesk Mambo Component <= 18RC1 Include Vulnerability
  1761. eIQnetworks ESA (Syslog Server) Remote Buffer Overflow Exploit
  1762. eIQnetworks License Manager Remote Buffer Overflow Exploit (multi)
  1763. Portail PHP <= 1.7 (chemin) Remote Inclusion Vulnerability
  1764. Mozilla Firefox <= 1.5.0.4 Javascript Navigator Object Code Execution PoC
  1765. Mambo Security Images Component <= 3.0.5 Inclusion Vulnerabilities
  1766. Mambo MGM Component <= 0.95r2 Remote Inclusion Vulnerability
  1767. Mambo Colophon Component <= 1.2 Remote Inclusion Vulnerability
  1768. Mambo mambatStaff Component <= 3.1b Remote Inclusion Vulnerability
  1769. vbPortal 3.0.2 <= 3.6.0 b1 (cookie) Remote Code Excution Exploit
  1770. ATutor <= 1.5.3.1 (links) Remote Blind SQL Injection Exploit
  1771. Mambo User Home Pages Component <= 0.5 Remote Include Vulnerability
  1772. Joomla com_bayesiannaivefilter Component <= 1.1 Inclusion Vulnerability
  1773. Microsoft PowerPoint 2003 SP2 Local Code Execution Exploit (french)
  1774. Joomla LMO Component <= 1.0b2 Remote Include Vulnerability
  1775. Open Cubic Player <= 2.6.0pre6 / 0.1.10_rc5 Multiple BOF Exploit
  1776. PhpReactor 1.2.7pl1 (pathtohomedir) Remote Inclusion Vulnerability
  1777. MyNewsGroups <= 0.6b (myng_root) Remote Inclusion Vulnerability
  1778. NewsLetter <= 3.5 (NL_PATH) Remote File Inclusion Vulnerability
  1779. TSEP <= 0.942 (copyright.php) Remote Inclusion Vulnerability
  1780. WoW Roster <= 1.5.1 (subdir) Remote File Include Vulnerability
  1781. PHPAuction 2.1 (phpAds_path) Remote File Inclusion Vulnerability
  1782. newsReporter <= 1.1 (index.php) Remote Inclusion Vulnerability
  1783. Voodoo chat <= 1.0RC1b (file_path) Remote File Inclusion Vulnerability
  1784. k_shoutBox <= 4.4 Remote File Inclusion Vulnerability
  1785. k_fileManager <= 1.2 (dwl_include_path) Remote Inclusion Vulnerability
  1786. XMB <= 1.9.6 (u2uid) Remote SQL Injection Exploit (mq=off)
  1787. Mac OS X <= 10.4.7 fetchmail Privilege Escalation Exploit (x86)
  1788. Mac OS X <= 10.4.7 fetchmail Privilege Escalation Exploit (ppc)
  1789. Mac OS X <= 10.4.7 fetchmail Privilege Escalation Exploit
  1790. WoW Roster <= 1.70 (/lib/phpbb.php) Remote File Include Vulnerability
  1791. TWiki <= 4.0.4 (Configure Script) Remote Code Execution Exploit (meta)
  1792. Mac OS X <= 10.3.8 (CF_CHARSET_PATH) Local BOF Exploit (2)
  1793. SaveWeb Portal <= 3.4 (SITE_Path) Remote File Inclusion Vulnerabilities
  1794. TinyPHP Forum <= 3.6 (makeadmin) Remote Admin Maker Exploit
  1795. Kayako eSupport <= 2.3.1 (subd) Remote File Inclusion Vulnerability
  1796. TSEP <= 0.942 (colorswitch.php) Remote Inclusion Vulnerability
  1797. SendCard <= 3.4.0 Unauthorized Administrative Access Exploit
  1798. myBloggie <= 2.1.4 (trackback.php) Multiple SQL Injections Exploit
  1799. PHP Simple Shop <= 2.0 (abs_path) Remote File Inclusion Vulnerability
  1800. PHP Live Helper <= 2.0 (abs_path) Remote File Inclusion Vulnerability
  1801. Torbstoff News 4 (pfad) Remote File Inclusion Vulnerability
  1802. ME Download System <= 1.3 (header.php) Remote Inclusion Vulnerability
  1803. SQLiteWebAdmin 0.1 (tpl.inc.php) Remote Include Vulnerability
  1804. XChat <= 2.6.7 (win version) Remote Denial of Service Exploit (php)
  1805. Joomla JD-Wiki Component <= 1.0.2 Remote Include Vulnerability
  1806. Modernbill <= 1.6 (config.php) Remote File Include Vulnerability
  1807. SAPID CMS <= 1.2.3.05 (root_path) Remote File Include Vulnerabilities
  1808. SAPID Blog <= beta 2 (root_path) Remote File Include Vulnerabilities
  1809. SAPID Gallery <= 1.0 (root_path) Remote File Include Vulnerabilities
  1810. SAPID Shop <= 1.2 (root_path) Remote File Include Vulnerability
  1811. phpAutoMembersArea <= 3.2.5 (installed_config_file) Remote Inclusion
  1812. Simple CMS Administrator Authentication Bypass Vulnerability
  1813. phpCC 4.2 beta (base_dir) Remote File Inclusion Vulnerability
  1814. NEWSolved Lite v1.9.2 (abs_path) Remote File Inclusion Vulnerabilities
  1815. Barracuda Spam Firewall <= 3.3.03.053 Remote Code Execution
  1816. QuestCMS (main.php) Remote File Include Vulnerability
  1817. YenerTurk Haber Script 1.0 Remote SQL Injection Vulnerability
  1818. PHPCodeCabinet <= 0.5 (Core.php) Remote File Include Vulnerability
  1819. eIQnetworks License Manager Remote Buffer Overflow Exploit (multi)
  1820. Visual Events Calendar 1.1 (cfg_dir) Remote Include Vulnerability
  1821. ZoneX 1.0.3 Publishers Gold Edition Remote File Inclusion Vulnerability
  1822. TWiki <= 4.0.4 (configure) Remote Command Execution Exploit
  1823. liblesstif <= 2-0.93.94-4mdk (DEBUG_FILE) Local Root Exploit
  1824. Barracuda Spam Firewall <= 3.3.03.053 Remote Code Execution (extra)
  1825. docpile:we <= 0.2.2 (INIT_PATH) Remote File Inclusion Vulnerabilities
  1826. XChat <= 2.6.7 (win version) Remote Denial of Service Exploit (perl)
  1827. phNNTP <= 1.3 (article-raw.php) Remote File Include Vulnerability
  1828. Hitweb <= 4.2.1 (REP_INC) Remote File Include Vulnerability
  1829. CLUB-Nuke [XP] 2.0 LCID 2048 (Turkish Version) SQL Injection
  1830. Cwfm <= 0.9.1 (Language) Remote File Inclusion Vulnerability
  1831. PHP <= 4.4.3 / 5.1.4 (objIndex) Local Buffer Overflow Exploit PoC
  1832. Boite de News <= 4.0.1 (index.php) Remote File Inclusion Vulnerability
  1833. PgMarket <= 2.2.3 (CFG[libdir]) Remote File Inclusion Vulnerability
  1834. See-Commerce <= 1.0.625 (owimg.php3) Remote Include Vulnerability
  1835. PocketPC MMS Composer (WAPPush) Denial of Service Exploit
  1836. Tagger Luxury Edition (BBCodeFile) Remote File Include Vulnerability
  1837. TinyWebGallery <= 1.5 (image) Remote Include Vulnerabilities
  1838. PHPMyRing <= 4.2.0 (view_com.php) Remote SQL Injection Exploit
  1839. OpenMPT <= 1.17.02.43 Multiple Remote Buffer Overflow Exploit PoC
  1840. SAPID CMS <= 1.2.3_rc3 (rootpath) Remote Code Execution Exploit
  1841. MS Windows NetpIsRemote() Remote Overflow Exploit (MS06-040)
  1842. phpwcms <= 1.1-RC4 (spaw) Remote File Include Vulnerability
  1843. Internet Explorer (MDAC) Remote Code Execution Exploit (MS06-014) (2)
  1844. Spaminator <= 1.7 (page) Remote File Include Vulnerability
  1845. Thatware <= 0.4.6 (root_path) Remote File Include Vulnerability
  1846. SaveWebPortal <= 3.4 (page) Remote File Inclusion Vulnerability
  1847. phpPrintAnalyzer <= 1.2 Remote File Include Vulnerability
  1848. Chaussette <= 080706 (_BASE) Remote File Include Vulnerabilities
  1849. VWar <= 1.50 R14 (online.php) Remote SQL Injection Vulnerability
  1850. WEBInsta MM 1.3e (cabsolute_path) Remote File Include Vulnerability
  1851. Mambo Remository Component <= 3.25 Remote Include Vulnerability
  1852. MVCnPHP <= 3.0 glConf[path_libraries] Remote Include Vulnerabilities
  1853. Wheatblog <= 1.1 (session.php) Remote File Include Vulnerability
  1854. WEBinsta CMS <= 0.3.1 (templates_dir) Remote File Include Exploit
  1855. Nokia Symbian 60 3rd Edition Browser Denial of Service Crash
  1856. Joomla Webring Component <= 1.0 Remote Include Vulnerability
  1857. XMB <= 1.9.6 Final basename() Remote Command Execution Exploit
  1858. Opera 9 IRC Client Remote Denial of Service Exploit (c)
  1859. Opera 9 IRC Client Remote Denial of Service Exploit (py)
  1860. phPay <= 2.02 (nu_mail.inc.php) Remote mail() Injection Exploit
  1861. Mambo mmp Component <= 1.2 Remote File Include Vulnerability
  1862. ProjectButler <= 0.8.4 (rootdir) Remote File Include Vulnerabilities
  1863. Mambo Peoplebook Component 1.0 Remote File Include Vulnerability
  1864. Cyrus IMAPD 2.3.2 (pop3d) Remote Buffer Overflow Exploit (3)
  1865. Spidey Blog Script <= 1.5 (tr) Remote SQL Injection Vulnerability
  1866. WEBInsta MM <= 1.3e (absolute_path) Remote File Include Exploit
  1867. Discloser <= 0.0.4 (fileloc) Remote File Include Vulnerabilities
  1868. WEBInsta CMS <= 0.3.1 (users.php) Remote File Include Vulnerability
  1869. PHProjekt <= 5.1 Multiple Remote File Include Vulnerabilities
  1870. dotProject <= 2.0.4 (baseDir) Remote File Include Vulnerability
  1871. OPT Max <= 1.2.0 (CRM_inc) Remote File Include Vulnerability
  1872. PHP <= 4.4.3 / 5.1.4 (sscanf) Local Buffer Overflow Exploit
  1873. MS Windows PNG File IHDR Block Denial of Service Exploit PoC
  1874. VMware 5.5.1 COM Object Arbitrary Partition Table Delete Exploit
  1875. Mambo CopperminePhotoGalery Component Remote Include Vulnerability
  1876. CubeCart <= 3.0.11 (oid) Remote Blind SQL Injection Exploit
  1877. IRSR <= 0.2 (_sysSessionPath) Remote File Include Vulnerability
  1878. WTcom <= 0.2.4-alpha (torrents.php) Remote SQL Injection Vulnerability
  1879. POWERGAP <= 2003 (s0x.php) Remote File Include Vulnerability
  1880. Mambo mambelfish Component <= 1.1 Remote File Include Vulnerability
  1881. Joomla com_jim Component <= 1.0.1 Remote File Include Vulnerability
  1882. MS Windows PNG File IHDR Block Denial of Service Exploit PoC (c)
  1883. Joomla Mosets Tree <= 1.0 Remote File Include Vulnerability
  1884. Mambo phpShop Component <= 1.2 RC2b File Include Vulnerability
  1885. Mambo a6mambocredits Component 1.0.0 File Include Vulnerability
  1886. Macromedia Flash 9 (IE Plugin) Remote Denial of Service Crash Exploit
  1887. Joomla Artlinks Component <= 1.0b4 Remote Include Vulnerability
  1888. MS Windows PNG File IHDR Block Denial of Service Exploit PoC (c) (2)
  1889. PHlyMail Lite <= 3.4.4 (mod.listmail.php) Remote Include Vulnerability
  1890. phpCodeGenie <= 3.0.2 (BEAUT_PATH) Remote File Include Vulnerability
  1891. Mambo MamboWiki Component <= 0.9.6 Remote Include Vulnerability
  1892. Joomla Link Directory Component <= 1.0.3 Remote Include Vulnerability
  1893. Joomla Kochsuite Component <= 0.9.4 Remote File Include Vulnerability
  1894. Sonium Enterprise Adressbook <= 0.2 (folder) Include Vulnerability
  1895. Mambo cropimage Component <= 1.0 Remote File Include Vulnerability
  1896. interact <= 2.2 (CONFIG[BASE_PATH]) Remote File Include Vulnerability
  1897. Joomla <=1.0.10 (poll component) Arbitrary Add Votes Exploit
  1898. Tutti Nova <= 1.6 (TNLIB_DIR) Remote File Include Vulnerability
  1899. Fantastic News <= 2.1.3 (script_path) Remote File Include Vulnerability
  1900. Mambo com_lurm_constructor Component <= 0.6b Include Vulnerability
  1901. MS Windows CanonicalizePathName() Remote Exploit (MS06-040)
  1902. ZZ:FlashChat <= 3.1 (adminlog) Remote File Incude Vulnerability
  1903. mambo com_babackup Component <= 1.1 File Include Vulnerability
  1904. NES Game and NES System <= c108122 File Include Vulnerabilities
  1905. SportsPHool <= 1.0 (mainnav) Remote File Include Vulnerability
  1906. SimpleBlog <= 2.0 (comments.asp) Remote SQL Injection Vulnerability
  1907. Shadows Rising RPG <= 0.0.5b Remote File Include Vulnerabilities
  1908. LBlog <= 1.05 (comments.asp) Remote SQL Injection Vulnerability
  1909. Simple Machines Forum <= 1.1 rc2 (lngfile) Remote Exploit (windows)
  1910. SimpleBlog <= 2.0 (comments.asp) Remote SQL Injection Exploit
  1911. WFTPD 3.23 (SIZE) Remote Buffer Overflow Exploit
  1912. Easy File Sharing FTP Server 2.0 (PASS) Remote Exploit (PoC)
  1913. PHProjekt <= 6.1 (path_pre) Multiple Remote File Include Vulnerabilities
  1914. PHlyMail Lite <= 3.4.4 (folderprops.php) Remote Include Vulnerability (2)
  1915. Apache < 1.3.37, 2.0.59, 2.2.3 (mod_rewrite) Remote Overflow PoC
  1916. MS Internet Explorer Multiple COM Object Color Property DoS
  1917. Empire CMS <= 3.7 (checklevel.php) Remote File Include Vulnerability
  1918. HPE <= 1.0 (HPEinc) Remote File Include Vulnerabilities (updated)
  1919. Solaris 10 sysinfo(2) Local Kernel Memory Disclosure Exploit
  1920. Solaris 8 / 9 (/usr/ucb/ps) Local Information Leak Exploit
  1921. Simple Machines Forum <= 1.1 rc2 Lock Topics Remote Exploit
  1922. Mozilla Firefox <= 1.5.0.6 (FTP Request) Remote Denial of Service Exploit
  1923. MDaemon POP3 Server < 9.06 (USER) Remote Buffer Overflow PoC
  1924. 2wire Modems/Routers CRLF Denial of Service Exploit
  1925. MercuryBoard <= 1.1.4 (User-Agent) Remote SQL Injection Exploit
  1926. phpBB All Topics Mod <= 1.5.0 (start) Remote SQL Injection Exploit
  1927. pSlash 0.7 (lvc_include_dir) Remote File Include Vulnerability
  1928. Integramod Portal <= 2.x (functions_portal.php) Remote Include Exploit
  1929. VistaBB <= 2.x (functions_mod_user.php) Remote Include Exploit
  1930. Wikepage Opus 10 <= 2006.2a (lng) Remote Command Execution Exploit
  1931. Phaos <= 0.9.2 basename() Remote Command Execution Exploit
  1932. phpCOIN 1.2.3 (session_set.php) Remote Include Vulnerability
  1933. eFiction < 2.0.7 Remote Admin Authentication Bypass Vulnerability
  1934. Integramod Portal <= 2.0 rc2 (phpbb_root_path) Remote File Include
  1935. CliServ Web Community <= 0.65 (cl_headers) Include Vulnerability
  1936. MDaemon POP3 Server < 9.06 (USER) Remote Heap Overflow Exploit
  1937. proManager <= 0.73 (note.php) Remote SQL Injection Vulnerability
  1938. AlberT-EasySite <= 1.0a5 (PSA_PATH) Remote File Include Exploit
  1939. iziContents <= RC6 GLOBALS[] Remote Code Execution Exploit
  1940. CMS Frogss <= 0.4 (podpis) Remote SQL Injection Exploit
  1941. Ay System CMS <= 2.6 (main.php) Remote File Include Vulnerability
  1942. VMware 5.5.1 (ActiveX) Local Buffer Overflow Exploit
  1943. MS Windows NetpIsRemote() Remote Overflow Exploit (MS06-040) (2)
  1944. Cybozu Products (id) Arbitrary File Retrieval Vulnerability
  1945. Cybuzu Garoon 2.1.0 Multiple Remote SQL Injection Vulnerabilities
  1946. e107 <= 0.75 (GLOBALS Overwrite) Remote Code Execution Exploit
  1947. Web3news <= 0.95 (PHPSECURITYADMIN_PATH) Remote Include Vuln
  1948. phpGroupWare <= 0.9.16.010 GLOBALS[] Remote Code Execution Exploit
  1949. PortailPHP mod_phpalbum <= 2.1.5 (chemin) Remote Include Vuln
  1950. MiniBill <= 1.22b config[plugin_dir] Remote File Inclusion Vulnerabilities
  1951. ExBB Italiano <= 0.2 exbb[home_path] Remote File Include Vulnerability
  1952. Streamripper <= 1.61.25 HTTP Header Parsing Buffer Overflow Exploit
  1953. phpECard <= 2.1.4 (functions.php) Remote File Include Vulnerability
  1954. IBM eGatherer <= 3.20.0284.0 (ActiveX) Remote Code Execution Exploit
  1955. Streamripper <= 1.61.25 HTTP Header Parsing Buffer Overflow Exploit 2
  1956. ZipCentral 4.01 ZIP File Handling Local Buffer Overflow Exploit
  1957. phpAtm <= 1.21 (include_location) Remote File Include Vulnerabilities
  1958. Lanifex DMO <= 2.3b (_incMgr) Remote File Include Exploit
  1959. Pheap CMS <= 1.1 (lpref) Remote File Include Exploit
  1960. YACS CMS <= 6.6.1 context[path_to_root] Remote File Include Vuln
  1961. TIBCO Rendezvous <= 7.4.11 (add router) Remote BOF Exploit
  1962. TIBCO Rendezvous <= 7.4.11 Password Extractor Local Exploit
  1963. MyBace Light (login_check.php) Remote File Vulnerability
  1964. PowerZip <= 7.06.3895 Long Filename Handling Buffer Overflow Exploit
  1965. icblogger v2 (YID) Remote SQL Injection Vulnerability
  1966. TikiWiki <= 1.9 Sirius (jhot.php) Remote Command Execution Exploit
  1967. Annuaire 1Two 2.2 Remote SQL Injection Exploit
  1968. Dyncms <= Release 6 (x_admindir) Remote File Include Vulnerability
  1969. PmWiki <= 2.1.19 (Zend_Hash_Del_Key_Or_Index) Remote Exploit
  1970. yappa-ng <= 2.3.1 (admin_modules) Remote File Include Vulnerability
  1971. FlashChat <= 4.5.7 (aedating4CMS.php) Remote File Include Vulnerability
  1972. Muratsoft Haber Portal 3.6 (tr) Remote SQL Injection Vulnerability
  1973. In-link <= 2.3.4 (ADODB_DIR) Remote File Include Vulnerabilities
  1974. SimpleBlog <= 2.3 (id) Remote SQL Injection Vulnerability
  1975. Tr Forum 2.0 SQL Injection / Bypass Security Restriction Exploit
  1976. pHNews <= alpha 1 (templates_dir) Remote Code Execution Exploit
  1977. PHP Proxima <= v.6 completepack Remote Code Execution Exploit
  1978. SoftBB 0.1 (cmd) Remote Command Execution Exploit
  1979. MySpeach <= 3.0.2 (my_ms[root]) Remote File Include Vulnerability
  1980. J. River Media Center 11.0.309 Remote Denial of Service PoC
  1981. dsock <= 1.3 (buf) Remote Buffer Overflow PoC
  1982. GrapAgenda 0.1 (page) Remote File Include Vulnerability
  1983. AnnonceV News Script <= 1.1 (page) Remote File Include Vulnerability
  1984. Zix Forum <= 1.12 (RepId) Remote SQL Injection Vulnerability
  1985. ACGV News <= 0.9.1 (PathNews) Remote File Inclusion Vulnerability
  1986. C-News <= 1.0.1 (path) Remote File Inclusion Vulnerability
  1987. Sponge News <= 2.2 (sndir) Remote File Include Vulnerability
  1988. PhpCommander <= 3.0 (upload) Remote Code Execution Exploit
  1989. phpBB Shadow Premod <= 2.7.1 Remote File Include Vulnerability
  1990. BinGo News <= 3.01 (bnrep) Remote File Include Vulnerability
  1991. phpFullAnnu <= 5.1 (repmod) Remote File Include Vulnerability
  1992. Beautifier 0.1 (Core.php) Remote File Include Vulnerability
  1993. Akarru <= 0.4.3.34 (bm_content) Remote File Include Vulnerability
  1994. PayProCart <= 1146078425 Multiple Remote File Include Vulnerabilities
  1995. SL_Site <= 1.0 (spaw_root) Remote File Include Vulnerability
  1996. Web Server Creator v0.1 (l) Remote Include Vulnerability
  1997. Fire Soft Board <= RC 3 (racine) Remote File Include Vulnerability
  1998. IBM Director < 5.10 (Redirect.bat) Directory Transversal Vulnerability
  1999. DokuWiki <= 2006-03-09b (dwpage.php) Remote Code Execution Exploit
  2000. DokuWiki <= 2006-03-09b (dwpage.php) System Disclosure Exploit
  2001. PhpNews 1.0 (Include) Remote File Include Vulnerabilities
  2002. ACGV News 0.9.1 (PathNews) Remote File Include Vulnerability
  2003. News Evolution 3.0.3 _NE[AbsPath] Remote File Include Vulnerabilities
  2004. WM-News <= 0.5 Multiple Remote File Include Vulnerabilities
  2005. PhotoKorn Gallery <= 1.52 (dir_path) Remote File Include Vulnerabilities
  2006. RaidenHTTPD 1.1.49 (SoftParserFileXml) Remote Code Execution Exploit
  2007. Somery <= 0.4.6 (skin_dir) Remote File Include Vulnerability
  2008. X11R6 <= 6.4 XKEYBOARD Local Buffer Overflow Exploit (solaris/sparc)
  2009. X11R6 <= 6.4 XKEYBOARD Local Buffer Overflow Exploit (solaris/x86)
  2010. X11R6 <= 6.4 XKEYBOARD Local Buffer Overflow Exploit (sco/x86)
  2011. CCleague Pro <= 1.0.1RC1 (Cookie) Remote Code Execution Exploit
  2012. Multithreaded TFTP <= 1.1 (Long Get Request) Denial of Service Exploit
  2013. MyABraCaDaWeb <= 1.0.3 (base) Remote File Include Vulnerabilities
  2014. Socketwiz Bookmarks <= 2.0 (root_dir) Remote File Include Exploit
  2015. Vivvo Article Manager <= 3.2 (id) Remote SQL Injection Vulnerability
  2016. openmovieeditor <= 0.0.20060901 (name) Local Buffer Overflow Exploit
  2017. Vivvo Article Manager <= 3.2 (classified_path) File Include Vulnerability
  2018. PUMA <= 1.0 RC 2 (config.php) Remote File Include Vulnerability
  2019. Open Bulletin Board <= 1.0.8 (root_path) File Include Vulnerability
  2020. mcGalleryPRO <= 2006 (path_to_folder) Remote Include Vulnerability
  2021. MiniPort@l <= 0.1.5 beta (skiny) Remote File Include Vulnerability
  2022. OPENi-CMS <= 1.0.1beta (config) Remote File Include Vulnerability
  2023. Mercur Mailserver 5.0 SP3 (IMAP) Remote Buffer Overflow Exploit (2)
  2024. WTools 0.0.1a (include_path) Remote File Include Vulnerability
  2025. PhpLinkExchange 1.0 (include/xss) Remote Vulnerabilities
  2026. phpBB <= 2.0.21 (Poison NULL Byte) Remote Exploit
  2027. phpBB XS <= 0.58 (functions.php) Remote File Include Vulnerability
  2028. p4CMS <= 1.05 (abs_pfad) Remote File Include Vulnerability
  2029. Popper <= v1.41-r2 (form) Remote File Include Vulnerability
  2030. webSPELL <= 4.01.01 Database Backup Download Vulnerability
  2031. Vitrax Pre-modded <= 1.0.6-r3 Remote File Include Vulnerability
  2032. Signkorn Guestbook <= 1.3 (dir_path) Remote File Include Vulnerability
  2033. MS Windows NetpIsRemote() Remote Overflow Exploit (MS06-040) (2k3)
  2034. Quicksilver Forums <= 1.2.1 (set) Remote File Include Vulnerability
  2035. phpunity.postcard (gallery_path) Remote File Include Vulnerability
  2036. MS Internet Explorer COM Object Remote Heap Overflow Exploit
  2037. Downstat <= 1.8 (art) Remote File Include Vulnerability
  2038. X11R6 <= 6.4 XKEYBOARD Local Buffer Overflow Exploit (solaris/sparc)
  2039. Shadowed Portal <= 5.599 (root) Remote File Include Vulnerability
  2040. TualBLOG 1.0 (icerikno) Remote SQL Injection Vulnerability
  2041. Magic News Pro <= 1.0.3 (script_path) Remote File Include Vulnerability
  2042. KnowledgeBuilder <= 2.2 (visEdit_root) Remote File Include Vulnerability
  2043. Newsscript <= 0.5 Remote and Local File Include Vulnerability
  2044. phpQuiz 0.1 (pagename) Remote File Include Vulnerability
  2045. Mambo com_serverstat Component <= 0.4.4 File Include Vulnerability
  2046. TeamCal Pro <= 2.8.001 (app_root) Remote file Include Vulnerability
  2047. PhotoPost <= 4.6 (PP_PATH) Remote File Include Vulnerability
  2048. Limbo CMS <= 1.0.4.2L (com_contact) Remote Code Execution Exploit
  2049. Haberx 1.02 <= 1.1 (tr) Remote SQL Injection Vulnerability
  2050. BolinOS <= 4.5.5 (gBRootPath) Remote File Include Vulnerability
  2051. PHP DocWriter <= 0.3 (script) Remote File Include Exploit
  2052. Site@School <= 2.4.02 Advisory / Remote File Upload Exploit
  2053. Coppermine Photo Gallery <= 1.2.2b (Nuke Addon) Include Vulnerability
  2054. phpQuiz <= 0.1.2 Remote SQL Injection / Code Execution Exploit
  2055. aeDating <= 4.1 dir[inc] Remote File Include Vulnerabilities
  2056. GNUTURK <= 2G (t_id) Remote SQL Injection Exploit
  2057. Mambo com_registration_detailed <= 4.1 Remote File Include
  2058. UNAK-CMS <= 1.5 (dirroot) Remote File Include Vulnerabilities
  2059. guanxiCRM Business Solution <= 0.9.1 Remote File Include Vulnerability
  2060. Zix Forum <= 1.12 (RepId) Remote SQL Injection Exploit
  2061. MobilePublisherPHP <= 1.5 RC2 Remote File Include Vulnerability
  2062. Q-Shop 3.5 (browse.asp) Remote SQL Injection Vulnerability
  2063. Techno Dreams FAQ Manager 1.0 Remote SQL Injection Vulnerability
  2064. Techno Dreams Articles & Papers 2.0 Remote SQL Injection Vulnerability
  2065. Charon Cart v3 (Review.asp) Remote SQL Injection Vulnerability
  2066. CMtextS <= 1.0 (users_logins/admin.txt) Credentials Disclosure Vuln
  2067. AlstraSoft E-Friends <= 4.85 Remote Command Execution Exploit
  2068. PNphpBB2 <= 1.2g (phpbb_root_path) Remote File Include Vulnerability
  2069. Exponent CMS <= 0.96.3 (view) Remote Command Execution Exploit
  2070. Pie Cart Pro (Home_Path) Remote File Include Vulnerability
  2071. Pie Cart Pro (Inc_Dir) Remote File Include Vulnerabilities
  2072. more.groupware <= 0.74 (new_calendarid) Remote SQL Injection Exploit
  2073. Tekman Portal 1.0 (tr) Remote SQL Injection Vulnerability
  2074. Simple Discussion Board 0.1.0 Remote File Include Vulnerability
  2075. MyReview 1.9.4 (email) Remote SQL Injection / Code Execution Exploit
  2076. Digital WebShop <= 1.128 Multiple Remote File Include Vulnerabilities
  2077. BCWB <= 0.99 (root_path) Remote File Include Vulnerability
  2078. MS Internet Explorer (VML) Remote Denial of Service Exploit PoC
  2079. WS_FTP LE 5.08 (PASV response) Remote Buffer Overflow Exploit
  2080. Php Blue Dragon CMS <= 2.9.1 (XSS/SQL) Code Execution Exploit
  2081. MS Internet Explorer (VML) Remote Buffer Overflow Exploit
  2082. Dr.Web Antivirus 4.33 (LHA long directory name) Local Overflow Exploit
  2083. AllMyGuests <= 0.4.1 (cfg_serverpath) Remote File Include Vulnerability
  2084. exV2 <= 2.0.4.3 (sort) Remote SQL Injection Exploit
  2085. pNews <= 1.1.0 (nbs) Remote File Include Vulnerability
  2086. MS Internet Explorer (VML) Remote Buffer Overflow Exploit (XP SP1)
  2087. PHPartenaire 1.0 (dix.php3) Remote File Include Vulnerability
  2088. phpQuestionnaire 3.12 (phpQRootDir) Remote File Include Vulnerability
  2089. ProgSys <= 0.156 (RR.php) Remote File Include Exploit
  2090. MS Windows (Windows Kernel) Privilege Escalation Exploit (MS06-049)
  2091. SolidState <= 0.4 Multiple Remote File Include Vulnerabilities
  2092. Wili-CMS <= 0.1.1 (include/xss/full path) Remote Vulnerabilities
  2093. exV2 <= 2.0.4.3 extract() Remote Command Execution Exploit
  2094. xweblog <= 2.1 (kategori.asp) Remote SQL Injection Vulnerability
  2095. Eskolar CMS 0.9.0.0 (index.php) Remote SQL Injection Exploit
  2096. e-Vision CMS 2.0 (all_users.php) Remote SQL Injection Exploit
  2097. Web-News <= 1.6.3 (template.php) Remote File Include Vulnerability
  2098. ZoomStats <= 1.0.2 (mysql.php) Remote File Include Vulnerability
  2099. Spidey Blog Script <= 1.5 (tr) Remote SQL Injection Exploit
  2100. Advaced-Clan-Script <= 3.4 (mcf.php) Remote File Include Vulnerability
  2101. iyzi Forum <= 1.0 Beta 3 (uye_ayrinti.asp) Remote SQL Injection
  2102. SyntaxCMS <= 1.3 (0004_init_urls.php) Remote File Include Vulnerability
  2103. MS Internet Explorer (VML) Remote Buffer Overflow Exploit (XP SP2)
  2104. MS Internet Explorer (VML) Remote Buffer Overflow Exploit (SP2) (pl)
  2105. Polaring <= 0.04.03 (general.php) Remote File Include Vulnerability
  2106. PBLang <= 4.66z (temppath) Remote File Include Vulnerability
  2107. Minerva <= 2.0.21 build 238a (phpbb_root_path) File Include Vulnerability
  2108. evoBB <= 0.3 (path) Remote File Include Vulnerability
  2109. BrudaNews <= 1.1 (admin/index.php) Remote File Include Vulnerability
  2110. BrudaGB <= 1.1 (admin/index.php) Remote File Include Vulnerability
  2111. faceStones personal <= 2.0.42 (fs_form_links.php) File Include Vuln
  2112. WEB//NEWS <= 1.4 (parser.php) Remote File Include Vulnerability
  2113. A-Blog V2 (menu.php) Remote File Include Vulnerability
  2114. paBugs <= 2.0 Beta 3 (class.mysql.php) Remote File Include Exploit
  2115. Kietu? <= 4.0.0b2 (hit.php) Remote File Include Vulnerability
  2116. Newswriter SW <= 1.42 (editfunc.inc.php) File Include Vulnerability
  2117. MS Internet Explorer WebViewFolderIcon setSlice() Overflow Exploit
  2118. Blog Pixel Motion 2.1.1 PHP Code Execution / Create Admin Exploit
  2119. A-Blog 2.0 Multiple Remote File Include Vulnerabilities
  2120. Newswriter SW 1.4.2 (main.inc.php) Remote File Include Exploit
  2121. OpenSSH <= 4.3 p1 (Duplicated Block) Remote Denial of Service Exploit
  2122. NaviCOPA Web Server 2.01 (GET) Remote Buffer Overflow Exploit
  2123. PPA Gallery <= 1.0 (functions.inc.php) Remote File Include Exploit
  2124. KGB 1.87 (Local Inclusion) Remote Code Execution Exploit
  2125. MS Internet Explorer WebViewFolderIcon setSlice() Exploit (html)
  2126. Les Visiteurs (Visitors) <= 2.0 (config.inc.php) File Include Vulnerability
  2127. TagIt! Tagboard <= 2.1.b b2 (index.php) Remote File Include Vulnerability
  2128. phpMyWebmin 1.0 (window.php) Remote File Include Vulnerability
  2129. phpSecurePages <= 0.28b (secure.php) Remote File Include Vulnerability
  2130. phpBB XS <= 0.58a (phpbb_root_path) Remote File Include Vulnerability
  2131. PowerPortal 1.3a (index.php) Remote File Include Vulnerability
  2132. VideoDB <= 2.2.1 (pdf.php) Remote File Include Exploit
  2133. PHP Krazy Image Hosting 0.7a (display.php) SQL Injection Exploit
  2134. UBB.threads <= 6.5.1.1 (doeditconfig.php) Code Execution Exploit
  2135. MS Internet Explorer WebViewFolderIcon setSlice() Exploit (pl)
  2136. Forum82 <= 2.5.2b (repertorylevel) Multiple File Include Vulnerabilities
  2137. MS Internet Explorer WebViewFolderIcon setSlice() Exploit (c)
  2138. VAMP Webmail <= 2.0beta1 (yesno.phtml) Remote Include Vulnerability
  2139. phpMyWebmin <= 1.0 (target) Remote File Include Vulnerabilities
  2140. Mac OS X <= 10.4.7 Mach Exception Handling Local Root Exploit
  2141. Mac OS X <= 10.4.7 Mach Exception Handling Local Exploit (10.3.x 0day)
  2142. BasiliX 1.1.1 (BSX_LIBDIR) Remote File Include Exploit
  2143. cPanel <= 10.8.x (cpwrap via mysqladmin) Local Root Exploit
  2144. McAfee ePo 3.5.0 / ProtectionPilot 1.1.0 (Source) Remote Exploit
  2145. BBaCE <= 3.5 (includes/functions.php) Remote File Include Vulnerability
  2146. JAF CMS <= 4.0 RC1 (forum.php) Remote File Include Exploit
  2147. phpMyProfiler <= 0.9.6 Remote File Include Vulnerability
  2148. Travelsized CMS <= 0.4 (frontpage.php) Remote File Include Exploit
  2149. Klinza Professional CMS <= 5.0.1 (show_hlp.php) File Include Exploit
  2150. Invision Gallery <= 2.0.7 ReadFile() & SQL Injection Exploit
  2151. JAF CMS <= 4.0 RC1 Multiple Remote File Include Vulnerabilities
  2152. phpBB Admin Topic Action Logging Mod <= 0.94b File Include Vuln
  2153. phpGreetz <= 0.99 (footer.php) Remote File Include Vulnerability
  2154. phpBB Static Topics <= 1.0 [phpbb_root_path] File Include Vulnerability
  2155. phpMyTeam <= 2.0 (smileys_dir) Remote File Include Vulnerability
  2156. PHP Classifieds 7.1 (index.php) Remote SQL Injection Vulnerability
  2157. phpBB Security Suite Mod 1.0.0 (logger_engine.php) Remote File Include
  2158. Dimension of phpBB <= 0.2.6 (phpbb_root_path) Remote File Includes
  2159. SHTTPD 1.34 (POST) Remote Buffer Overflow Exploit
  2160. phpBB User Viewed Posts Tracker <= 1.0 File Include Vulnerability
  2161. FreeForum <= 0.9.7 (forum.php) Remote File Include Vulnerability
  2162. Cahier de texte 2.0 (lire.php) Remote SQL Injection Exploit
  2163. phpBB Random User Registration Number 1.0 Mod Inclusion Vulnerability
  2164. 4images 1.7.x (search.php) Remote SQL Injection Exploit
  2165. PHPMyNews <= 1.4 (cfg_include_dir) Remote File Include Vulnerabilities
  2166. Ciamos CMS <= 0.9.6b (config.php) Remote File Include Exploit
  2167. Freenews <= 1.1 (moteur.php) Remote File Include Vulnerability
  2168. phpPC <= 1.03 RC1 (/lib/functions.inc.php) Remote File Include Exploit
  2169. Infecting Elf Binaries to Gain Local Root Exploit
  2170. docmint <= 2.0 (engine/require.php) Remote File Inclusion Exploit
  2171. OpenDock Easy Doc <=1.4 (doc_directory) File Include Vulnerabilities
  2172. OpenDock Easy Blog <=1.4 (doc_directory) File Include Vulnerabilities
  2173. WebYep <= 1.1.9 (webyep_sIncludePath) File Include Vulnerabilities
  2174. OpenDock Easy Gallery <= 1.4 (doc_directory) File Include Vulnerabilities
  2175. Flatnuke <= 2.5.8 file() Priv Escalation / Code Execution Exploit
  2176. Flatnuke 2.5.8 (userlang) Local Inclusion / Delete All Users Exploit
  2177. phpMyAgenda <= 3.1 (templates/header.php3) Local File Include Exploit
  2178. TribunaLibre 3.12 Beta (ftag.php) Remote File Include Vulnerability
  2179. registroTL (main.php) Remote File Include Vulnerability
  2180. compteur v2 (param_editor.php) Remote File Include Vulnerability
  2181. eboli (index.php) Remote File Include Vulnerability
  2182. JASmine <= 0.0.2 (index.php) Remote File Include Vulnerability
  2183. Foafgen <= 0.3 (redir.php) Local Source Disclosure Vulnerability
  2184. Album Photo Sans Nom <= 1.6 Remote Source Disclosure Vulnerability
  2185. vtiger CRM <= 4.2 (calpath) Multiple Remote File Include Vulnerabilities
  2186. Exhibit Engine <= 1.5 RC 4 (photo_comment.php) File Include Exploit
  2187. Claroline <= 1.8.0 rc1 (import.lib.php) Remote File Include Vulnerability
  2188. PHPLibrary <= 1.5.3 (grid3.lib.php) Remote File Include Vulnerability
  2189. Jinzora <= 2.1 (media.php) Remote File Include Vulnerability
  2190. ae2 (standart.inc.php) Remote File Include Vulnerability
  2191. n@board <= 3.1.9e (naboard_pnr.php) Remote File Include Vulnerability
  2192. Kmail <= 1.9.1 (IMG SRC) Remote Denial of Service Vulnerability
  2193. CommunityPortals 1.0 (import-archive.php) File Include Vulnerability
  2194. PHP News Reader <= 2.6.4 (phpbb.inc.php) Remote File Include Exploit
  2195. SH-News <= 3.1 (scriptpath) Multiple Remote File Include Vulnerabilities
  2196. Minichat v6 (ftag.php) Remote File Include Vulnerability
  2197. Softerra PHP Developer Library <= 1.5.3 File Include Vulnerabilities
  2198. Download-Engine <= 1.4.2 (spaw) Remote File Include Vulnerability
  2199. phpBB Journals System Mod 1.0.2 [RC2] Remote File Include Exploit
  2200. Microsoft Office 2003 PPT Local Buffer Overflow PoC
  2201. FreeBSD 5.4 / 6.0 (ptrace PT_LWPINFO) Local Denial of Service Exploit
  2202. phpBB Insert User Mod <= 0.1.2 Remote File Include Exploit
  2203. phpht Topsites (common.php) Remote File Include Vulnerability
  2204. Invision Gallery <= 2.0.7 ReadFile() & SQL Injection Exploit (linux)
  2205. miniBB keyword_replacer <= 1.0 (pathToFiles) File Include Vulnerability
  2206. AFGB GUESTBOOK 2.2 (Htmls) Remote File Include Vulnerabilities
  2207. BulletProof FTP Client 2.45 Remote Buffer Overflow Exploit (PoC)
  2208. phpBB Import Tools Mod <= 0.1.4 Remote File Include Vulnerability
  2209. phpBB Ajax Shoutbox <= 0.0.5 Remote File Include Vulnerability
  2210. phpBB SpamBlocker Mod <= 1.0.2 Remote File Include Exploit
  2211. Redaction System 1.0 (lang_prefix) Remote File Include Exploit
  2212. phpMyConferences <= 8.0.2 (menu.inc.php) File Include Vulnerability
  2213. Open Conference Systems <= 1.1.4 (fullpath) File Include Vulnerabilities
  2214. maluinfo <= 206.2.38 (bb_usage_stats.php) Remote File Include Exploit
  2215. phpBB PlusXL <= 2.0_272 (constants.php) Remote File Include Exploit
  2216. Genepi <= 1.6 (genepi.php) Remote File Include Vulnerability
  2217. Cdsagenda <= 4.2.9 (SendAlertEmail.php) File Include Vulnerability
  2218. FreeBSD <= 6.1-RELEASE-p10 (ftruncate) Local Denial of Service Exploit
  2219. FreeBSD <= 6.1-RELEASE-p10 (scheduler) Local Denial of Service Exploit
  2220. Solaris 10 (libnspr) Arbitrary File Creation Local Root Exploit
  2221. phpBB Amazonia Mod (zufallscodepart.php) Remote File Include Exploit
  2222. phpBB News Defilante Horizontale <= 4.1.1 Remote Include Exploit
  2223. phpBB lat2cyr Mod 1.0.1 (lat2cyr.php) Remote File Include Exploit
  2224. phpBB SpamOborona Mod <= 1.0b Remote File Include Exploit
  2225. phpBB RPG Events 1.0 functions_rpg_events Remote File Include Exploit
  2226. phpBB SearchIndexer Mod (archive_topic.php) Remote File Include Exploit
  2227. phpBB Prillian French Mod <= 0.8.0 Remote File Include Exploit
  2228. phpBB ACP User Registration Mod 1.0 File Inclusion Vulnerability
  2229. phpBB Security <= 1.0.1 (php_security.php) Remote File Include Exploit
  2230. YaBBSM 3.0.0 (Offline.php) Remote File Include Vulnerability
  2231. cPanel <= 10.8.x (cpwrap via mysqladmin) Local Root Exploit (php)
  2232. CentiPaid <= 1.4.2 centipaid_class.php Remote File Include Vulnerability
  2233. E-Uploader Pro <= 1.0 Image Upload with Code Execution Vulnerability
  2234. IncCMS Core <= 1.0.0 (settings.php) Remote File Include Vulnerability
  2235. Jinzora <= 2.6 (extras/mt.php) Remote File Include Vulnerability
  2236. CyberBrau <= 0.9.4 (forum/track.php) Remote File Include Vulnerability
  2237. CampSite <= 2.6.1 (g_documentRoot) Remote File Include Vulnerability
  2238. NuralStorm Webmail <= 0.98b (process.php) Remote Include Vulnerability
  2239. AROUNDMe <= 0.5.2 (templatePath) Remote File Include Vulnerability
  2240. phpBurningPortal <= 1.0.1 (lang_path) Remote File Include Exploit
  2241. phpBBFM <= 206-3-3 (phpbb_root_path) Remote File Include Exploit
  2242. Xcode OpenBase <= 9.1.5 Local Root Exploit (OSX)
  2243. DigitalHive <= 2.0 RC2 (base_include.php) Remote Include Vulnerability
  2244. Def-Blog <= 1.0.3 (comadd.php) Remote SQL Injection Vulnerability
  2245. webSPELL <= 4.01.01 (getsquad) Remote SQL Injection Exploit
  2246. Solaris 10 libnspr LD_PRELOAD Arbitrary File Creation Local Root Exploit
  2247. OpenDock FullCore <= 4.4 Remote File Include Vulnerabilities
  2248. Xfire <= 1.6.4 (Malicious Request) Remote Denial of Service Exploit (pl)
  2249. Osprey <= 1.0 GetRecord.php Remote File Include Vulnerability
  2250. Comdev One Admin 4.1 adminfoot.php Remote Code Execution Exploit
  2251. Simplog <= 0.9.3.1 comments.php Remote SQL Injection Exploit
  2252. Boonex Dolphin <= 5.2 index.php Remote Code Execution Exploit
  2253. Specimen Image Database (client.php) Remote File Include Vulnerability
  2254. P-News <= 1.16 Remote File Include Vulnerability
  2255. phpMyManga <= 0.8.1 (template.php) Multiple File Include Vulnerabilities
  2256. WoltLab Burning Book <= 1.1.2 Remote SQL Injection Exploit PoC
  2257. Xcode OpenBase <= 9.1.5 (root file create) Local Root Exploit (OSX)
  2258. NVIDIA Graphics Driver <= 8774 Local Buffer Overflow Exploit
  2259. ALiCE-CMS 0.1 (CONFIG[local_root]) Remote File Include Vulnerability
  2260. WSN Forum <= 1.3.4 (prestart.php) Remote Code Execution Exploit
  2261. PHPRecipeBook <= 2.35 (g_rb_basedir) Remote File Include Exploit
  2262. PHPmybibli <= 3.0.1 Multiple Remote File Inclusion Vulnerabilities
  2263. Clam AntiVirus <= 0.88.4 CHM Chunk Name Length DoS PoC
  2264. Clam AntiVirus <= 0.88.4 (rebuildpe) Remote Heap Overflow PoC
  2265. Easynews <= 4.4.1 (admin.php) Authentication Bypass Vulnerability
  2266. Brim <= 1.2.1 (renderer) Multiple Remote File Include Vulnerabilities
  2267. phpPowerCards 2.10 (txt.inc.php) Remote Code Execution Vulnerability
  2268. Php AMX 0.90 (plugins/main.php) Remote File Include Vulnerability
  2269. Active Bulletin Board <= 1.1b2 Remote User Pass Change Exploit
  2270. PHP-Post <= 1.01 (template) Remote Code Execution Exploit
  2271. YapBB <= 1.2 Beta2 (yapbb_session.php) Remote File Include Exploit
  2272. LoCal Calendar 1.1 (lcUser.php) Remote File Include Vulnerability
  2273. EPNadmin <= 0.7 (constantes.inc.php) Remote File Include Exploit
  2274. Asterisk <= 1.0.12 / 1.2.12.1 (chan_skinny) Remote Heap Overflow (PoC)
  2275. PH Pexplorer <= 0.24 (explorer_load_lang.php) Local Include Exploit
  2276. pandaBB (displayCategory) Remote File Include Vulnerabilities
  2277. Segue CMS <= 1.5.8 (themesdir) Remote File Include Vulnerability
  2278. Ipswitch IMail Server 2006 / 8.x (RCPT) Remote Stack Overflow Exploit
  2279. Power Phlogger <= 2.0.9 (config.inc.php3) File Include Vulnerability
  2280. Lou Portail 1.4.1 (admin_module.php) Remote File Include Vulnerability
  2281. WGCC <= 0.5.6b (quiz.php) Remote SQL Injection Vulnerability
  2282. RSSonate (xml2rss.php) Remote File Include Exploit
  2283. CASTOR <= 1.1.1 (lib/rs.php) Remote File Include Exploit
  2284. kawf <= 1.0 (main.php) Remote File Include Vulnerability
  2285. Virtual Law Office (phpc_root_path) Remote File Include Vulnerabilities
  2286. Open Meetings Filing Application Remote File Include Vulnerabilities
  2287. Trawler Web CMS <= 1.8.1 Multiple Remote File Include Vulnerabilities
  2288. PGOSD (misc/function.php3) Remote File Include Vulnerability
  2289. MambWeather Mambo Module <= 1.8.1 Remote Include Vulnerability
  2290. Net_DNS <= 0.3 (DNS/RR.php) Remote File Include Vulnerability
  2291. SpeedBerg <= 1.2beta1 (SPEEDBERG_PATH) File Include Vulnerabilities
  2292. JaxUltraBB <= 2.0 (delete.php) Remote Auto Deface Exploit
  2293. PHP-Nuke <= 7.9 (Encyclopedia) Remote SQL Injection Exploit
  2294. EZ-Ticket 0.0.1 (common.php) Remote File Include Vulnerability
  2295. Fully Modded phpBB <= 2021.4.40 Multiple File Include Vulnerabilities
  2296. OTSCMS <= 2.1.3 Multiple Remote File Include Vulnerabilities
  2297. SourceForge <= 1.0.4 (database.php) Remote File Include Exploit
  2298. WiClear <= 0.10 (path) Remote File Include Vulnerabilities
  2299. QK SMTP <= 3.01 (RCPT TO) Remote Denial of Service Exploit
  2300. MDweb <= 1.3 (chemin_appli) Remote File Include Vulnerabilities
  2301. Jaws <= 0.5.2 (include/JawsDB.php) Remote File Include Vulnerability
  2302. JumbaCMS 0.0.1 (includes/functions.php) Remote File Include Exploit
  2303. MS Internet Explorer (ADODB Execute) Denial of Service PoC
  2304. InteliEditor 1.2.x (lib.editor.inc.php) Remote File Include Vulnerability
  2305. Ascended Guestbook <= 1.0.0 (embedded.php) File Include Exploit
  2306. CMS Faethon <= 2.0 (mainpath) Remote File Include Exploit
  2307. HP-UX 11i (swpackage) Stack Overflow Local Root Exploit
  2308. HP-UX 11i (swmodify) Stack Overflow Local Root Exploit
  2309. HP-UX 11i (swask) Format String Local Root Exploit
  2310. HP-UX 11i (LIBC TZ enviroment variable) Local Root Exploit
  2311. AEP SmartGate 4.3b (GET) Arbitrary File Download Exploit
  2312. Cisco VPN 3000 Concentrator <= 4.1.7, 4.7.2 (FTP) Remote Exploit
  2313. FreeBSD 6.1 (/dev/crypto) Local Kernel Denial of Service Exploit
  2314. UeberProject <= 1.0 (login/secure.php) Remote File Include Vulnerability
  2315. Solaris 10 libnspr constructor Local Root Exploit
  2316. Berty Forum <= 1.4 (index.php) Remote Blind SQL Injection Exploit
  2317. JaxUltraBB <= 2.0 Topic Reply Command Execution Exploit
  2318. Discuz! 5.0.0 GBK SQL Injection / Admin Credentials Disclosure Exploit
  2319. ArticleBeach Script <= 2.0 (index.php) Remote File Inclusion Vulnerability
  2320. TextPattern <= 1.19 (publish.php) Remote File Inclusion Vulnerability
  2321. Imageview <= 5 (Cookie/index.php) Remote Local Include Exploit
  2322. CommentIT (PathToComment) Remote File Include Vulnerabilities
  2323. QK SMTP <= 3.01 (RCPT TO) Remote Buffer Overflow Exploit
  2324. RevilloC MailServer 1.x (RCPT TO) Remote Denial of Service Exploit
  2325. MiniHttpServer Web Forum & File Sharing Server 4.0 Add User Exploit
  2326. Php League <= 0.81 (config.php) Remote File Include Exploit
  2327. MPCS <= 1.0 (path) Remote File Include Vulnerabilities
  2328. ask_rave <= 0.9 PR (end.php footfile) Remote File Include Vulnerability
  2329. miniBB <= 2.0.2 (bb_func_txt.php) Remote File Include Exploit
  2330. MiniBill <= 20061010 (menu_builder.php) File Include Vulnerability
  2331. MS Internet Explorer 7 Popup Address Bar Spoofing Weakness
  2332. Light Blog Remote Multiple Vulnerabilities Exploit
  2333. N/X WCMS <= 4.1 (nxheader.inc.php) Remote File Include Exploit
  2334. Coppermine Photo Gallery 1.4.9 Remote SQL Injection Vulnerability
  2335. Php League 0.82 (classement.php) Remote SQL Injection Exploit
  2336. Hosting Controller <= 6.1 Hotfix 3.2 Remote Unauthenticated Vulns
  2337. PhpShop Core <= 0.9.0 RC1 (PS_BASE) File Include Vulnerabilities
  2338. PHPMyDesk 1.0beta (viewticket.php) Local Include Exploit
  2339. freePBX 2.1.3 (upgrade.php) Remote File Include Vulnerability
  2340. mp3SDS 3.0 (Core/core.inc.php) Remote File Include Vulnerability
  2341. Electronic Engineering Tool (EE TOOL) <= 0.4.1 File Include Vulnerability
  2342. MiraksGalerie <= 2.62 (pcltar.lib.php) Remote File Include Exploit
  2343. Free Image Hosting <= 1.0 (forgot_pass.php) File Include Exploit
  2344. Free File Hosting <= 1.1 (forgot_pass.php) File Include Exploit
  2345. Novell eDirectory 8.8 NDS Server Remote Stack Overflow Exploit
  2346. MS Windows NAT Helper Components (ipnathlp.dll) Remote DoS Exploit
  2347. Simple Website Software 0.99 (common.php) File Include Vulnerability
  2348. MySource CMS <= 2.16.2 (init_mysource.php) Remote File Include Exploit
  2349. PHPEasyData Pro 2.2.2 (index.php) Remote SQL Injection Exploit
  2350. Kaspersky Internet Security 6.0.0.303 IOCTL KLICK Local Exploit
  2351. Netref 4 (cat_for_aff.php) Source Code Disclosure Exploit
  2352. Faq Administrator 2.1 (faq_reply.php) Remote File Include Vulnerability
  2353. PHPMyRing <= 4.2.1 (cherche.php) Remote SQL Injection Vulnerability
  2354. PrivateWire Gateway 3.7 Remote Buffer Overflow Exploit (win32)
  2355. QnECMS <= 2.5.6 (adminfolderpath) Remote File Inclusion Exploit
  2356. MS Windows NAT Helper Components Remote DoS Exploit (perl)
  2357. Techno Dreams Announcement (key) Remote SQL Injection Vulnerability
  2358. Techno Dreams Guestbook 1.0 (key) Remote SQL Injection Vulnerability
  2359. Nitrotech 0.0.3a (includes/common.php) Remote Code Execution Exploit
  2360. phpBB Spider Friendly Module <= 1.3.10 File Include Exploit
  2361. E Annu 1.0 Login Bypass SQL Injection Exploit
  2362. phpProfiles 2.1 Beta Multiple Remote File Include Vulnerabilities
  2363. Novell eDirectory <= 9.0 DHost Remote Buffer Overflow Exploit
  2364. Easy File Sharing Web Server 4 Remote Information Stealer Exploit
  2365. P-Book <= 1.17 (pb_lang) Remote File Inclusion Vulnerabilities
  2366. GEPI <= 1.4.0 gestion/savebackup.php Remote File Include Vulnerability
  2367. PwsPHP <= 1.1 (themes/fin.php) Remote File Include Vulnerablity
  2368. T.G.S. CMS <= 0.1.7 (logout.php) Remote SQL Injection Exploit
  2369. Mozilla Firefox <= 1.5.0.7/ 2.0 (createRange) Remote DoS Exploit
  2370. Invision Power Board <= 2.1.7 (Debug) Remote Password Change Exploit
  2371. Innovate Portal <= 2.0 (acp.php) Remote Code Execution Exploit
  2372. 2BGal 3.0 (admin/configuration.inc.php) Local Inclusion Exploit
  2373. EFS Easy Address Book Web Server <= 1.2 Remote File Stream Exploit
  2374. Apple Airport 802.11 Probe Response Kernel Memory Corruption PoC
  2375. TikiWiki 1.9.5 Sirius (sort_mode) Information Disclosure Vulnerability
  2376. Lithium CMS <= 4.04c (classes/index.php) Local File Include Exploit
  2377. Article System 0.6 (volume.php) Remote File Include Vulnerability
  2378. FreeWebshop.org Script <= 2.2.2 Multiple Remote Vulnerabilities
  2379. MODx CMS <= 0.9.2.1 (FCKeditor) Remote File Include Vulnerability
  2380. PostNuke <= 0.763 (PNSV lang) Remote Code Execution Exploit
  2381. Nullsoft Winamp <= 5.3 (Ultravox-Max-Msg) Heap Overflow DoS PoC
  2382. Creasito E-Commerce Content Manager (admin) Authentication Bypass
  2383. Ariadne <= 2.4 store_config[code] Remote File Include Vulnerabilities
  2384. e107 <= 0.75 (e107language_e107cookie) Local File Include Exploit
  2385. MDPro <= 1.0.76 (Cookie: PNSVlang) Local File Include Exploit
  2386. Drake CMS < 0.2.3 ALPHA rev.916Remote File Inclusion Vulnerability
  2387. PHPKIT <= 1.6.1R2 (search_user) Remote SQL Injection Exploit
  2388. XM Easy Personal FTP Server <= 5.2.1 Remote Denial of Service Exploit
  2389. Essentia Web Server 2.15 (GET Request) Remote DoS Exploit
  2390. phpDynaSite <= 3.2.2 (racine) Remote File Include Vulnerabilities
  2391. SazCart <= 1.5 (cart.php) Remote File Include Vulnerability
  2392. Quick.Cms.Lite <= 0.3 (Cookie sLanguage) Local File Include Exploit
  2393. PHP Classifieds <= 7.1 (detail.php) Remote SQL Injection Exploit
  2394. Ultimate PHP Board <= 2.0 (header_simple.php) File Include Exploit
  2395. Webdrivers Simple Forum (message_details.php) SQL Injection Exploit
  2396. Soholaunch Pro <= 4.9 r36 Remote File Inclusion Vulnerabilities
  2397. Cyberfolio <= 2.0 RC1 (av) Remote File Include Vulnerabilities
  2398. Agora 1.4 RC1 (MysqlfinderAdmin.php) Remote File Include Vulnerability
  2399. OpenEMR <= 2.8.1 (srcdir) Multiple Remote File Inclusion Vulnerabilities
  2400. Article Script <= 1.6.3 (rss.php) Remote SQL Injection Vulnerability
  2401. Omni-NFS Server 5.2 (nfsd.exe) Remote Stack Overflow Exploit (meta)
  2402. OpenLDAP 2.2.29 Remote Denial of Service Exploit (meta)
  2403. iPrimal Forums (admin/index.php) Change User Password Exploit
  2404. PHPGiggle 12.08 (CFG_PHPGIGGLE_ROOT) File Include Vulnerability
  2405. iWare Pro <= 5.0.4 (chat_panel.php) Remote Code Execution Vulnerability
  2406. WFTPD Pro Server 3.23.1.1 (APPE) Remote Buffer Overflow PoC
  2407. WarFTPd 1.82.00-RC11 Remote Denial of Service Exploit
  2408. PHPAdventure 1.1 (ad_main.php) Remote File Include Vulnerability
  2409. Xcode OpenBase <= 10.0.0 (symlink) Local Root Exploit (OSX)
  2410. Xcode OpenBase <= 10.0.0 (unsafe system call) Local Root Exploit (OSX)
  2411. iPrimal Forums (admin/index.php) Remote File Include Vulnerability
  2412. vBlog / C12 0.1 (cfgProgDir) Remote File Include Vulnerabilities
  2413. IrayoBlog 0.2.4 (inc/irayofuncs.php) Remote File Include Vulnerability
  2414. DodosMail <= 2.0.1 (dodosmail.php) Remote File Include Vulnerability
  2415. MS Internet Explorer 6/7 (XML Core Services) Remote Code Exec Exploit
  2416. LetterIt v2 (inc/session.php) Remote File Include Vulnerability
  2417. gtcatalog <= 0.9.1 (index.php) Remote File Include Vulnerability
  2418. AspPired2Poll <= 1.0 (MoreInfo.asp) Remote SQL Injection Exploit
  2419. MyAlbum <= 3.02 (language.inc.php) Remote File Inclusion Vulnerability
  2420. phpManta <= 1.0.2 (view-sourcecode.php) Local File Include Exploit
  2421. MS Internet Explorer 6/7 (XML Core Services) Remote Code Exec Exploit 2
  2422. EncapsCMS 0.3.6 (core/core.php) Remote File Include Vulnerability
  2423. BrewBlogger 1.3.1 (printLog.php) Remote SQL Injection Vulnerability
  2424. WORK System E-Commerce <= 3.0.1 Remote Include Vulnerability
  2425. MS Internet Explorer 6/7 (XML Core Services) Remote Code Exec Exploit 3
  2426. NuCommunity 1.0 (cl_CatListing.asp) Remote SQL Injection Exploit
  2427. NuRems 1.0 (propertysdetails.asp) Remote SQL Injection Exploit
  2428. NuStore 1.0 (Products.asp) Remote SQL Injection Vulnerability
  2429. NuSchool 1.0 (CampusNewsDetails.asp) Remote SQL Injection Exploit
  2430. phpwcms <= 1.2.6 (Cookie: wcs_user_lang) Local File Include Exploit
  2431. PHPWind <= 5.0.1 (AdminUser) Remote Blind SQL Injection Exploit
  2432. Rama CMS <= 0.68 (Cookie: lang) Local File Include Exploit
  2433. Munch Pro 1.0 (switch.asp) Remote SQL Injection Exploit
  2434. ASPPortal <= 4.0.0 (default1.asp) Remote SQL Injection Exploit
  2435. UStore 1.0 (detail.asp) Remote SQL Injection Vulnerability
  2436. USupport 1.0 (detail.asp) Remote SQL Injection Vulnerability
  2437. UPublisher 1.0 (viewarticle.asp) Remote SQL Injection Vulnerability
  2438. CMSmelborp Beta (user_standard.php) Remote File Include Exploit
  2439. StoryStream 4.0 (baseDir) Remote File Include Vulnerabilities
  2440. ContentNow 1.30 (Local/Upload/Delete) Multiple Remote Vulnerabilities
  2441. Quick.Cart <= 2.0 (actions_client/gallery.php) Local File Include Exploit
  2442. Broadcom Wireless Driver Probe Response SSID Overflow Exploit (meta)
  2443. D-Link DWL-G132 Wireless Driver Beacon Rates Overflow Exploit (meta)
  2444. Online Event Registration <= 2.0 (save_profile.asp) Pass Change Exploit
  2445. Estate Agent Manager <= v1.3 (default.asp) Login Bypass Vulnerability
  2446. Property Pro 1.0 (vir_Login.asp) Remote Login Bypass Vulnerability
  2447. Phpjobscheduler 3.0 (installed_config_file) File Include Vulnerabilities
  2448. ContentNow 1.30 (upload/xss) Multiple Remote Vulnerabilities
  2449. Aigaion <= 1.2.1 (DIR) Remote File Include Vulnerabilities
  2450. phpPeanuts 1.3 Beta (Inspect.php) Remote File Include Vulnerability
  2451. ASP Smiley 1.0 (default.asp) Login ByPass SQL Injection Vulnerability
  2452. NetVIOS <= 2.0 (page.asp) Remote SQL Injection Vulnerability
  2453. BlogMe 3.0 (XSS/Auth Bypass) Multiple Remote Vulnerabilities
  2454. Hpecs Shopping Cart Remote Login Bypass Vulnerability
  2455. WinZIP <= 10.0.7245 (FileView ActiveX Control) Stack Overflow PoC
  2456. Links 1.00pre12 (smbclient) Remote Code Execution Exploit
  2457. WinZIP <= 10.0.7245 (FileView ActiveX) Remote Buffer Overflow Exploit
  2458. TorrentFlux <= 2.2 (Create/Exec/Delete) Multiple Remote Vulnerabilities
  2459. UniversalFTP 1.0.50 (MKD) Remote Denial of Service Exploit
  2460. Kerio WebSTAR 5.4.2 (libucache.dylib) Privilege Escalation Exploit (OSX)
  2461. MS Windows NetpManageIPCConnect Stack Overflow Exploit (MS06-070)
  2462. Etomite CMS <= 0.6.1.2 (manager/index.php) Local File Include Exploit
  2463. HTTP Upload Tool (download.php) Information Disclosure Vulnerability
  2464. mg.applanix <= 1.3.1 (apx_root_path) Remote File Include Vulnerabilities
  2465. DoSePa 1.0.4 (textview.php) Information Disclosure Vulnerability
  2466. miniCWB <= 1.0.0 (contact.php) Local File Include Exploit
  2467. Powies pForum <= 1.29a (editpoll.php) SQL Injection Vulnerability
  2468. Powies MatchMaker 4.05 (matchdetail.php) SQL Injection Vulnerability
  2469. mxBB Module calsnails 1.06 (mx_common.php) File Include Vulnerability
  2470. MS Windows Wkssvc NetrJoinDomain2 Stack Overflow Exploit (MS06-070)
  2471. MosReporter Joomla Component 0.9.3 Remote File Include Exploit
  2472. Dicshunary 0.1a (check_status.php) Remote File Include Vulnerability
  2473. MS Windows NetpManageIPCConnect Stack Overflow Exploit (py)
  2474. Oxygen <= 1.1.3 (O2PHP Bulletin Board) Remote SQL Injection Exploit
  2475. phpWebThings <= 1.5.2 (editor.php) Remote File Include Vulnerability
  2476. PHP Easy Downloader <= 1.5 (save.php) Remote Code Execution Exploit
  2477. ASPNuke <= 0.80 (register.asp) Remote SQL Injection Vulnerability
  2478. PHPQuickGallery <= 1.9 (textFile) Remote File Include Vulnerability
  2479. XMPlay 3.3.0.4 (M3U Filename) Local Buffer Overflow Exploit
  2480. Photo Cart 3.9 (adminprint.php) Remote File Include Vulnerability
  2481. e-Ark 1.0 (src/ark_inc.php) Remote File Include Vulnerability
  2482. LDU <= 8.x (avatarselect id) Remote SQL Injection Vulnerability
  2483. Seditio <= 1.10 (avatarselect id) Remote SQL Injection Vulnerability
  2484. XMPlay 3.3.0.4 (PLS) Local/Remote Buffer Overflow Exploit
  2485. ContentNow 1.39 (pageid) Remote SQL Injection Exploit
  2486. aBitWhizzy (abitwhizzy.php) Information Disclosure Vulnerability
  2487. XMPlay 3.3.0.4 (ASX Filename) Local Buffer Overflow Exploit
  2488. Pearl Forums 2.4 Multiple Remote File Include Vulnerabilities
  2489. phpPC <= 1.04 Multiple Remote File Inclusion Vulnerabilities
  2490. fipsCMS <= 4.5 (index.asp) Remote SQL Injection Exploit
  2491. fipsGallery <= 1.5 (index1.asp) Remote SQL Injection Vulnerability
  2492. fipsForum <= 2.6 (default2.asp) Remote SQL Injection Vulnerability
  2493. a-ConMan <= 3.2b (common.inc.php) Remote File Inclusion Vulnerability
  2494. Messagerie Locale (centre.php) Remote File Inclusion Vulnerability
  2495. Site News (centre.php) Remote File Inclusion Vulnerability
  2496. Recipes Complete Website 1.1.14 Remote SQL Injection Vulnerabilities
  2497. Wallpaper Complete Website 1.0.09 Remote SQL Injection Vulnerabilities
  2498. JiRos FAQ Manager 1.0 (index.asp) Remote SQL Injection Vulnerability
  2499. Oracle <= 9i / 10g (read/write/execute) Exploitation Suite
  2500. HSRS 1.0 (addcode.php) Remote File Include Vulnerability
  2501. OWLLib 1.0 (OWLMemoryProperty.php) Remote File Include Vulnerability
  2502. PEGames (index.php) Remote File Include Vulnerability
  2503. Woltlab Burning Board Lite 1.0.2 decode_cookie() SQL Injection Exploit
  2504. Woltlab Burning Board Lite 1.0.2 Blind SQL Injection Exploit
  2505. PHP-Nuke NukeAI Module 3b (util.php) Remote File Include Exploit
  2506. Cahier de texte 2.0 (Database Backup/Source Disclosure) Remote Exploit
  2507. Liberum Help Desk <= 0.97.3 (details.asp) SQL Injection Vulnerability
  2508. Sisfo Kampus <= 0.8 Remote File Inclusion / Download Vulnerabilities
  2509. Basic Forum <= 1.1 (edit.asp) Remote SQL Injection Vulnerability
  2510. ASP-Nuke Community <= 1.5 Cookie Privilege Escalation Vulnerability
  2511. Exhibit Engine <= 1.22 (styles.php) Remote File Include Vulnerability
  2512. Hacks List phpBB Mod <= 1.21 Remote SQL Injection Vulnerability
  2513. com_flyspray Mambo Com. <= 1.0.1 Remote File Disclosure Vulnerability
  2514. SimpleBlog <= 2.3 (admin/edit.asp) Remote SQL Injection Vulnerability
  2515. AT-TFTP <= 1.9 (Long Filename) Remote Buffer Overflow PoC
  2516. 3Com TFTP Service <= 2.0.1 (Long Transporting Mode) Overflow PoC
  2517. ProFTPD 1.3.0 (sreplace) Remote Stack Overflow Exploit (meta)
  2518. PHP <= 4.4.4/5.1.6 htmlentities() Local Buffer Overflow PoC
  2519. Evince Document Viewer (DocumentMedia) Buffer Overflow Exploit
  2520. Discuz! 4.x SQL Injection / Admin Credentials Disclosure Exploit
  2521. Quintessential Player <= 4.50.1.82 (Playlist) Denial of Service PoC
  2522. Songbird Media Player <= 0.2 Format String Denial of Service PoC
  2523. P-News v2 (user.txt) Remote Password Disclosure Vulnerability
  2524. Kubix <= 0.7 Multiple Remote Vulnerabilities Exploit
  2525. b2evolution 1.8.5 - 1.9b (import-mt.php) Remote File Include Vulnerability
  2526. 3Com TFTP Service <= 2.0.1 (Long Transporting Mode) Overflow Exploit
  2527. Acer LunchApp.APlunch (ActiveX Control) Command Execution Exploit
  2528. PHPGraphy 0.9.12 Privilege Escalation / Commands Execution Exploit
  2529. Serendipity <= 1.0.3 (comment.php) Local File Include Exploit
  2530. VUPlayer <= 2.44 (M3U UNC Name) Buffer Overflow Exploit (meta)
  2531. LDU <= 8.x (polls.php) Remote SQL Injection Vulnerability
  2532. VUPlayer <= 2.44 (M3U UNC Name) Buffer Overflow Exploit (c)
  2533. AtomixMP3 <= 2.3 Malformed M3U Buffer Overflow Exploit
  2534. NetBSD FTPd / tnftpd Remote Stack Overflow PoC
  2535. deV!Lz Clanportal [DZCP] <= 1.3.6 Arbitrary File Upload Vulnerability
  2536. Invision Community Blog Mod 1.2.4 SQL Injection Vulnerability
  2537. ContentServ 4.x (admin/FileServer.php) File Disclosure Vulnerability
  2538. MS Windows spoolss GetPrinterData() Remote DoS Exploit (0day)
  2539. BlazeVideo HDTV Player <= 2.1 Malformed PLF Buffer Overflow PoC
  2540. Ultimate HelpDesk (XSS/Local File Disclosure) Vulnerabilities
  2541. BBS E-Market Professional (Path Disclosure/Include) Multiple Vulns
  2542. Simple File Manager 0.24a Multiple Remote Vulnerabilities
  2543. awrate.com Message Board 1.0 (search.php) Remote Include Vulnerability
  2544. mxBB Module mx_tinies <= 1.3.0 Remote File Include Vulnerability
  2545. PHP Upload Center 2.0 (activate.php) File Include Vulnerabilities
  2546. AT-TFTP <= 1.9 (Long Filename) Remote Buffer Overflow Exploit
  2547. Envolution <= 1.1.0 (PNSVlang) Remote Code Execution Exploit
  2548. QuickCart 2.0 (categories.php) Local File Inclusion Exploit
  2549. php-revista <= 1.1.2 (adodb) Multiple Remote File Include Vulnerabilities
  2550. cutenews aj-fork <= 167f (cutepath) Remote File Include Vulnerability
  2551. F-Prot Antivirus 4.6.6 (ACE) Denial of Service Exploit
  2552. F-Prot Antivirus 4.6.6 (CHM) Heap Overflow Exploit PoC
  2553. Phorum <= 3.2.11 (common.php) Remote File Include Vulnerability
  2554. J-OWAMP Web Interface <= 2.1b (link) Remote File Include Exploit
  2555. Tucows Client Code Suite (CSS) <= 1.2.1015 File Include Vulnerability
  2556. CM68 News <= 12.02.06 (addpth) Remote File Inclusion Vulnerability
  2557. ThinkEdit 1.9.2 (render.php) Remote File Inclusion Vulnerability
  2558. paFileDB 3.5.2/3.5.3 Remote Login Bypass SQL Injection Vulnerability
  2559. MS Windows DNS Resolution Remote Denial of Service PoC (MS06-041)
  2560. Filezilla FTP Server 0.9.20b/0.9.21 (STOR) Denial of Service Exploit
  2561. TorrentFlux 2.2 (downloaddetails.php) Local File Disclosure Exploit
  2562. TorrentFlux 2.2 (maketorrent.php) Remote Command Execution Exploit
  2563. mxBB Module Profile CP 0.91c Remote File Include Vulnerability
  2564. Gizzar <= 03162002 (index.php) Remote File Include Vulnerability
  2565. Fantastic News 2.1.4 (news.php) Remote SQL Injection Exploit
  2566. SpotLight CRM 1.0 (login.asp) Remote SQL Injection Vulnerability
  2567. Request For Travel 1.0 (product) Remote SQL Injection Vulnerability
  2568. HR Assist <= 1.05 (vdateUsr.asp) Remote Login ByPass Vulnerability
  2569. Sophos Antivirus CHM File Heap Overflow PoC
  2570. Sophos Antivirus CHM Chunk Name Length Memory Corruption PoC
  2571. Sophos / Trend Micro Antivirus RAR File Denial of Service PoC
  2572. phpAlbum <= 0.4.1 Beta 6 (language.php) Local File Inclusion Exploit
  2573. Filezilla FTP Server <= 0.9.21 (LIST/NLST) Denial of Service Exploit
  2574. D-Link DWL-2000AP 2.11 (ARP Flood) Remote Denial of Service Exploit
  2575. Golden FTP server 1.92 (USER/PASS) Heap Overflow PoC
  2576. mxBB Module ErrorDocs 1.0 (common.php) Remote Inclusion Vulnerability
  2577. mxBB Module Activity Games 0.92 Remote File Include Vulnerability
  2578. Barman 0.0.1r3 (interface.php) Remote File Include Vulnerability
  2579. mxBB Module mx_modsdb 1.0 Remote File Include Vulnerability
  2580. Microsoft Word Document (malformed pointer) Proof of Concept
  2581. BLOG:CMS <= 4.1.3 (NP_UserSharing.php) Remote Inclusion Vulnerability
  2582. mxBB Module kb_mods <= 2.0.2 Remote Inclusion Vulnerabilities
  2583. mxBB Module newssuite 1.03 Remote File Inclusion Exploit
  2584. Crob FTP Server 3.6.1 build 263 (LIST/NLST) Denial of Service Exploit
  2585. PhpMyCms <= 0.3 (basic.inc.php) Remote File Include Vulnerability
  2586. ProFTPD <= 1.3.0a (mod_ctrls support) Local Buffer Overflow PoC
  2587. MS Internet Explorer 7 (DLL-load hijacking) Code Execution Exploit PoC
  2588. yaplap <= 0.6.1b (ldap.php) Remote File Include Exploit
  2589. AR Memberscript (usercp_menu.php) Remote File Include Vulnerability
  2590. Kerio MailServer 6.2.2 preauth Remote Denial of Service PoC
  2591. OpenLDAP <= 2.4.3 (KBIND) Remote Buffer Overflow Exploit
  2592. Sambar FTP Server 6.4 (SIZE) Remote Denial of Service Exploit
  2593. Windows Media Player 9/10 (MID File) Denial Of Service Exploit
  2594. GNU InetUtils ftpd 1.4.2 (ld.so.preload) Remote Root Exploit
  2595. extreme-fusion <= 4.02 Remote Code Execution Exploit
  2596. Bandwebsite <= 1.5 (Login) Remote Add Admin Exploit
  2597. mxBB Module WebLinks <= 2.05 Remote Inclusion Vulnerability
  2598. mxBB Module Charts <= 1.0.0 Remote File Inclusion Vulnerability
  2599. mxBB Module Meeting <= 1.1.2 Remote FileInclusion Vulnerability
  2600. Star FTP Server 1.10 (RETR) Remote Denial of Service Exploit
  2601. Azucar CMS <= 1.3 (admin/index_sitios.php) File Inclusion Vulnerability
  2602. VerliAdmin <= 0.3 (index.php) Remote File Include Exploit
  2603. Uploader & Downloader 3.0 (id_user) Remote SQL Injection Vulnerability
  2604. MS Office Outlook Recipient Control (ole32.dll) Denial of Service Exploit
  2605. wget <= 1.10.2 (Unchecked Boundary Condition) Denial of Service Exploit
  2606. RateMe <= 1.3.2 (main.inc.php) Remote File Include Vulnerability
  2607. Intel 2200BG 802.11 Beacon frame Kernel Memory Corruption Exploit
  2608. DeepBurner 1.8.0 .dbr File Parsing Buffer Overflow Exploit
  2609. Oracle <= 9i / 10g (extproc) Local/Remote Command Execution Exploit
  2610. WinFtp Server 2.0.2 (PASV) Remote Denial of Service Exploit
  2611. PHP-Update <= 2.7 extract() Auth Bypass / Shell Inject Exploit
  2612. KDE 3.5 (libkhtml) <= 4.2.0 / Unhandled HTML Parse Exception Exploit
  2613. Paristemi 0.8.3b (buycd.php) Remote File Include Vulnerability
  2614. phpProfiles <= 3.1.2b Multiple Remote File Include Vulnerabilities
  2615. PHPFanBase 2.x (protection.php) Remote File Include Vulnerability
  2616. cwmVote 1.0 (archive.php) Remote File Include Vulnerability
  2617. Oracle <= 9i / 10g File System Access via utl_file Exploit
  2618. cwmCounter 5.1.1 (statistic.php) Remote File Include Exploit
  2619. Hewlett-Packard FTP Print Server <= 2.4.5 Buffer Overflow (PoC)
  2620. Burak Yilmaz Download Portal (down.asp) SQL Injection Vulnerability
  2621. cwmExplorer 1.0 (show_file) Source Code Disclosure Vulnerability
  2622. Valdersoft Shopping Cart 3.0 Multiple Remote File Include Vulnerabilities
  2623. TextSend <= 1.5 (config/sender.php) Remote File Include Vulnerability
  2624. RealPlayer 10.5 (ActiveX Control) Denial of Service Exploit
  2625. MS Windows (MessageBox) Memory Corruption Local Denial of Service
  2626. PHP Advanced Transfer Manager <= 1.30 Source Code Disclosure Exploit
  2627. Php/Mysql Site Builder 0.0.2 (htm2php.php) File Disclosure Vulnerability
  2628. Newxooper-php 0.9.1 (mapage.php) Remote File Include Vulnerability
  2629. PgmReloaded <= 0.8.5 Multiple Remote File Include Vulnerabilities
  2630. DREAM FTP Server 1.0.2 (PORT) Remote Denial of Service Exploit
  2631. PowerClan <= 1.14a (footer.inc.php) Remote File Include Vulnerability
  2632. Http explorer Web Server 1.02 Directory Transversal Vulnerability
  2633. Ixprim CMS 1.2 Remote Blind SQL Injection Exploit
  2634. inertianews 0.02b (inertianews_main.php) Remote Include Vulnerability
  2635. MKPortal M1.1.1 (Urlobox) Cross Site Request Forgery Vulnerability
  2636. XM Easy Personal FTP Server 5.2.1 (USER) Format String DoS Exploit
  2637. KISGB <= 5.1.1 (authenticate.php) Remote File Include Vulnerability
  2638. EternalMart Guestbook 1.10 (admin/auth.php) Remote Inclusion Vuln
  2639. Open Newsletter <= 2.5 Multiple Remote Vulnerabilities Exploit (update)
  2640. 3editor CMS <= 0.42 (index.php) Local File Include Vulnerability
  2641. b2 Blog <= 0.5 (b2verifauth.php) Remote File Include Vulnerability
  2642. SH-News 0.93 (misc.php) Remote File Include Exploit
  2643. acFTP FTP Server 1.5 (REST/PBSZ) Remote Denial of Service Exploit
  2644. Enthrallweb ePhotos 1.0 (subLevel2.asp) SQL Injection Vulnerability
  2645. Enthrallweb eHomes 1.0 Multiple (SQL/XSS) Vulnerabilities
  2646. Enthrallweb eJobs (newsdetail.asp) Remote SQL Injection Exploit
  2647. Enthrallweb eCars 1.0 (types.asp) Remote SQL Injection Vulnerability
  2648. Enthrallweb emates 1.0 (newsdetail.asp) Remote SQL Injection Exploit
  2649. Enthrallweb ePages (actualpic.asp) Remote SQL Injection Exploit
  2650. Dragon Business Directory <= 3.01.12 (ID) SQL Injection Vulnerability
  2651. Calendar MX BASIC <= 1.0.2 (ID) Remote SQL Injection Vulnerability
  2652. Enthrallweb eClassifieds 1.0 Remote User Pass Change Exploit
  2653. Enthrallweb eCoupons 1.0(myprofile.asp) Remote Pass Change Exploit
  2654. Enthrallweb eNews 1.0 Remote User Pass Change Exploit
  2655. File Upload Manager <= 1.0.6 (detail.asp) Remote SQL Injection Exploit
  2656. Newsletter MX <= 1.0.2 (ID) Remote SQL Injection Exploit
  2657. Ultimate PHP Board <= 2.0b1 (chat/login.php) Code Execution Exploit
  2658. Pagetool CMS <= 1.07 (pt_upload.php) Remote File Include Vulnerability
  2659. Ananda Real Estate <= 3.4 (agent) Remote SQL Injection Vulnerability
  2660. HLStats <=1.34 (hlstats.php) Remote SQL Injection Exploit
  2661. Jinzora <= 2.7 (include_path) Multiple Remote File Include Vulnerabilities
  2662. eNdonesia 8.4 (mod.php/friend.php/admin.php) Multiple Vulnerabilities
  2663. MTCMS <= 2.0 (admin/admin_settings.php) Remote File Include Exploit
  2664. PhpbbXtra 2.0 (phpbb_root_path) Remote File Include Vulnerability
  2665. Irokez CMS <= 0.7.1 Multiple Remote File Include Vulnerabilities
  2666. Ciberia Content Federator <= 1.0.1 (path) Remote File Include Exploit
  2667. Shadowed Portal Module Character Roster (mod_root) RFI Vulnerability
  2668. myphpNuke Module My_eGallery 2.5.6 (basepath) RFI Vulnerability
  2669. Fishyshoop <= 0.930b Remote Add Administrator Account Exploit
  2670. Okul Merkezi Portal 1.0 (ataturk.php) Remote File Include Vulnerability
  2671. MS Windows NetrWkstaUserEnum() Remote DoS Exploit (0day)
  2672. logahead UNU edition 1.0 Remote Upload File / Code Execution Vuln
  2673. The Classified Ad System 1.0 (main) Remote SQL Injection Exploit
  2674. Cahier de texte 2.2 Bypass General Access Protection Exploit
  2675. PHP-Update <= 2.7 Multiple Remote Vulnerabilities Exploit
  2676. mxBB Module pafiledb <= 2.0.1b Remote File Include Vulnerability
  2677. myPHPCalendar 10192000b (cal_dir) Remote File Include Vulnerabilities
  2678. PHP-Update <= 2.7 (admin/uploads.php) Remote Code Execution Exploit
  2679. ProFTPD <= 1.2.9 rc2 (ASCII File) Remote Root Exploit
  2680. MS Windows ASN.1 Remote Exploit (MS04-007)
  2681. KsIRC 1.3.12 (PRIVMSG) Remote Buffer Overflow PoC
  2682. MS Windows NtRaiseHardError Csrss.exe Memory Disclosure Exploit
  2683. Yrch 1.0 (plug.inc.php path variable) Remote File Include Exploit
  2684. Bubla <= 1.0.0rc2 (bu/process.php) Remote File Include Vulnerability
  2685. Fantastic News <= 2.1.4 Multiple Remote File Include Vulnerabilities
  2686. Limbo CMS Module event 1.0 Remote File Include Vulnerability
  2687. Cacti <= 0.8.6i cmd.php popen() Remote Injection Exploit
  2688. RealPlayer 10.5 ierpplug.dll Internet Explorer Denial of Service Exploit
  2689. aFAQ 1.0 (faqDsp.asp catcode) Remote SQL Injection Vulnerability
  2690. WYWO - InOut Board 1.0 Multiple Remote Vulnerabilities
  2691. phpBB2 Plus 1.53 (Acronym Mod) Remote SQL Injection Vulnerability
  2692. AIDeX Mini-WebServer <= 1.1 Remote Denial of Service Crash Exploit
  2693. ASPTicker 1.0 (admin.asp) Login ByPass SQL Injection Vulnerability
  2694. WebText <= 0.4.5.2 Remote Code Execution Exploit
  2695. Durian Web Application Server 3.02 Remote Buffer Overflow Exploit
  2696. Durian Web Application Server 3.02 Denial of Service Exploit
  2697. EasyNews PRO News Publishing 4.0 Password Disclosure Vulnerability
  2698. Adobe Reader 7.0.8.0 AcroPDF.dll Internet Explorer Denial of Service
  2699. Macromedia Flash 8 (Flash8b.ocx) Internet Explorer Denial of Service
  2700. Macromedia Shockwave 10 (SwDir.dll) Internet Explorer Denial of Service
  2701. x-news 1.1 (users.txt) Remote Password Disclosure Vulnerability
  2702. Voodoo chat 1.0RC1b (users.dat) Password Disclosure Vulnerability
  2703. Cacti 0.8.6i (copy_cacti_user.php) SQL Injection Create Admin Exploit
  2704. SoftArtisans SAFileUp 5.0.14 (viewsrc.asp) Script Source Disclosure
  2705. FreeStyle Wiki <= 3.6.2 (user.dat) Password Disclosure Vulnerability
  2706. Click N Print Coupons <= V2006.01 (key) Remote SQL Injection Exploit
  2707. IMGallery <= 2.5 Create Uploader Script Exploit
  2708. Enigma 2 Coppermine Bridge (boarddir) Remote File Include Vulnerability
  2709. Enigma 2 WordPress Bridge (boarddir) Remote File Include Vulnerability
  2710. MS Windows NtRaiseHardError Csrss.exe-winsrv.dll Double Free
  2711. Vz (Adp) Forum 2.0.3 Remote Password Disclosure Vulnerablity
  2712. P-News 1.16 / 1.17 (user.dat) Remote Password Disclosure Vulnerablity
  2713. WinZIP 10.0 FileView ActiveX Controls Remote Overflow Exploit
  2714. Formbankserver 1.9 (Name) Remote Denial of Service Exploit
  2715. MDForum <= 2.0.1 (PNSVlang) Remote Code Execution Exploit
  2716. Rediff Bol Downloader (ActiveX Control) Execute Local File Exploit
  2717. Bubla <= 0.9.2 (bu_dir) Multiple Remote File Include Vulnerabilities
  2718. RBlog 1.0 (admin.mdb) Remote Password Disclosure Vulnerablity
  2719. Vizayn Haber (haberdetay.asp id variable) SQL Injection Vulnerability
  2720. autoDealer <= 2.0 (detail.asp iPro) Remote SQL Injection Vulnerability
  2721. Formbankserver 1.9 (Name) Directory Transversal Vulnerability
  2722. Apple Quicktime (rtsp URL Handler) Stack Buffer Overflow Exploit
  2723. WWWBoard 2.0 (passwd.txt) Remote Password Disclosure Vulnerability
  2724. newsCMSlite (newsCMS.mdb) Remote Password Disclosure Vulnerability
  2725. QK SMTP <= 3.01 (RCPT TO) Remote Buffer Overflow Exploit (pl)
  2726. TaskTracker <= 1.5 (Customize.asp) Remote Add Administrator Exploit
  2727. VLC Media Player 0.8.6 (udp://) Format String Exploit PoC (ppc)
  2728. VLC Media Player 0.8.6 (udp://) Format String Exploit (x86)
  2729. Microsoft Vista (NtRaiseHardError) Privilege Escalation Exploit
  2730. Apple Quicktime (rtsp URL Handler) Buffer Overflow Exploit (win2k)
  2731. LocazoList <= 2.01a beta5 (subcatID) Remote SQL Injection Vulnerability
  2732. E-SMARTCART 1.0 (product_id) Remote SQL Injection Vulnerability
  2733. VerliAdmin <= 0.3 (language.php) Local File Inclusion Exploit
  2734. Simple Web Content Management System Remote SQL Injection Exploit
  2735. Apple Quicktime <= 7.1.3 (HREFTrack) Cross-Zone Scripting Exploit
  2736. Acunetix WVS <= 4.0 20060717 HTTP Sniffer Component Remote DoS
  2737. Aratix <= 0.2.2b11 (inc/init.inc.php) Remote File Include Vulnerability
  2738. iLife iPhoto Photocast (XML title) Remote Format String PoC
  2739. DigiRez <= 3.4 (book_id) Remote SQL Injection Exploit
  2740. iG Calendar 1.0 (user.php id variable) Remote SQL Injection Vulnerability
  2741. iG Shop 1.0 (eval/sql injection) Multiple Remote Vulnerabilities
  2742. Adobe Acrobat Reader Plugin <= 7.0.x (acroreader) XSS Vulnerability
  2743. Coppermine Photo Gallery <= 1.4.10 Remote SQL Injection Exploit
  2744. CA BrightStor ARCserve (tapeeng.exe) Remote Buffer Overflow Exploit
  2745. Mac OS X 10.4.8 DiskManagement BOM Local Privilege Escalation Exploit
  2746. Mac OS X 10.4.8 DiskManagement BOM (cron) Privilege Escalation Exploit
  2747. QUOTE&ORDERING SYSTEM 1.0 (ordernum) Multiple Vulnerabilities
  2748. NUNE News Script 2.0pre2 Multiple Remote File Include Vulnerabilities
  2749. L2J Statistik Script <= 0.09 (index.php page) Local File Include Exploit
  2750. NaviCOPA Web Server 2.01 (GET) Remote Buffer Overflow Exploit meta
  2751. AllMyGuests <= 0.3.0 (AMG_serverpath) Remote Inclusion Vulnerabilities
  2752. OpenBSD 3.x - 4.0 vga_ioctl() Local Root Exploit
  2753. Wordpress 2.0.5 Trackback UTF-7 Remote SQL Injection Exploit
  2754. AllMyLinks <= 0.5.0 (index.php) Remote File Include Vulnerability
  2755. AllMyVisitors 0.4.0 (index.php) Remote File Inclusion Vulnerability
  2756. OmniWeb 5.5.1 Javascript alert() Remote Format String PoC
  2757. Berlios GPSD <= 2.7 Remote Format String Exploit (meta)
  2758. Magic Photo Storage Website _config[site_path] File Include Vuln
  2759. Opera <= 9.10 JPG Image DHT Marker Heap Corruption Vulnerabilities
  2760. Application Enhancer (APE) 2.0.2 Local Privilege Escalation Exploit
  2761. @lex Guestbook <= 4.0.2 Remote Command Execution Exploit
  2762. PPC Search Engine 1.61 (INC) Multiple Remote File Include Vulnerabilities
  2763. MOTIONBORG Web Real Estate <= 2.1 SQL Injection Vulnerability
  2764. uniForum <= v4 (wbsearch.aspx) Remote SQL Injection Vulnerability
  2765. FileCOPA FTP Server <= 1.01 (LIST) Remote BoF Exploit (meta)
  2766. Axiom Photo/News Gallery 0.8.6 Remote File Include Exploit
  2767. Wordpress <= 2.0.6 wp-trackback.php Remote SQL Injection Exploit
  2768. Mac OS X 10.4.8 Apple Finder DMG Volume Name Memory Corruption PoC
  2769. MS Windows Explorer (WMF) CreateBrushIndirect DoS Exploit
  2770. eIQnetworks Network Security Analyzer Null Pointer Dereference Exploit
  2771. Jshop Server 1.3 (fieldValidation.php) Remote File Include Vulnerability
  2772. Article System 0.1 (INCLUDE_DIR) Remote File Include Vulnerabilities
  2773. VP-ASP Shopping Cart 6.09 (SQL/XSS) Multiple Remote Vulnerabilities
  2774. sNews <= 1.5.30 Remote Reset Admin Pass / Command Exec Exploit
  2775. LunarPoll 1.0 (show.php PollDir) Remote File Include Vulnerability
  2776. TLM CMS <= 1.1 (i-accueil.php chemin) Remote File Include Vulnerability
  2777. VLC Media Player 0.8.6a Unspecified Denial of Service Exploit
  2778. Mint Haber Sistemi 2.7 (duyuru.asp id) Remote SQL Injection Vulnerability
  2779. Poplar Gedcom Viewer <= 2.0 (common.php) Remote Inclusion Vuln
  2780. DigiAffiliate <= 1.4 (visu_user.asp id) Remote SQL Injection Exploit
  2781. FdWeB Espace Membre <= 2.01 (path) Remote File Include Exploit
  2782. ThWboard <= 3.0b2.84-php5 SQL Injection / Code Execution Exploit
  2783. JV2 Folder Gallery 3.0 (download.php) Remote File Disclosure Exploit
  2784. WFTPD Pro Server <= 3.25 SITE ADMN Remote Denial of Service Exploit
  2785. Sami FTP Server 2.0.2 (USER/PASS) Remote Buffer Overflow PoC
  2786. BolinTech DreamFTP (USER) Remote Buffer Overflow PoC
  2787. Mac OS X 10.4.8 AppleTalk ATPsndrsp() Heap Buffer Overflow PoC
  2788. Kaspersky Antivirus 6.0 Local Privilege Escalation Exploit
  2789. TFTPDWIN 0.4.2 Remote Buffer Overflow Exploit
  2790. Mercur Messaging 2005 IMAP Remote Buffer Overflow Exploit
  2791. KGB <= 1.9 (sesskglogadmin.php) Local File Include Exploit
  2792. Okul Web Otomasyon Sistemi 4.0.1 Remote SQL Injection Vulnerability
  2793. MS Internet Explorer VML Remote Buffer Overflow Exploit (MS07-004)
  2794. Twilight Webserver 1.3.3.0 (GET) Remote Denial of Service Exploit
  2795. Colloquy <= 2.1.3545 (INVITE) Format String Denial of Service Exploit
  2796. Sami FTP Server 2.0.2 (USER/PASS) Remote Buffer Overflow Exploit
  2797. MGB 0.5.4.5 (email.php id variable) Remote SQL Injection Exploit
  2798. CCRP Folder Treeview Control (ccrpftv6.ocx) IE Denial of Service Exploit
  2799. Woltlab Burning Board <= 1.0.2, 2.3.6 search.php SQL Injection Exploit
  2800. Woltlab Burning Board <= 1.0.2, 2.3.6 search.php SQL Injection Exploit 2
  2801. PHPMyphorum 1.5a (mep/frame.php) Remote File Include Vulnerability
  2802. Woltlab Burning Board <= 1.0.2, 2.3.6 search.php SQL Injection Exploit 3
  2803. Uberghey 0.3.1 (frontpage.php) Remote File Include Vulnerability
  2804. MS Internet Explorer VML Download and Execute Exploit (MS07-004)
  2805. Microsoft Help Workshop 4.03.0002 (.CNT) Buffer Overflow Exploit
  2806. Oreon <= 1.2.3 RC4 (lang/index.php file) Remote InclusionVulnerability
  2807. Mac OS X 10.4.8 SLP Daemon Service Registration Buffer Overflow PoC
  2808. ComVironment 4.0 (grab_globals.lib.php) Remote File Include Vulnerability
  2809. phpBP <= RC3 (2.204) (sql/cmd) Remote Code Execution Exploit
  2810. GNU/Linux mbse-bbs <= 0.70.0 Local Buffer Overflow Exploit
  2811. BrowseDialog Class (ccrpbds6.dll) Internet Explorer Denial of Service
  2812. Rumpus 5.1 Local Privilege Escalation / Remote FTP LIST PoC Exploit
  2813. DivX Player 6.4.1 (DivXBrowserPlugin npdivx32.dll) IE DoS
  2814. Intel Centrino ipw2200BG Wireless Driver Remote Overflow PoC
  2815. Microsoft Help Workshop 4.03.0002 (.HPJ) Buffer Overflow Exploit
  2816. Transmit.app <= 3.5.5 ftps:// URL Handler Heap Buffer Overflow PoC
  2817. PhpSherpa (include/config.inc.php) Remote File Include Vulnerability
  2818. Bradabra <= 2.0.5 (include/includes.php) Remote Inclusion Vulnerability
  2819. Neon Labs Website <= 3.2 (nl.php g_strRootDir) Remote Inclusion Vuln
  2820. phpIndexPage <= 1.0.1 (config.php) Remote Inclusion Exploit
  2821. MySpeach <= 2.1b (up.php) Remote Inclusion Vulnerability
  2822. Apple iChat 3.1.6 v441 aim:// URL Handler Format String Exploit PoC
  2823. Mac OS X 10.4.x Kernel shared_region_map_file_np() Memory Corruption
  2824. Sun Microsystems Java GIF File Parsing Memory Corruption Exploit
  2825. WebChat 0.77 (defines.php WEBCHATPATH) Remote File Include Vuln
  2826. 3Com TFTP Service <= 2.0.1 Remote Buffer Overflow Exploit (meta)
  2827. Mafia Scum Tools 2.0.0 (index.php gen) Remote File Include Exploit
  2828. webSPELL 4.01.02 (gallery.php) Remote Blind SQL Injection Exploit
  2829. Mac OS X 10.4.8 System Preferences Local Privilege Escalation Exploit
  2830. Upload Service 1.0 (top.php maindir) Remote File Inclusion Vulnerability
  2831. VisoHotlink 1.01 functions.visohotlink.php Remote File Include Exploit
  2832. Microsoft Visual C++ (.RC Resource Files) Local Buffer Overflow Exploit
  2833. Oracle 10g SYS.DBMS_CDC_IMPDP.BUMP_SEQUENCE PL/SQL Injection
  2834. Oracle 10g SYS.KUPW$WORKER.MAIN PL/SQL Injection Exploit
  2835. Oracle 10g SYS.KUPV$FT.ATTACH_JOB PL/SQL Injection Exploit
  2836. Vote-Pro 4.0 (poll_frame.php poll_id) Remote Code Execution Exploit
  2837. Mac OS X 10.4.8 (UserNotificationCenter) Privilege Escalation Exploit
  2838. Sami HTTP Server 2.0.1 (HTTP 404 - Object not found) DoS Exploit
  2839. BBClone 0.31 (selectlang.php) Remote File Inclusion Vulnerability
  2840. phpXD <= 0.3 (path) Remote File Inclusion Vulnerability
  2841. RPW 1.0.2 (config.php sql_language) Remote File Inclusion Vulnerability
  2842. ASP EDGE <= 1.2b (user.asp) Remote SQL Injection Vulnerability
  2843. ASP NEWS <= v3 (news_detail.asp) Remote SQL Injection Vulnerability
  2844. PA168 Chipset IP Phones Weak Session Management Exploit
  2845. MS Windows Explorer (AVI) Unspecified Denial of Service Exploit
  2846. vhostadmin 0.1 (MODULES_DIR) Remote File Inclusion Vulnerability
  2847. Xero Portal (phpbb_root_path) Remote File Include Vulnerablity
  2848. Microsoft Excel Malformed Palette Record DoS PoC (MS07-002)
  2849. makit Newsposter Script v3 Remote SQL Injection Vulnerability
  2850. GPS CMS 1.2 (print.asp) Remote SQL Injection Vulnerability
  2851. Aztek Forum 4.0 Multiple Vulnerabilities Exploit
  2852. Forum Livre 1.0 (SQL Injection / XSS) Multiple Remote Vulnerabilities
  2853. Virtual Path 1.0 (vp/configure.php) Remote File Include Vulnerability
  2854. Apple CFNetwork HTTP Response Denial of Service Exploit (rb code)
  2855. MyPHPcommander 2.0 (package.php) Remote File Include Vulnerability
  2856. AINS 0.02b (ains_main.php ains_path) Remote File Include Vulnerability
  2857. FdScript <= 1.3.2 (download.php) Remote File Disclosure Vulnerability
  2858. Citrix Metaframe Presentation Server Print Provider Buffer Overflow PoC
  2859. nsGalPHP (includes/config.inc.php racineTBS) Remote Inclusion Vuln
  2860. ACGVclick <= 0.2.0 (path) Remote File Include Vulnerability
  2861. Drunken:Golem Portal 0.5.1 Alpha 2 Remote File Include Exploit
  2862. ACGVannu <= 1.3 (index2.php) Remote User Pass Change Vulnerability
  2863. Xt-Stats v.2.4.0.b3 (server_base_dir) Remote File Include Vulnerability
  2864. chernobiLe Portal 1.0 (default.asp) Remote SQL Injection Vulnerability
  2865. CA BrightStor ARCserve (msgeng.exe) Remote Heap Overflow Exploit
  2866. phpMyReports <= 3.0.11 (lib_head.php) Remote File Include Vulnerability
  2867. Trend Micro VirusWall 3.81 (vscan/VSAPI) Local Buffer Overflow Exploit
  2868. EclipseBB 0.5.0 Lite (phpbb_root_path) Remote File Include Exploit
  2869. Foro Domus 2.10 (phpbb_root_path) Remote File Include Exploit
  2870. xNews 1.3 (xNews.php) Remote SQL Injection Vulnerability
  2871. PhP Generic library & framework (include_path) RFI Vulnerability
  2872. CA BrightStor ARCserve (msgeng.exe) Remote Heap Overflow Exploit 2
  2873. Mac OS X 10.4.8 (8L2127) crashdump Privilege Escalation Exploit
  2874. Multiple Printer Providers (spooler service) Privilege Escalation Exploit
  2875. GuppY <= 4.5.16 Remote Commands Execution Exploit
  2876. Webfwlog <= 0.92 (debug.php) Remote File Disclosure Vulnerability
  2877. CVSTrac 2.0.0 Post-Attack Database Resurrection DoS Exploit
  2878. Intel 2200BG 802.11 disassociation packet Kernel Memory Corruption
  2879. Galeria Zdjec <= 3.0 (zd_numer.php) Local File Include Exploit
  2880. PHPFootball 1.6 (show.php) Remote Database Disclosure Vulnerability
  2881. CascadianFAQ <= 4.1 (index.php) Remote SQL Injection Vulnerability
  2882. MyNews <= 4.2.2 (themefunc.php) Remote File Include Vulnerability
  2883. Dev-C++ 4.9.9.2 CPP File Parsing Local Stack Overflow PoC
  2884. Apple iChat Bonjour 3.1.6.441 Multiple Denial of Service Exploit
  2885. phpBB2 MODificat <= 0.2.0 (functions.php) Remote Include Vulnerability
  2886. Michelles L2J Dropcalc <= v4 Remote SQL Injection Vulnerability
  2887. Fullaspsite Asp Hosting Sitesi (tr) SQL Injection Vulnerability
  2888. ExoPHPDesk <= 1.2.1 (faq.php) Remote SQL Injection Vulnerability
  2889. Phpbb Tweaked <= 3 (phpbb_root_path) Remote Inclusion Vulnerability
  2890. Hailboards 1.2.0 (phpbb_root_path) Remote File Include Vulnerability
  2891. Cadre PHP Framework Remote File Include Vulnerability
  2892. PHPMyRing <= 4.1.3b (fichier) Remote File Include Vulnerability
  2893. Extcalendar <= 2 (profile.php) Remote User Pass Change Exploit
  2894. JV2 Folder Gallery <= 3.0 Remote File Include Vulnerability
  2895. Hunkaray Duyuru Scripti (tr) Remote SQL Injection Exploit
  2896. Omegaboard <= 1.0beta4 (functions.php) Remote File Include Vuln
  2897. Cerulean Portal System 0.7b Remote File Include Vulnerability
  2898. SIPS <= 0.3.1 (box.inc.php) Remote File Include Vulnerability
  2899. phpEventMan 1.0.2 (level) Remote File Include Vulnerabilities
  2900. Epistemon 1.0 (common.php inc_path) Remote File Include Vulnerability
  2901. CA BrightStor ARCserve 11.5.2.0 (catirpc.dll) RPC Server DoS Exploit
  2902. WebBuilder 2.0 (StageLoader.php) Remote File Include Vulnerability
  2903. Portail Web Php <= 2.5.1 (includes.php) Remote File Inclusion Vuln
  2904. CoD2: DreamStats <= 4.2 (index.php) Remote File Include Vulnerability
  2905. EQdkp <= 1.3.1 (Referer Spoof) Remote Database Backup Vulnerability
  2906. Flipper Poll 1.1.0 (poll.php root_path) Remote File Include Vulnerability
  2907. Remotesoft .NET Explorer 2.0.1 Local Stack Overflow PoC
  2908. F3Site <= 2.1 Remote Code Execution Exploit
  2909. dB Masters Curium CMS <= 1.03 (c_id) Remote SQL Injection Vulnerability
  2910. Chicken of the VNC 2.0 (NULL-pointer) Remote Denial of Service Exploit
  2911. phpBB ezBoard converter 0.2 (ezconvert_dir) Remote File Include Exploit
  2912. phpBB++ Build 100 (phpbb_root_path) Remote File Include Exploit
  2913. Microsoft Word 2000 Unspecified Code Execution Exploit (0day)
  2914. Photo Galerie Standard <= 1.1 (view.php) SQL Injection Vulnerability
  2915. Woltlab Burning Board Lite <= 1.0.2pl3e (pms.php) SQL Injection Exploit
  2916. KDPics <= 1.11 (exif.php lib_path) Remote File Include Vulnerability
  2917. Imail 8.10-8.12 (RCPT TO) Remote Buffer Overflow Exploit
  2918. Imail 8.10-8.12 (RCPT TO) Remote Buffer Overflow Exploit (meta)
  2919. Flip 2.01 final (previewtheme.php inc_path) RFI Vulnerability
  2920. Geeklog 2 (BaseView.php) Remote File Inclusion Vulnerability
  2921. SMA-DB <= 0.3.9 (settings.php) Remote File Inclusion Vulnerability
  2922. Oracle 9i/10g DBMS_EXPORT_EXTENSION SQL Injection Exploit
  2923. Categories hierarchy phpBB Mod 2.1.2 (phpbb_root_path) RFI Exploit
  2924. GGCMS <= 1.1.0 RC1 Remote Code Execution Exploit
  2925. MS Internet Explorer 6 (mshtml.dll) Null Pointer Dereference Exploit
  2926. HP Tru64 Alpha OSF1 v5.1 (ps) Information Leak Exploit
  2927. MySQL 4.x/5.0 User-Defined Function Command Execution Exploit (win)
  2928. LightRO CMS 1.0 (inhalt.php) Remote File Include Vulnerability
  2929. FlashFXP 3.4.0 build 1145 Remote Buffer Overflow DoS Exploit
  2930. SmartFTP Client 2.0.1002 Remote Heap Overflow DoS Exploit
  2931. Kisisel Site 2007 (tr) Remote SQL Injection Vulnerability
  2932. Alibaba Alipay (Remove ActiveX) Remote Code Execution Exploit
  2933. AgerMenu 0.01 (top.inc.php rootdir) Remote File Include Vulnerability
  2934. WebMatic 2.6 (index_album.php) Remote File Include Vulnerability
  2935. Advanced Poll <= 2.0.5-dev Remote Admin Session Generator Exploit
  2936. OTSCMS <= 2.1.5 (SQL/XSS) Multiple Remote Vulnerabilities
  2937. Maian Recipe 1.0 (path_to_folder) Remote File Include Vulnerability
  2938. Site-Assistant <= v0990 (paths[version]) Remote File Include Exploit
  2939. LightRO CMS 1.0 (index.php projectid) Remote SQL Injection Exploit
  2940. LushiNews <= 1.01 (comments.php) Remote SQL Injection Exploit
  2941. LushiWarPlaner 1.0 (register.php) Remote SQL Injection Exploit
  2942. Axigen <= 2.0.0b1 Remote Denial of Service Exploit
  2943. Axigen <= 2.0.0b1 Remote Denial of Service Exploit (2)
  2944. SAP Web Application Server 6.40 Arbitrary File Disclosure Exploit
  2945. OPENi-CMS Site Protection Plugin Remote File Inclusion Vulnerability
  2946. SunOS 5.10/5.11 in.telnetd Remote Authentication Bypass Exploit
  2947. IP3 NetAccess < 4.1.9.6 Remote Arbitrary File Disclosure Vulnerability
  2948. Philboard <= 1.14 (philboard_forum.asp) SQL Injection Vulnerability
  2949. uTorrent 1.6 build 474 (announce) Key Remote Heap Overflow Exploit
  2950. AT Contenator <= v1.0 (Root_To_Script) Remote File Include Exploit
  2951. Xaran Cms <= 2.0 (xarancms_haupt.php) SQL Injection Exploit
  2952. phpCC <= 4.2 beta (nickpage.php npid) Remote SQL Injection Exploit
  2953. Advanced Poll <= 2.0.5-dev Remote Code Execution Exploit
  2954. PollMentor 2.0 (pollmentorres.asp id) SQL Injection Vulnerability
  2955. Lotus Domino <= R6 Webmail Remote Password Hash Dumper Exploit
  2956. Portable OpenSSH <= 3.6.1p-PAM / 4.1-SUSE Timing Attack Exploit
  2957. MiniWebsvr <= 0.0.6 Remote Resource Consumption DoS Exploit
  2958. nabopoll 1.2 Remote Unprotected Admin Section Vulnerability
  2959. MailEnable Professional/Enterprise <= 2.35 Out of Bounds DoS Exploit
  2960. ActSoft DVD-Tools (dvdtools.ocx) Remote Buffer Overflow Exploit PoC
  2961. MailEnable Professional/Enterprise <= 2.37 Denial of Service Exploit
  2962. Jupiter CMS 1.1.5 (index.php) Local/Remote File Include Vulnerability
  2963. Jupiter CMS 1.1.5 (Client-IP) Remote SQL Injection Exploit
  2964. Jupiter CMS 1.1.5 Remote File Upload Exploit
  2965. Drupal < 5.1 (post comments) Remote Command Execution Exploit v2
  2966. Drupal < 4.7.6 (post comments) Remote Command Execution Exploit v2
  2967. ZebraFeeds 1.0 (zf_path) Remote File Include Vulnerabilities
  2968. nabopoll 1.2 (survey.inc.php path) Remote File Include Vulnerability
  2969. CodeAvalanche News 1.x (CAT_ID) Remote SQL Injection Vulnerability
  2970. Aktueldownload Haber scripti (id) Remote SQL Injection Vulnerability
  2971. MailEnable Enterprise <= 2.32 - 2.34 Remote Buffer Overflow Exploit
  2972. MailEnable Professional 2.35 Remote Buffer Overflow Exploit
  2973. Snitz Forums 2000 v3.1 SR4 (pop_profile.asp) SQL Injection Vulnerability
  2974. VS-News-System <= 1.2.1 (newsordner) Remote File Include Exploit
  2975. VS-Link-Partner <= 2.1 (script_pfad) Remote File Include Exploit
  2976. Htaccess Passwort Generator 1.1 (ht_pfad) RFI Vulnerability
  2977. webSPELL 4.01.02 (showonly) Remote Blind SQL Injection Exploit
  2978. Vivvo Article Manager 3.4 (root) Local File Inclusion Vulnerability
  2979. XLAtunes 0.1 (album) Remote SQL Injection Vulnerability
  2980. S-Gastebuch <= 1.5.3 (gb_pfad) Remote File Include Exploit
  2981. Axigen eMail Server 2.0.0b2 (pop3) Remote Format String Exploit
  2982. ProFTPD 1.3.0/1.3.0a (mod_ctrls support) Local Buffer Overflow Exploit
  2983. VicFTPS < 5.0 (CWD) Remote Buffer Overflow Exploit PoC
  2984. Xpression News 1.0.1 (archives.php) Remote File Disclosure Exploit
  2985. ProFTPD 1.3.0/1.3.0a (mod_ctrls support) Local Buffer Overflow Exploit 2
  2986. PHP-Nuke Module Emporium <= 2.3.0 Remote SQL Injection Exploit
  2987. IPSwitch WS-FTP 5.05 (XMD5) Remote Buffer Overflow Exploit (meta)
  2988. Ultimate Fun Book 1.02 (function.php) Remote File Include Vulnerability
  2989. NukeSentinel 2.5.05 (nsbypass.php) Blind SQL Injection Exploit
  2990. NukeSentinel 2.5.05 (nukesentinel.php) File Disclosure Exploit
  2991. Online Web Building 2.0 (id) Remote SQL Injection Vulnerability
  2992. Mozilla Firefox <= 2.0.0.1 (location.hostname) Cross-Domain Vulnerability
  2993. TurboFTP 5.30 Build 572 (newline/LIST) Multiple Remote DoS Exploit
  2994. News Rover 12.1 Rev 1 Remote Stack Overflow Exploit
  2995. FTP Voyager <= 14.0.0.3 (CWD) Remote Stack Overflow Exploit PoC
  2996. PHP-Nuke <= 8.0 Final (INSERT) Blind SQL Injection Exploit (mysql)
  2997. PHP-Nuke <= 8.0 Final (INSERT) Remote SQL Injection Exploit
  2998. PHP-Nuke <= 8.0 Final (HTTP Referers) Remote SQL Injection Exploit
  2999. FTP Explorer 1.0.1 Build 047 (CPU consumption) Remote DoS Exploit
  3000. SendStudio <= 2004.14 (ROOTDIR) Remote File Inclusion Vulnerability
  3001. News Bin Pro 5.33 (.NBI File) Local Buffer Overflow Exploit
  3002. BrowseDialog Class (ccrpbds6.dll) Multiple Methods DoS Exploit
  3003. webSPELL <= 4.01.02 (topic) Remote SQL Injection Exploit
  3004. Connectix Boards <= 0.7 (p_skin) Multiple Vulnerabilities Exploit
  3005. DBImageGallery 1.2.2 (donsimg_base_path) RFI Vulnerabilities
  3006. DBGuestbook 1.1 (dbs_base_path) Remote File Include Vulnerabilities
  3007. Nabopoll 1.2 (result.php surv) Remote Blind SQL Injection Exploit
  3008. Nortel SSL VPN Linux Client <= 6.0.3 Local Privilege Escalation Exploit
  3009. deV!Lz Clanportal [DZCP] <= 1.4.5 Remote File Disclosure Vulnerability
  3010. Oracle 10g KUPW$WORKER.MAIN Grant/Revoke dba Permission Exploit
  3011. Oracle 10g KUPV$FT.ATTACH_JOB Grant/Revoke dba Permission Exploit
  3012. FlashGameScript 1.5.4 (index.php func) Remote File Include Vulnerability
  3013. eFiction <= 3.1.1 (path_to_smf) Remote File Include Vulnerabilities
  3014. Snort 2.6.1 DCE/RPC Preprocessor Remote Buffer Overflow DoS Exploit
  3015. Oracle 9i/10g DBMS_METADATA.GET_DDL SQL Injection Exploit
  3016. Oracle 9i/10g ACTIVATE_SUBSCRIPTION SQL Injection Exploit
  3017. FCRing <= 1.31 (fcring.php s_fuss) Remote File Include Vulnerability
  3018. Sinapis 2.2 Gastebuch (sinagb.php fuss) Remote File Include Vulnerability
  3019. Sinapis Forum 2.2 (sinapis.php fuss) Remote File Include Vulnerability
  3020. News Rover 12.1 Rev 1 Remote Stack Overflow Exploit (perl)
  3021. Extreme phpBB 3.0.1 (functions.php) Remote File Include Exploit
  3022. Coppermine Photo Gallery 1.3.x Remote Blind SQL Injection Exploit
  3023. CS-Gallery 2.0 (index.php album) Remote File Include Exploit
  3024. phpBB Module NoMoKeTos Rules 0.0.1 Remote File Include Exploit
  3025. PHP-MIP 0.1 (top.php laypath) Remote File Include Vulnerability
  3026. Oracle 10g KUPW$WORKER.MAIN SQL Injection Exploit v2
  3027. Oracle 10g KUPV$FT.ATTACH_JOB SQL Injection Exploit v2
  3028. Oracle 9i/10g DBMS_METADATA.GET_DDL SQL Injection Exploit v2
  3029. Oracle 9i/10g ACTIVATE_SUBSCRIPTION SQL Injection Exploit v2
  3030. STWC-Counter <= 3.4.0 (downloadcounter.php) RFI Exploit
  3031. Kiwi CatTools TFTP <= 3.2.8 Remote Path Traversal Vulnerability
  3032. NetProxy <= 4.03 Web Filter Evasion / Bypass Logging Exploit
  3033. Admin Phorum 3.3.1a (del.php include_path) RFI Vulnerability
  3034. Plan 9 Kernel (devenv.c OTRUNC/pwrite) Local Exploit
  3035. Ubuntu/Debian Apache 1.3.33/1.3.34 (CGI TTY) Local Root Exploit
  3036. XM Easy Personal FTP Server 5.30 (ABOR) Format String DoS Exploit
  3037. McAfee VirusScan for Mac (Virex) <= 7.7 Local Root Exploit
  3038. vBulletin <= 3.6.4 (inlinemod.php postids) Remote SQL Injection Exploit
  3039. 3Com TFTP Service <= 2.0.1 (Long Transporting Mode) Exploit (perl)
  3040. madwifi <= 0.9.2.1 WPA/RSN IE Remote Kernel Buffer Overflow Exploit
  3041. Angel LMS 7.1 (default.asp id) Remote SQL Injection Vulnerability
  3042. Snort 2.6.1 DCE/RPC Preprocessor Remote Buffer Overflow Exploit
  3043. DivX Web Player 1.3.0 (npdivx32.dll) Remote Denial of Service Exploit
  3044. phpMyFAQ <= 1.6.7 Remote SQL Injection / Command Execution Exploit
  3045. PHP 4 Userland ZVAL Reference Counter Overflow Exploit PoC
  3046. WebMod 0.48 (Content-Length) Remote Buffer Overflow Exploit PoC
  3047. PHP <= 4.4.4 unserialize() ZVAL Reference Counter Overflow Exploit PoC
  3048. MailEnable Pro/Ent <= 2.37 (APPEND) Remote Buffer Overflow Exploit
  3049. Mani Stats Reader <= 1.2 (ipath) Remote File Include Vulnerability
  3050. Netrek 2.12.0 pmessage2() Remote Limited Format String Exploit
  3051. webSPELL <= 4.01.02 Multiple Remote SQL Injection Exploit
  3052. webSPELL <= 4.01.02 Remote PHP Code Execution Exploit
  3053. Rigter Portal System (RPS) 6.2 Remote Blind SQL Injection Exploit
  3054. PHP wddx_deserialize() String Append Crash Exploit
  3055. PHP 4.4.3 - 4.4.6 phpinfo() Remote XSS Vulnerability
  3056. News-Letterman 1.1 (eintrag.php sqllog) Remote File Include Exploit
  3057. Asterisk <= 1.2.15 / 1.4.0 pre-auth Remote Denial of Service Exploit
  3058. AJ Auction Pro All Versions (subcat.php) Remote SQL Injection Exploit
  3059. AJ Dating 1.0 (view_profile.php) Remote SQL Injection Exploit
  3060. AJ Classifieds 1.0 (postingdetails.php) Remote SQL Injection Exploit
  3061. AJ Forum 1.0 (topic_title.php) Remote SQL Injection Exploit
  3062. RRDBrowse <= 1.6 Remote Arbitrary File Disclosure Vulnerability
  3063. PHP < 4.4.5 / 5.2.1 php_binary Session Deserialization Information Leak
  3064. PHP < 4.4.5 / 5.2.1 WDDX Session Deserialization Information Leak
  3065. Konqueror 3.5.5 (JavaScript Read of FTP Iframe) DoS Exploit
  3066. Links Management Application 1.0 (lcnt) Remote SQL Injection Exploit
  3067. PHP <= 4.4.6 mssql_[p]connect() Local Buffer Overflow Exploit
  3068. Mercury/32 Mail Server <= 4.01b (check) Buffer Overflow Exploit PoC
  3069. MS Windows (.doc File) Malformed Pointers Denial of Service Exploit
  3070. WinZip <= 10.0.7245 FileView ActiveX Buffer Overflow Exploit v2
  3071. Macromedia 10.1.4.20 SwDir.dll Internet Explorer Stack Overflow DoS
  3072. Winamp <= 5.12 (Crafted PLS) Remote Buffer Overflow Exploit (perl)
  3073. PHP-Nuke Module PostGuestbook 0.6.1 (tpl_pgb_moddir) RFI Vulnerability
  3074. PHP <= 5.2.1 substr_compare() Information Leak Exploit
  3075. mod_security <= 2.1.0 (ASCIIZ byte) POST Rules Bypass Vulnerability
  3076. PHP < 4.4.5 / 5.2.1 (shmop Functions) Local Code Execution Exploit
  3077. PHP < 4.4.5 / 5.2.1 (shmop) SSL RSA Private-Key Disclosure Exploit
  3078. Flat Chat 2.0 (include online.txt) Remote Code Execution Vulnerability
  3079. PHP COM extensions (inconsistent Win32) safe_mode Bypass Exploit
  3080. Adobe Reader plug-in AcroPDF.dll 8.0.0.0 Resource Consumption
  3081. PHP 4.4.6 crack_opendict() Local Buffer Overflow Exploit PoC
  3082. TFTPDWIN Server 0.4.2 (UDP) Denial of Service Exploit
  3083. Rediff Toolbar ActiveX Control Remote Denial of Service Exploit
  3084. Snort 2.6.1.1/2.6.1.2/2.7.0 (fragementation) Remote DoS Exploit
  3085. netForo! 0.1 (down.php file_to_download) Remote File Disclosure Vuln
  3086. WEBO (Web Organizer) <= 1.0 (baseDir) Remote File Inclusion Vuln
  3087. GaziYapBoz Game Portal (kategori.asp) Remote SQL Injection Vuln
  3088. Magic CMS 4.2.747 (mysave.php file) Remote File Include Vulnerability
  3089. PHP 4.4.6 snmpget() object id Local Buffer Overflow Exploit PoC
  3090. PHP 5.2.0 / PHP with PECL ZIP <= 1.8.3 zip:// URL Wrapper BoF Exploit
  3091. Linux Omnikey Cardman 4040 driver Local Buffer Overflow Exploit PoC
  3092. PHP 4.4.6 cpdf_open() Local Source Code Discslosure PoC
  3093. PMB Services <= 3.0.13 Multiple Remote File Inclusion Vulnerability
  3094. MS Internet Explorer (FTP Server Response) DoS Exploit (MS07-016)
  3095. Grayscale Blog 0.8.0 (Security Bypass/SQL/XSS) Multiple Remote Vulns
  3096. WORK system e-commerce <= 3.0.5 Remote File Inclusion Vulnerability
  3097. HC Newssystem 1.0-1.4 (index.php ID) Remote SQL Injection Vulnerability
  3098. NukeSentinel <= 2.5.06 (mysql >= 4.0.24) Remote SQL Injection Exploit
  3099. Oracle 10g (PROCESS_DUP_HANDLE) Local Privilege Elevation (win32)
  3100. PHP <= 5.2.0 ext/filter FDF Post Filter Bypass Exploit
  3101. MS Windows DCE-RPC svcctl ChangeServiceConfig2A() Memory Corruption
  3102. PostNuke Module phgstats 0.5 (phgdir) Remote File Include Exploit
  3103. JobSitePro 1.0 (search.php) Remote SQL Injection Exploit
  3104. Top Auction 1.0 (viewcat.php) Remote SQL Injection Exploit
  3105. SonicMailer Pro <= 3.2.3 (index.php) Remote SQL Injection Exploit
  3106. AssetMan <= 2.4a (download_pdf.php) Remote File Disclosure Vuln
  3107. cPanel <= 10.9.x (fantastico) Local File Inclusion Vulnerabilities
  3108. PHP 5.2.0 ext/filter Space Trimming Buffer Underflow Exploit (MacOSX)
  3109. TFTP Server 1.3 Remote Buffer Overflow Denial of Service Exploit
  3110. NewsReactor 20070220 Article Grabbing Remote BoF Exploit (1)
  3111. NewsReactor 20070220 Article Grabbing Remote BoF Exploit (2)
  3112. News Bin Pro 4.32 Article Grabbing Remote Unicode BoF Exploit
  3113. OES (Open Educational System) 0.1beta Remote File Inclusion Vuln
  3114. BP Blog 7.0 (default.asp layout) Remote SQL Injection Vulnerability
  3115. GestArt beta 1 (aide.php aide) Remote File Inclusion Vulnerability
  3116. MySQL Commander <= 2.7 (home) Remote File Inclusion Vulnerability
  3117. X-ice News System 1.0 (devami.asp id) SQL Injection Vulnerability
  3118. JGBBS 3.0beta1 (search.asp author) SQL Injection Exploit
  3119. Activist Mobilization Platform (AMP) 3.2 Remote File Include Vuln
  3120. CARE2X 1.1 (root_path) Remote File Inclusion Vulnerability
  3121. WebCreator <= 0.2.6-rc3 (moddir) Remote File Inclusion Vulnerability
  3122. WarFTP 1.65 (USER) Remote Buffer Overflow Exploit (win2k SP4)
  3123. Zomplog <= 3.7.6 Local File Inclusion Vulnerabilty (win32)
  3124. WSN Guest 1.21 (comments.php id) Remote SQL Injection Exploit
  3125. Dayfox Blog 4 (postpost.php) Remote Code Execution Vulnerability
  3126. PHP <= 5.2.1 session_regenerate_id() Double Free Exploit
  3127. PHP 5.2.0/5.2.1 Rejected Session ID Double Free Exploit
  3128. Orion-Blog 2.0 (AdminBlogNewsEdit.asp) Remote Auth Bypass Vuln
  3129. WarFTP 1.65 (USER) Remote Buffer Overflow SEH Overflow Exploit
  3130. Woltlab Burning Board 2.x (usergroups.php) Remote SQL Injection Exploit
  3131. WebLog (index.php file) Remote File Disclosure Vulnerability
  3132. Company WebSite Builder PRO 1.9.8 (INCLUDE_PATH) RFI Vulnerability
  3133. Groupit 2.00b5 (c_basepath) Remote File Inclusion Vulnerability
  3134. CcMail 1.0.1 (update.php functions_dir) Remote File Inclusion Exploit
  3135. PHP <= 4.4.6 ibase_connect() Local Buffer Overflow Exploit
  3136. Creative Guestbook 1.0 Multiple Remote Vulnerabilities
  3137. WBBlog (XSS/SQL) Multiple Remote Vulnerabilities
  3138. OpenBSD ICMPv6 Fragment Remote Execution Exploit PoC
  3139. WebCalendar 0.9.45 (includedir) Remote File Inclusion Vulnerability
  3140. Absolute Image Gallery 2.0 (gallery.php categoryid) SQL Injection Vuln
  3141. McGallery 0.5b (download.php) Arbitrary File Download Vulnerability
  3142. CA BrightStor ARCserve (msgeng.exe) Remote Stack Overflow Exploit
  3143. Php-Stats <= 0.1.9.1b (PC-REMOTE-ADDR) SQL Injection Exploit
  3144. Php-Stats <= 0.1.9.1b (ip) Remote SQL Injection Exploit
  3145. Creative Files 1.2 (kommentare.php) Remote SQL Injection Vulnerability
  3146. PHP <= 4.4.6 / 5.2.1 array_user_key_compare() ZVAL dtor Local Exploit
  3147. Particle Blogger <= 1.2.0 (post.php postid) Remote SQL Injection Exploit
  3148. PHP DB Designer <= 1.02 Remote File Include Vulnerabilities
  3149. Php-Stats <= 0.1.9.1b (php-stats-options.php) admin 2 exec() eExploit
  3150. MPM Chat 2.5 (view.php logi) Local File Include Vulnerability
  3151. Active PHP Bookmark Notes <= 0.2.5 Remote File Inclusion Exploit
  3152. Net Portal Dynamic System (NPDS) <= 5.10 Remote Code Execution
  3153. Guestbara <= 1.2 Change Admin Login and Password Exploit
  3154. ScriptMagix FAQ Builder <= 2.0 (index.php) Remote SQL Injection Exploit
  3155. Moodle <= 1.5.2 (moodledata) Remote Session Disclosure Vulnerability
  3156. ScriptMagix Jokes <= 2.0 (index.php catid) Remote SQL Injection Exploit
  3157. ScriptMagix Recipes <= 2.0 (index.php catid) SQL Injection Exploit
  3158. ScriptMagix Photo Rating <= 2.0 Remote SQL Injection Exploit
  3159. iFrame for Phpnuke (iframe.php) Remote File Inclusion Vulnerability
  3160. Katalog Plyt Audio (pl) <= 1.0 Remote SQL Injection Exploit
  3161. Avant Browser <= 11.0 build 26 Remote Stack Overflow Crash Exploit
  3162. ScriptMagix Lyrics <= 2.0 (index.php recid) SQL Injection Exploit
  3163. MetaForum <= 0.513 Beta Remote File Upload Exploit
  3164. PHP 5.2.0 header() Space Trimming Buffer Underflow Exploit (MacOSX)
  3165. PHP-Nuke Module splattforum 4.0 RC1 Local File Inclusion Exploit
  3166. phpBB Minerva Mod <= 2.0.21 build 238a SQL Injection Vulnerability
  3167. NetVios Portal (page.asp) Remote SQL Injection Vulnerability
  3168. pragmaMX Module Landkarten 2.1 Local File Inclusion Exploit (win)
  3169. GeBlog 0.1 GLOBALS[tplname] Local File Inclusion Exploit (win)
  3170. FTPDMIN 0.96 (LIST) Remote Denial of Service Exploit
  3171. PHP-Nuke Module htmltonuke 2.0alpha (htmltonuke.php) RFI Vuln
  3172. PHP <= 4.4.6 / 5.2.1 ext/gd Already Freed Resources Usage Exploit
  3173. Cisco Phone 7940/7960 (SIP INVITE) Remote Denial of Service Exploit
  3174. Mercur IMAPD 5.00.14 Remote Denial of Service Exploit (win32)
  3175. phpRaid < 3.0.7 (rss.php phpraid_dir) Remote File Inclusion Exploit
  3176. PHP <= 5.2.1 hash_update_file() Freed Resource Usage Exploit
  3177. Monster Top List <= 1.4.2 (functions.php root_path) RFI Exploit
  3178. Helix Server 11.0.1 Remote Heap Overflow Exploit (win2k SP4)
  3179. Study planner (Studiewijzer) <= 0.15 Remote File Inclusion Vulnerability
  3180. Digital Eye CMS 0.1.1b (module.php) Remote File Inclusion Vulnerability
  3181. Active Link Engine (default.asp catid) Remote SQL Injection Vulnerability
  3182. Grandstream Budge Tone-200 IP Phone (Digest domain) DoS Exploit
  3183. Active Photo Gallery (default.asp catid) SQL Injection Vulnerability
  3184. Mercur Messaging 2005 IMAP (SUBSCRIBE) Remote Exploit (win2k SP4)
  3185. php-revista <= 1.1.2 Multiple Remote SQL Injection Vulnerabilities
  3186. Mambo Component nfnaddressbook 0.4 Remote File Inclusion Vulnerability
  3187. Mercur Messaging 2005 <= SP4 IMAP Remote Exploit (egghunter mod)
  3188. FutureSoft TFTP Server 2000 Remote SEH Overwrite Exploit
  3189. ClassWeb 2.0.3 (BASE) Remote File Inclusion Vulnerabilities
  3190. PortailPhp 2.0 (idnews) Remote SQL Injection Exploit
  3191. Microsoft DNS Server (Dynamic DNS Updates) Remote Exploit
  3192. LMS <= 1.8.9 Vala Remote File Inclusion Vulnerabilities
  3193. aspWebCalendar 4.5 (calendar.asp eventid) SQL Injection Vulnerability
  3194. 0irc-client v1345 build20060823 Denial of Service Exploit
  3195. RoseOnlineCMS 3 beta2 (op) Local File Inclusion Exploit
  3196. Active Trade v 2 (default.asp catid) Remote SQL Injection Vulnerability
  3197. ActiveBuyandSell 6.2 (buyersend.asp catid) SQL Injection Vulnerability
  3198. Active Auction Pro 7.1 (default.asp catid) SQL Injection Vulnerability
  3199. Philex <= 0.2.3 RFI / File Disclosure Remote Vulnerabilities
  3200. dproxy <= 0.5 Remote Buffer Overflow Exploit (meta 2.7)
  3201. Ethernet Device Drivers Frame Padding Info Leakage Exploit (Etherleak)
  3202. Active Newsletter <= 4.3 (ViewNewspapers.asp) SQL Injection Exploit
  3203. Joomla/Mambo Component SWmenuFree 4.0 RFI Vulnerability
  3204. eWebquiz <= V.8 (eWebQuiz.asp) Remote SQL Injection Exploit
  3205. PHP 5.2.1 unserialize() Local Information Leak Exploit
  3206. Joomla Component Joomlaboard 1.1.1 (sbp) RFI Vulnerability
  3207. Mercury Mail 4.0.1 (LOGIN) Remote IMAP Stack Buffer Overflow Exploit
  3208. Net-Side.net CMS (index.php cms) Remote File Inclusion Vulnerability
  3209. ttCMS <= v4 (ez_sql.php lib_path) Remote File Inclusion Vulnerability
  3210. Joomla Component Car Manager <= 1.1 Remote SQL Injection Exploit
  3211. Joomla Component RWCards <= 2.4.3 Remote SQL Injection Exploit
  3212. Asterisk <= 1.2.16 / 1.4.1 SIP INVITE Remote Denial of Service Exploit
  3213. Mambo Module Flatmenu <= 1.07 Remote File Include Exploit
  3214. Free Image Hosting <= 2.0 (AD_BODY_TEMP) Remote File Inclusion Vulns
  3215. PBlang <= 4.66z Remote Create Admin Exploit
  3216. WarFTP 1.65 (USER) Remote Buffer Overlow Exploit (multiple targets)
  3217. PHP < 4.4.5 / 5.2.1 _SESSION unset() Local Exploit
  3218. PHP < 4.4.5 / 5.2.1 _SESSION Deserialization Overwrite Exploit
  3219. PBlang 4.66z Remote Code Execution Exploit
  3220. Frontbase <= 4.2.7 Remote Buffer Overflow Exploit (windows)
  3221. PHP 5.2.1 with PECL phpDOC Local Buffer Overflow Exploit
  3222. MS Internet Explorer Recordset Double Free Memory Exploit (MS07-009)
  3223. FreeBSD mcweject 0.9 (eject) Local Root Buffer Overflow Exploit
  3224. Easy File Sharing FTP Server 2.0 (PASS) Remote Exploit (Win2K SP4)
  3225. IceBB 1.0-rc5 Remote Create Admin Exploit
  3226. IceBB 1.0-rc5 Remote Code Execution Exploit
  3227. PHP-Nuke Module Addressbook 1.2 Local File Inclusion Exploit
  3228. C-Arbre <= 0.6PR7 (root_path) Remote File Inclusion Vulnerability
  3229. Oracle 10g KUPM$MCP.MAIN SQL Injection Exploit v2
  3230. Oracle 10g KUPM$MCP.MAIN SQL Injection Exploit
  3231. PHP 4.4.5 / 4.4.6 session_decode() Double Free Exploit PoC
  3232. Linux Kernel <= 2.6.20 with DCCP Support Memory Disclosure Exploit
  3233. XOOPS module Articles <= 1.02 (print.php id) SQL Injection Exploit
  3234. NaviCOPA Web Server 2.01 Remote Buffer Overflow Exploit (meta)
  3235. Joomla Component D4JeZine <= 2.8 Remote BLIND SQL Injection Exploit
  3236. PHP-Nuke Module Eve-Nuke 0.1 (mysql.php) RFI Vulnerability
  3237. Web Content System 2.7.1 Remote File Inclusion Exploit
  3238. Corel Wordperfect X3 13.0.0.565 (.PRS) Local Buffer Overflow Exploit
  3239. XOOPS module Articles <= 1.03 (index.php cat_id) SQL Injection Exploit
  3240. Linux Kernel <= 2.6.20 with DCCP Support Memory Disclosure Exploit v2
  3241. iPhotoAlbum 1.1 (header.php) Remote File Include Vulnerability
  3242. XOOPS Module Friendfinder <= 3.3 (view.php id) SQL Injection Exploit
  3243. MangoBery CMS 0.5.5 (quotes.php) Remote File Inclusion Vulnerability
  3244. CodeBB 1.0 beta 2 (phpbb_root_path) Remote File Inclusion Vulnerability
  3245. Softerra Time-Assistant <= 6.2 (inc_dir) Remote File Inclusion Vuln
  3246. sBLOG 0.7.3 Beta (inc/lang.php) Local File Inclusion Exploit
  3247. IBM Lotus Domino Server 6.5 (username) Remote Denial of Service Exploit
  3248. XOOPS Module MyAds Bug Fix <= 2.04jp (index.php) SQL Injection Exploit
  3249. CA BrightStor Backup 11.5.2.0 (Mediasvr.exe) Remote Code Exploit
  3250. Picture-Engine <= 1.2.0 (wall.php cat) Remote SQL Injection Exploit
  3251. Mozilla Firefox 2.0.0.3 / Gran Paradiso 3.0a3 DoS Hang / Crash Exploit
  3252. Kaqoo Auction (install_root) Multiple Remote File Include Vulnerabilities
  3253. Advanced Login <= 0.7 (root) Remote File Inclusion Vulnerability
  3254. Snort 2.6.1 DCE/RPC Preprocessor Remote Buffer Overflow Exploit (linux)
  3255. ActSoft DVD-Tools (dvdtools.ocx) Remote Buffer Overflow Exploit
  3256. JC URLshrink 1.3.1 Remote Code Execution Vulnerability
  3257. XOOPS Module Repository (viewcat.php) Remote SQL Injection Exploit
  3258. phpBB MOD Forum picture and META tags 1.7 RFI Vulnerability
  3259. JSBoard 2.0.10 (login.php table) Local File Inclusion Vulnerability
  3260. dproxy-nexgen Remote Root Buffer Overflow Exploit (x86-lnx)
  3261. IBM Lotus Domino Server 6.5 PRE AUTH Remote Exploit
  3262. MS Windows Animated Cursor (.ANI) Stack Overflow Exploit
  3263. XOOPS Module Lykos Reviews 1.00 (index.php) SQL Injection Exploit
  3264. XOOPS Module Library (viewcat.php) Remote SQL Injection Exploit
  3265. XOOPS Module Core (viewcat.php) Remote SQL Injection Exploit
  3266. XOOPS Module Tutoriais (viewcat.php) Remote SQL Injection Exploit
  3267. WinMail Server 4.4 build 1124 (WebMail) Remote Add Super User Exploit
  3268. XOOPS Module eCal <= 2.24 (display.php) Remote SQL Injection Exploit
  3269. BT-sondage 1.12 (gestion_sondage.php) RFI Vulnerability
  3270. XOOPS Module Tiny Event <= 1.01 (id) Remote SQL Injection Exploit
  3271. XOOPS Module Kshop <= 1.17 (id) Remote SQL Injection Exploit
  3272. IPSwitch IMail Server <= 8.20 IMAPD Remote Buffer Overflow Exploit
  3273. CWB PRO 1.5 (INCLUDE_PATH) Remote File Inclusion Vulnerabilities
  3274. XOOPS Module Camportail <= 1.1 (camid) Remote SQL Injection Exploit
  3275. XOOPS Module debaser <= 0.92 (genre.php) BLIND SQL Injection Exploit
  3276. Flexphpnews 0.0.5 (news.php newsid) Remote SQL Injection Vulnerability
  3277. XOOPS Module myAlbum-P <= 2.0 (cid) Remote SQL Injection Exploit
  3278. XOOPS Module RM+Soft Gallery 1.0 BLIND SQL Injection Exploit
  3279. MS Windows XP/Vista Animated Cursor (.ANI) Remote Overflow Exploit
  3280. MS Windows XP Animated Cursor (.ANI) Remote Overflow Exploit 2
  3281. MS Windows Animated Cursor (.ANI) Remote Exploit (eeye patch bypass)
  3282. MapLab MS4W 2.2.1 Remote File Inclusion Vulnerability
  3283. PHP-Fusion Module topliste 1.0 (cid) Remote SQL Injection Vulnerability
  3284. PHP-Fusion Module Arcade 1.0 (cid) Remote SQL Injection Vulnerability
  3285. Really Simple PHP and Ajax (RSPA) 2007-03-23 RFI Vulnerability
  3286. XOOPS Module WF-Section <= 1.01 (articleid) SQL Injection Exploit
  3287. XOOPS Module XFsection <= 1.07 (articleid) BLIND SQL Injection Exploit
  3288. XOOPS Module Zmagazine 1.0 (print.php) Remote SQL Injection Exploit
  3289. MS Windows Animated Cursor (.ANI) Local Buffer Overflow Exploit
  3290. IrfanView 3.99 (.ANI File) Local Buffer Overflow Exploit
  3291. Ipswitch WS_FTP 5.05 Server Manager Local Site Buffer Overflow Exploit
  3292. Frontbase <= 4.2.7 POST-AUTH Remote Buffer Overflow Exploit v2.2
  3293. MS Windows Animated Cursor (.ANI) Universal Exploit Generator
  3294. MS Windows Animated Cursor (.ANI) Overflow Exploit (Hardware DEP)
  3295. MyBulletinBoard (MyBB) <= 1.2.3 Remote Code Execution Exploit
  3296. HP Mercury Quality Center 9.0 build 9.1.0.4352 SQL Execution Exploit
  3297. XOOPS Module PopnupBlog <= 2.52 (postid) BLIND SQL Injection Exploit
  3298. Wordpress 2.1.2 (xmlrpc) Remote SQL Injection Exploit
  3299. MySpeach <= 3.0.7 Remote/Local File Inclusion Vulnerability
  3300. phpMyNewsletter 0.6.10 (customize.php l) RFI Vulnerability
  3301. AROUNDMe 0.7.7 Multiple Remote File Inclusion Vulnerabilities
  3302. CyBoards PHP Lite 1.21 (script_path) Remote File Include Exploit
  3303. HP Mercury Quality Center Spider90.ocx ProgColor Overflow Exploit
  3304. AOL SuperBuddy ActiveX Control Remote Code Execution Exploit (meta)
  3305. XOOPS Module WF-Snippets <= 1.02 (c) BLIND SQL Injection Exploit
  3306. TrueCrypt <= 4.3 Local Privilege Escalation Exploit (CVE-2007-1738)
  3307. Mutant 0.9.2 mutant_functions.php Remote File Inclusion Exploit
  3308. XOOPS Module Rha7 Downloads 1.0 (visit.php) SQL Injection Exploit
  3309. Sisplet CMS <= 05.10 (site_path) Remote File Inclusion Vulnerability
  3310. CodeWand phpBrowse (site_path) Remote File Inclusion Vulnerability
  3311. PHP-Generics 1.0.0 beta Multiple Remote File Inclusion Vulnerabilities
  3312. XOOPS Module WF-Links <= 1.03 (cid) Remote SQL Injection Exploit
  3313. phpMyNewsletter <= 0.8 (beta5) Multiple Vuln Exploit
  3314. XOOPS Module Jobs <= 2.4 (cid) Remote SQL Injection Exploit
  3315. WebSPELL <= 4.01.02 (picture.php) File Disclosure Vulnerability
  3316. Wserve HTTP Server 4.6 (Long Directory Name) Denial of Service Exploit
  3317. FileCOPA FTP Server <= 1.01 (LIST) Remote Buffer Overflow Exploit (2)
  3318. Beryo 2.0 (downloadpic.php chemin) Remote File Disclosure Vulnerability
  3319. cattaDoc 2.21 (download2.php fn1) Remote File Disclosure Vulnerability
  3320. SmodBIP <= 1.06 (aktualnosci zoom) Remote SQL Injection Exploit
  3321. SmodCMS <= 2.10 (Slownik ssid) Remote SQL Injection Exploit
  3322. Apache Mod_Rewrite Off-by-one Remote Overflow Exploit (win32)
  3323. Scorp Book 1.0 (smilies.php config) Remote File Inclusion Vulnerability
  3324. PHP-Nuke Module eBoard 1.0.7 GLOBALS[name] LFI Exploit
  3325. MS Windows Explorer Unspecified .ANI File Denial of Service Exploit
  3326. MyBlog: PHP and MySQL Blog/CMS software RFI Vulnerability
  3327. WitShare 0.9 (index.php menu) Local File Inclusion Vulnerability
  3328. ScarNews 1.2.1 (sn_admin_dir) Local File Inclusion Exploit
  3329. MS Windows GDI Local Privilege Escalation Exploit (MS07-017)
  3330. PcP-Guestbook 3.0 (lang) Local File Inclusion Vulnerabilities
  3331. Microsoft Office Word 2007 Multiple Vulnerabilities
  3332. Battle.net Clan Script for PHP 1.5.1 Remote SQL Injection Vulnerability
  3333. IrfanView 3.99 .ANI File Local Buffer Overflow Exploit (multiple targets)
  3334. MS Windows .HLP File Local HEAP Overflow PoC 0day
  3335. PHP121 Instant Messenger 2.2 Local File Inclusion Vulnerability
  3336. MS Windows Animated Cursor (.ANI) Local Overflow Exploit
  3337. Pathos CMS 0.92-2 (warn.php file) Remote File Inclusion Vulnerability
  3338. HIOX GUEST BOOK (HGB) 4.0 Remote Code Execution Vulnerability
  3339. Kerberos 1.5.1 Kadmind Remote Root Buffer Overflow Vulnerability
  3340. phpGalleryScript 1.0 (init.gallery.php include_class) RFI Vulnerability
  3341. Weatimages <= 1.7.1 ini[langpack] Remote File Inclusion Vulnerability
  3342. Crea-Book <= 1.0 Admin Access Bypass / DB Disclosure / Code Execution
  3343. InoutMailingListManager <= 3.1 Remote Command Execution Exploit
  3344. Joomla/Mambo Component Taskhopper 1.1 RFI Vulnerabilities
  3345. pL-PHP beta 0.9 Multiple Remote Vulnerabilities
  3346. SimpCMS <= 04.10.2007 (site) Remote File Inclusion Vulnerability
  3347. Mambo Component zOOm Media Gallery <= 2.5 Beta 2 RFI Vulnerabilities
  3348. TOSMO/Mambo 1.4.13a (absolute_path) Remote File Inclusion Vulns
  3349. MiniWebsvr 0.0.7 Remote Directory Transversal Exploit
  3350. Gran Paradiso 3.0a3 non-existent applet Denial of Service Exploit
  3351. PunBB <= 1.2.14 Remote Code Execution Exploit
  3352. CodeBreak 1.1.2 (codebreak.php) Remote File Inclusion Exploit
  3353. Mambo Module Weather (absolute_path) RFI Vulnerability
  3354. Mambo Module Calendar (Agenda) 1.5.5 RFI Vulnerability
  3355. Joomla Component mosMedia <= 1.0.8 Remote File Inclusion Vulnerability
  3356. Sami HTTP Server 2.0.1 POST Request Denial of Service Exploit
  3357. mxBB Module MX Shotcast 1.0 RC2 (getinfo1.php) RFI Exploit
  3358. WebKalk2 1.9.0 (absolute_path) Remote File Inclusion Vulnerability
  3359. RicarGBooK 1.2.1 (header.php lang) Local File Inclusion Vulnerability
  3360. MyBulletinBoard (MyBB) <= 1.2.2 (CLIENT-IP) SQL Injection Exploit
  3361. e107 0.7.8 (mailout.php) Access Escalation Exploit (admin needed)
  3362. Expow 0.8 (autoindex.php cfg_file) Remote File Inclusion Vulnerability
  3363. Request It 1.0b (index.php id) Remote File Inclusion Vulnerability
  3364. Aircrack-ng 0.7 (specially crafted 802.11 packets) Remote BoF Exploit
  3365. Chatness <= 2.5.3 (options.php/save.php) Remote Code Execution Exploit
  3366. Ettercap-NG 0.7.3 Remote Denial of Service Exploit
  3367. VCDGear <= 3.56 Build 050213 (FILE) Local Code Execution Exploit
  3368. IE NCTAudioFile2.AudioFile ActiveX Remote Overflow Exploit
  3369. QDBlog 0.4 (SQL Injection/LFI) Multiple Remote Vulnerabilities
  3370. ProFTPD 1.3.0/1.3.0a (mod_ctrls) Local Overflow Exploit (exec-shield)
  3371. Frogss CMS <= 0.7 Remote SQL Injection Exploit
  3372. Garennes 0.6.1 (repertoire_config) Remote File Inclusion Vulnerabilities
  3373. Pixaria Gallery 1.x (class.Smarty.php) Remote File Include Vulnerability
  3374. Joomla Module AutoStand 1.0 Remote File Inclusion Vulnerability
  3375. LS simple guestbook (v1) Remote Code Execution Vulnerability
  3376. Mambo/Joomla Component Article 1.1 Remote File Inclusion Vulnerability
  3377. MS Windows DNS RPC Remote Buffer Overflow Exploit (win2k SP4)
  3378. XAMPP for Windows <= 1.6.0a mssql_connect() Remote BoF Exploit
  3379. Papoo <= 3.02 (kontakt menuid) Remote SQL Injection Exploit
  3380. MS Windows DNS DnssrvQuery Remote Stack Overflow Exploit
  3381. CNStats 2.9 (who_r.php bj) Remote File Inclusion Vulnerability
  3382. NMDeluxe 1.0.1 (footer.php template) Local File Inclusion Exploit
  3383. Gallery 1.2.5 (GALLERY_BASEDIR) Multiple RFI Vulnerabilities
  3384. audioCMS arash 0.1.4 (arashlib_dir) Remote File Inclusion Vulnerabilities
  3385. Web Slider 0.6 (path) Remote File Inclusion Vulnerabilities
  3386. MS Windows DNS RPC Remote Buffer Overflow Exploit (port 445) v2
  3387. openMairie 1.10 (scr/soustab.php) Local File Inclusion Vulnerability
  3388. SunShop Shopping Cart <= 3.5 (abs_path) RFI Vulnerabilities
  3389. StoreFront for Gallery (GALLERY_BASEDIR) RFI Vulnerabilities
  3390. XOOPS Module tsdisplay4xoops 0.1 Remote File Inclusion Vulnerability
  3391. Anthologia 0.5.2 (index.php ads_file) Remote File Inclusion Vulnerability
  3392. AjPortal2Php (PagePrefix) Remote File Inclusion Vulnerabilities
  3393. Joomla Component JoomlaPack 1.0.4a2 RE (CAltInstaller.php) RFI
  3394. MiniGal b13 (image backdoor) Remote Code Execution Exploit
  3395. MS Windows GDI Local Privilege Escalation Exploit (MS07-017) 2
  3396. Cabron Connector 1.1.0-Full Remote File Inclusion Vulnerability
  3397. OllyDbg 1.10 Local Format String Exploit
  3398. ShoutPro <= 1.5.2 (shout.php) Remote Code Injection Exploit
  3399. Joomla Template Be2004-2 (index.php) Remote File Include Exploit
  3400. jGallery 1.3 (index.php) Remote File Inclusion Vulnerability
  3401. Mozzers SubSystem final (subs.php) Remote Code Execution Vulnerability
  3402. AimStats 3.2 (process.php update) Remote Code Execution Exploit
  3403. Rezervi 0.9 (root) Remote File Inclusion Vulnerabilities
  3404. Zomplog 3.8 (force_download.php file) Remote File Disclosure Vuln
  3405. OpenSurveyPilot <= 1.2.1 Remote File Inclusion Vulnerability
  3406. Mx Module Smartor Album FAP 2.0 RC 1 Remote File Inclusion Vuln
  3407. CreaDirectory 1.2 (error.asp id) Remote SQL Injection Vulnerability
  3408. Winamp <= 5.3 (WMV File) Remote Denial of Service Exploit
  3409. eXtremail <= 2.1.1 DNS Parsing Bugs Remote Exploit PoC
  3410. Foxit Reader 2.0 (PDF) Remote Denial of Service Exploit
  3411. Supasite 1.23b Multiple Remote File Inclusion Vulnerabilities
  3412. Photofiltre Studio v8.1.1 (.TIF File) Local Buffer Overflow Exploit
  3413. JChit counter 1.0.0 (imgsrv.php ac) Remote File Disclosure Vulnerability
  3414. PHP-Ring Webring System 0.9 Remote SQL Injection Vulnerability
  3415. Maran PHP Forum (forum_write.php) Remote Code Execution Vulnerability
  3416. ACDSee 9.0 (.XPM File) Local Buffer Overflow Exploit
  3417. XnView 1.90.3 (.XPM File) Local Buffer Overflow Exploit
  3418. WEBInsta FM 0.1.4 login.php absolute_path Remote File Inclusion Exploit
  3419. Corel Paint Shop Pro Photo 11.20 (.CLP File) Buffer Overflow Exploit
  3420. MyBulletinBoard (MyBB) <= 1.2.5 calendar.php Blind SQL Injection Exploit
  3421. Joomla 1.5.0 Beta (pcltar.php) Remote File Inclusion Vulnerability
  3422. Winamp <= 5.33 (.AVI File) Remote Denial of Service Exploit
  3423. Pagode 0.5.8 (navigator_ok.php asolute) Remote File Disclosure Vuln
  3424. Opera 9.2 (torrent File) Remote Denial of Service Exploit
  3425. Post Revolution <= 0.7.0 RC 2 (dir) Remote File Inclusion Vulnerability
  3426. GPB Bulletin Board Multiple Remote File Inclusion Vulnerabilities
  3427. GNU Mailutils imap4d 0.6 Remote Format String Exploit (exec-shield)
  3428. Second Sight Software ActiveGS.ocx ActiveX Buffer Overflow POC
  3429. Second Sight Software ActiveMod.ocx ActiveX Buffer Overflow POC
  3430. NetSprint Toolbar ActiveX toolbar.dll Denial of Service POC
  3431. Linksys SPA941 \377 character Remote Denial of Service Exploit
  3432. Linksys SPA941 (remote reboot) Remote Denial of Service Exploit
  3433. Adobe Photoshop CS2 / CS3 Unspecified .BMP File Buffer Overflow Exploit
  3434. USP FOSS Distribution 1.01 (dnld) Remote File Disclosure Vulnerability
  3435. Advanced Webhost Billing System (AWBS) cart2.php RFI Vulnerability
  3436. wavewoo 0.1.1 (loading.php path_include) Remote File Inclusion Exploit
  3437. ABC-View Manager 1.42 (.PSP File) Buffer Overflow Exploit
  3438. FreshView 7.15 (.PSP File) Buffer Overflow Exploit
  3439. JulmaCMS 1.4 (file.php file) Remote File Disclosure Vulnerability
  3440. Ext 1.0 (feed-proxy.php feed) Remote File Disclosure Vulnerability
  3441. Gimp 2.2.14 .RAS File SUNRAS Plugin Buffer Overflow Exploit
  3442. phpBandManager 0.8 (index.php pg) Remote File Inclusion Vulnerability
  3443. phpOracleView (include_all.inc.php page_dir) RFI Vulnerability
  3444. MS Windows (.ANI) GDI Remote Elevation of Privilege Exploit (MS07-017)
  3445. Firefly 1.1.01 (doc_root) Remote File Inclusion Vulnerabilities
  3446. EsForum 3.0 (forum.php idsalon) Remote SQL Injection Vulnerability
  3447. MyDNS 1.1.0 Remote Heap Overflow PoC
  3448. IE NCTAudioFile2.AudioFile ActiveX Remote Stack Overflow Exploit 2
  3449. burnCMS <= 0.2 (root) Remote File Inclusion Vulnerabilities
  3450. IPIX Image Well ActiveX (iPIX-ImageWell-ipix.dll) BoF Exploit
  3451. IrfanView <= 4.00 .IFF File Buffer Overflow Exploit
  3452. Photoshop CS2/CS3 / Paint Shop Pro 11.20 .PNG File BoF Exploit
  3453. PostNuke pnFlashGames Module 1.5 Remote SQL Injection Vulnerability
  3454. Wordpress Plugin myGallery <= 1.4b4 Remote File Inclusion Vulnerability
  3455. Fenice OMS server 1.10 Remote Buffer Overflow Exploit (exec-shield)
  3456. TCExam <= 4.0.011 (SessionUserLang) Shell Injection Exploit
  3457. Imageview 5.3 (fileview.php album) Local File Inclusion Vulnerability
  3458. The Merchant <= 2.2.0 (index.php show) Remote File Inclusion Exploit
  3459. RealPlayer 10 (.ra file) Remote Denial of Service Exploit
  3460. psipuss 1.0 (editusers.php) Remote Change Admin Password Exploit
  3461. 3proxy 0.5.3g proxy.c logurl() Remote Buffer Overflow Exploit (linux)
  3462. 3proxy 0.5.3g proxy.c logurl() Remote Buffer Overflow Exploit (win32)
  3463. Winamp <= 5.34 .MP4 File Code Execution Exploit
  3464. Wordpress plugin wp-Table <= 1.43 (inc_dir) RFI Vulnerability
  3465. Wordpress plugin wordTube <= 1.43 (wpPATH) RFI Vulnerability
  3466. PowerPoint Viewer OCX 3.2 (ActiveX Control) Denial of Service Exploit
  3467. Sendcard <= 3.4.1 (sendcard.php form) Local File Inclusion Vulnerability
  3468. Wordpress plugin myflash <= 1.00 (wppath) RFI Vulnerability
  3469. 3proxy 0.5.3g proxy.c logurl() Remote Overflow Exploit (exec-shield)
  3470. Excel Viewer OCX 3.1.0.6 Multiple Methods Denial of Service Exploit
  3471. PStruh-CZ 1.3/1.5 (download.asp File) File Disclosure Vulnerability
  3472. 1024 CMS 0.7 (download.php item) Remote File Disclosure Vulnerability
  3473. mxBB Module FAQ & RULES 2.0.0 Remote File Inclusion Exploit
  3474. YaPIG 0.95b Remote Code Execution Exploit
  3475. PostNuke Module v4bJournal Remote SQL Injection Vulnerability
  3476. Word Viewer OCX 3.2 Remote Denial of Service Exploit
  3477. phpChess Community Edition 2.0 Multiple RFI Vulnerabilities
  3478. Open Translation Engine (OTE) 0.7.8 (header.php ote_home) RFI Vuln
  3479. PHP Coupon Script 3.0 (index.php bus) Remote SQL Injection Vulnerability
  3480. Pre Classifieds Listings 1.0 Remote SQL Injection Vulnerability
  3481. Pre News Manager 1.0 Remote SQL Injection Vulnerability
  3482. Pre Shopping Mall 1.0 Remote SQL Injection Vulnerability
  3483. Censura 1.15.04 (censura.php vendorid) SQL Injection Vulnerability
  3484. ActSoft DVD-Tools (dvdtools.ocx 3.8.5.0) Stack Overflow Exploit
  3485. Office Viewer OCX 3.2.0.5 Multiple Methods Denial of Service Exploit
  3486. E-GADS! 2.2.6 (common.php locale) Remote File Inclusion Vulnerability
  3487. Versado CMS 1.07 (ajax_listado.php urlModulo) RFI Vulnerability
  3488. workbench 0.11 (header.php path) Remote File Inclusion Vulnerability
  3489. XOOPS Flashgames Module 1.0.1 Remote SQL Injection Vulnerability
  3490. RunCms <= 1.5.2 (debug_show.php) Remote SQL Injection Exploit
  3491. Multiple vendors ZOO file decompression Infinite Loop DoS PoC
  3492. PMECMS <= 1.0 config[pathMod] Remote File Inclusion Vulnerabilities
  3493. Persism CMS <= 0.9.2 system[path] Remote File Inclusion Vulnerabilities
  3494. PHP TopTree BBS 2.0.1a (right_file) Remote File Inclusion Vulnerability
  3495. Net Portal Dynamic System (NPDS) <= 5.10 Remote Code Execution (2)
  3496. East Wind Software (advdaudio.ocx 1.5.1.1) Local BoF Exploit
  3497. vm watermark for Gallery 0.4.1 Remote File Inclusion Vulnerability
  3498. Nuked-klaN 1.7.6 Remote Code Execution Exploit
  3499. Archangel Weblog 0.90.02 Local File Inclusion / Admin Bypass Vulns
  3500. PHPtree 1.3 (cms2.php s_dir) Remote File Inclusion Vulnerability
  3501. NoAh <= 0.9 pre 1.2 (mfa_theme.php) Remote File Inclusion Vulnerability
  3502. XOOPS Module wfquotes 1.0 0 Remote SQL Injection Vulnerability
  3503. Wikivi5 (show.php sous_rep) Remote File Inclusion Vulnerability
  3504. Friendly <= 1.0d1 (friendly_path) Remote File Inclusion Vulnerabilities
  3505. Tropicalm Crowell Resource 4.5.2 (RESPATH) RFI Vulnerabilities
  3506. Versalsoft HTTP File Upload ActiveX 6.36 (AddFile) Remote DoS Exploit
  3507. ACGVAnnu <= 1.3 (acgv.php rubrik) Local File Inclusion Vulnerability
  3508. DynamicPAD <= 1.02.18 (HomeDir) Remote File Inclusion Vulnerabilities
  3509. Berylium2 2003-08-18 (beryliumroot) Remote File Inclusion Vulnerability
  3510. LaVague <= 0.3 (printbar.php views_path) RFI Vulnerability
  3511. Opera 9.10 alert() Remote Denial of Service Exploit
  3512. Taltech Tal Bar Code ActiveX Control Buffer Overflow Exploit
  3513. SmartCode VNC Manager 3.6 (scvncctrl.dll) Denial of Service Exploit
  3514. CGX 20050314 (pathCGX) Remote File Inclusion Vulnerabilities
  3515. PHPLojaFacil 0.1.5 (path_local) Remote File Inclusion Vulnerabilities
  3516. GNUEDU 1.3b2 Multiple Remote File Inclusion Vulnerabilities
  3517. IncrediMail IMMenuShellExt ActiveX Control Buffer Overflow Exploit
  3518. Miplex2 (SmartyFU.class.php) Remote File Inclusion Vulnerability
  3519. phpMyPortal 3.0.0 RC3 GLOBALS[CHEMINMODULES] RFI Exploit
  3520. Sienzo Digital Music Mentor 2.6.0.4 SetEvalExpiryDate SEH Overwrite
  3521. Sienzo Digital Music Mentor 2.6.0.4 SetEvalExpiryDate EIP Overwrite
  3522. BarCodeWiz ActiveX Control 2.52 (BarcodeWiz.dll) SEH Overwrite Exploit
  3523. BarCodeWiz ActiveX Control 2.0 (BarcodeWiz.dll) Remote BoF PoC
  3524. aForum <= 1.32 (CommonAbsDir) Remote File Inclusion Vulnerability
  3525. telltarget <= 1.3.3 (tt_docroot) Remote File Inclusion Vulnerabilities
  3526. SimpleNews <= 1.0.0 FINAL (print.php news_id) SQL Injection Exploit
  3527. TutorialCMS <= 1.00 (search.php search) SQL Injection Exploit
  3528. Gimp 2.2.14 .RAS File Download/Execute Buffer Overflow Exploit (win32)
  3529. GDivX Zenith Player AviFixer Class (fix.dll 1.0.0.1) Buffer Overflow PoC
  3530. McAfee VirusScan 10.0.21 ActiveX control Stack Overflow PoC
  3531. Remote Display Dev kit 1.2.1.0 RControl.dll Denial of Service Exploit
  3532. MS Internet Explorer <= 7 Remote Arbitrary File Rewrite PoC (MS07-027)
  3533. McAfee Security Center IsOldAppInstalled ActiveX BoF Exploit
  3534. Original 0.11 config.inc.php x[1] Remote File Inclusion Vulnerability
  3535. Thyme Calendar 1.3 Remote SQL Injection Vulnerability
  3536. TaskDriver <= 1.2 Login Bypass/SQL Injection Exploit
  3537. eTrust Antivirus Agent r8 Local Privilege Elevation Exploit
  3538. Hewlett Packard 1.0.0.309 hpqvwocx.dll ActiveX Magview Overflow PoC
  3539. Morovia Barcode ActiveX Professional 3.3.1304 Arbitrary File Overwrite
  3540. Snaps! Gallery 1.4.4 Remote User Pass Change Exploit
  3541. maGAZIn 2.0 (phpThumb.php src) Remote File Disclosure Vulnerability
  3542. R2K Gallery 1.7 (galeria.php lang2) Local File Inclusion Vulnerability
  3543. Monalbum 0.8.7 Remote Code Execution Exploit
  3544. W1L3D4 Philboard 0.2 (W1L3D4_bolum.asp forumid) SQL Injection Vuln
  3545. PHP FirstPost 0.1 (block.php Include) Remote File Inclusion Exploit
  3546. iG Shop 1.4 (page.php) Remote SQL Injection Vulnerability
  3547. YAAP <= 1.5 __autoload() Remote File Inclusion Vulnerability
  3548. Beacon 0.2.0 (splash.lang.php) Remote File Inclusion Vulnerability
  3549. PrecisionID Barcode ActiveX 1.3 Denial of Service Exploit
  3550. EfesTECH Haber 5.0 (id) Remote SQL Injection Vulnerability
  3551. notepad++ 4.1 ruby file processing Buffer Overflow Exploit (win32)
  3552. webdesproxy 0.0.1 (GET Request) Remote Buffer Overflow Exploit
  3553. BlogMe 3.0 (archshow.asp var) Remote SQL Injection Vulnerability
  3554. CJG EXPLORER PRO 3.2 (g_pcltar_lib_dir) RFI Vulnerabilities
  3555. VImpX ActiveX (VImpX.ocx v. 4.7.3.0) Remote Buffer Overflow Exploit
  3556. ID Automation Linear Barcode ActiveX Denial of Service Exploit
  3557. phpAtm 1.30 (downloadfile) Remote File Disclosure Vulnerability
  3558. NagiosQL 2005 2.00 (prepend_adm.php) Remote File Inclusion Vuln
  3559. Feindt Computerservice News 2.0 (newsadmin.php action) RFI Vuln
  3560. Clever Database Comparer ActiveX 2.2 Remote Buffer Overflow PoC
  3561. webdesproxy 0.0.1 (GET Request) Remote Root Exploit (exec-shield)
  3562. Linksnet Newsfeed 1.0 Remote File Inclusion Vulnerability
  3563. Media Gallery for Geeklog <= 1.4.8a Remote File Inclusion Vulnerability
  3564. TinyIdentD <= 2.2 Remote Buffer Overflow Exploit
  3565. MS Windows Vista forged ARP packet Network Stack DoS Exploit
  3566. DeWizardX (DEWizardAX.ocx) Arbitrary File Overwrite Exploit
  3567. Achievo 1.1.0 (atk.inc config_atkroot) Remote File Inclusion Vulnerability
  3568. BitsCast 0.13.0 (invalid string) Remote Denial of Service Exploit
  3569. NewzCrawler 1.8 (invalid string) Remote Denial of Service Exploit
  3570. XOOPS Module resmanager <= 1.21 BLIND SQL Injection Exploit
  3571. XOOPS Module Glossarie <= 1.7 (sid) Remote SQL Injection Exploit
  3572. XOOPS Module MyConference 1.0 (index.php) SQL Injection Exploit
  3573. Eudora 7.1 SMTP ResponseRemote Remote Buffer Overflow Exploit
  3574. Glossword 1.8.1 custom_vars.php Remote File Inclusion Vulnerability
  3575. RunawaySoft Haber portal 1.0 (tr) Multiple Remote Vulnerabilities
  3576. PrecisionID Barcode ActiveX 1.9 Remote Denial of Service Exploit
  3577. PrecisionID Barcode ActiveX 1.9 Remote Arbitrary File Overwrite Exploit
  3578. CA BrightStor Backup 11.5.2.0 caloggderd.exe Denial of Service Exploit
  3579. CA BrightStor Backup 11.5.2.0 Mediasvr.exe Denial of Service Exploit
  3580. PHPGlossar 0.8 (format_menue) Remote File Inclusion Vulnerabilities
  3581. SimpNews <= 2.40.01 (print.php newnr) Remote SQL Injection Exploit
  3582. FAQEngine <= 4.16.03 (question.php questionref) SQL Injection Exploit
  3583. Mambo com_yanc 1.4 beta (id) Remote SQL Injection Vulnerability
  3584. MagicISO <= 5.4(build239) .cue File Heap Overflow PoC
  3585. GeekLog 2.x ImageImageMagick.php Remote File Inclusion Vulnerability
  3586. Build it Fast (bif3) 0.4.1 Multiple Remote File Inclusion Vulnerabilities
  3587. Libstats <= 1.0.3 (template_csv.php) Remote File Inclusion Vulnerability
  3588. MolyX BOARD 2.5.0 (index.php lang) Local File Inclusion Vulnerability
  3589. LeadTools JPEG 2000 COM Object Remote Stack Overflow Exploit
  3590. LeadTools Thumbnail Browser Control (lttmb14E.ocx) Remote BoF Exploit
  3591. LeadTools Raster Thumbnail Object Library (LTRTM14e.DLL) BoF Exploit
  3592. SunLight CMS 5.3 (root) Remote File Inclusion Vulnerabilities
  3593. Rational Software Hidden Administrator 1.7 Auth Bypass Exploit
  3594. Zomplog <= 3.8 (mp3playlist.php speler) Remote SQL Injection Exploit
  3595. AlstraSoft E-Friends <= 4.21 Admin Session Retrieve Exploit
  3596. AlstraSoft Live Support v1.21 Admin Credential Retrieve Exploit
  3597. AlstraSoft Template Seller Pro <= 3.25 Admin Password Change Exploit
  3598. AlstraSoft Template Seller Pro <= 3.25 Remote Code Execution Exploit
  3599. Wordpress 2.1.3 admin-ajax.php SQL Injection Blind Fishing Exploit
  3600. LeadTools Raster Variant (LTRVR14e.dll) Remote File Overwrite Exploit
  3601. Ol Bookmarks Manager 0.7.4 (root) Remote File Inclusion Vulnerabilities
  3602. TutorialCMS <= 1.01 Authentication Bypass Vulnerability
  3603. Ol Bookmarks Manager 0.7.4 Remote SQL Injection Vulnerability
  3604. Microsoft IIS 6.0 (/AUX/.aspx) Remote Denial of Service Exploit
  3605. Pegasus ImagN ActiveX Control Remote Buffer Overflow Exploit
  3606. Virtual CD 9.0.0.2 (vc9api.DLL) Remote Shell Commands Execution Exploit
  3607. KSign KSignSWAT <= 2.0.3.3 ActiveX Control Remote BoF Exploit
  3608. LeadTools ISIS Control (ltisi14E.ocx v.14.5.0.44) Remote DoS Exploit
  3609. BtiTracker <= 1.4.1 (become admin) Remote SQL Injection Vulnerability
  3610. NavBoard 2.6.0 Remote Code Execution Exploit
  3611. Scallywag (template.php path) Remote File Inclusion Vulnerabilities
  3612. Microsoft Office 2000 (OUACTRL.OCX v. 1.0.1.9) Remote DoS Exploit
  3613. Dokeos <= 1.8.0 (my_progress.php course) Remote SQL Injection Exploit
  3614. MagicISO <= 5.4 (build239) .cue File Local Buffer Overflow Exploit
  3615. Microsoft Visual Basic 6.0 Project (Company Name) Stack overflow PoC
  3616. Microsoft Visual Basic 6.0 Project (Description) Stack overflow PoC
  3617. UltraISO <= 8.6.2.2011 (Cue/Bin Files) Local Buffer Overflow PoC
  3618. LeadTools Raster Dialog File Object Activex Remote Buffer Overflow PoC
  3619. Dokeos <= 1.6.5 (courseLog.php scormcontopen) SQL Injection Exploit
  3620. cpCommerce <= 1.1.0 (category.php id_category) SQL Injection Exploit
  3621. Dart Communications PowerTCP Service Control Remote BoF Exploit
  3622. FirmWorX 0.1.2 Multiple Remote File Inclusion Vulnerabilities
  3623. Dart Communications PowerTCP ZIP Compression Remote BoF Exploit
  3624. Mac OS X <= 10.4.8 pppd Plugin Loading Privilege Escalation Exploit
  3625. LeadTools Raster Dialog File_D Object Remote Buffer Overflow Exploit
  3626. Webavis 0.1.1 (class.php root) Remote File Inclusion Vulnerability
  3627. gCards <= 1.46 SQL Injection/Remote Code Execution Exploit
  3628. My Little Forum <= 1.7 (user.php id) Remote SQL Injection Exploit
  3629. vBulletin vBGSiteMap 2.41 (root) Remote File Inclusion Vulnerabilities
  3630. OpenBASE 0.6a (root_prefix) Remote File Inclusion Vulnerabilities
  3631. FlaP 1.0b (pachtofile) Remote File Inclusion Vulnerabilities
  3632. IE 6 / Ademco, co., ltd. ATNBaseLoader100 Module Remote BoF Exploit
  3633. Mazens PHP Chat V3 (basepath) Remote File Inclusion Vulnerabilities
  3634. TROforum 0.1 (admin.php site_url) Remote File Inclusion Vulnerability
  3635. Apache 2.0.58 mod_rewrite Remote Overflow Exploit (win2k3)
  3636. Frequency Clock 0.1b (securelib) Remote File Inclusion Vulnerabilities
  3637. Fundanemt <= 2.2.0 (spellcheck.php) Remote Code Execution Exploit
  3638. Vistered Little 1.6a (skin) Remote File Disclosure Vulnerability
  3639. WAnewsletter <= 2.1.3 Remote File Inclusion Vulnerability
  3640. UltraISO <= 8.6.2.2011 (Cue/Bin Files) Local Buffer Overflow Exploit
  3641. UltraISO <= 8.6.2.2011 (Cue/Bin Files) Local Buffer Overflow Exploit 2
  3642. Joomla Component Phil-a-Form <= 1.2.0.0 SQL Injection Exploit
  3643. Inout Search Engine (all version) Remote Code Execution Exploit
  3644. AdminBot 9.0.5 (live_status.lib.php ROOT) RFI Vulnerability
  3645. Pheap 2.0 Admin Bypass / Remote Code Execution Exploit
  3646. Vizayn Urun Tanitim Sistemi 0.2 (tr) Remote SQL Injection Vulnerability
  3647. Zenturi ProgramChecker ActiveX File Download/Overwrite Exploit
  3648. EDraw Office Viewer Component Denial of Service Exploit
  3649. EDraw Office Viewer Component Unsafe Method Exploit
  3650. LeadTools Raster ISIS Object (LTRIS14e.DLL v. 14.5.0.44) Remote BoF
  3651. LeadTools Raster OCR Document Object Library Memory Corruption Exploit
  3652. Mac OS X < 2007-005 (vpnd) Local Privilege Escalation Exploit
  3653. Eudora 7.1.0.9 (IMAP FLAGS) Remote SEH Overwrite Exploit 0day
  3654. Vivotek Motion Jpeg Control (MjpegDecoder.dll 2.0.0.13) Remote Exploit
  3655. Microsoft IIS <= 5.1 Hit Highlighting Authentication Bypass Exploit
  3656. Acoustica MP3 CD Burner 4.32 Local Buffer Overflow PoC
  3657. Particle Gallery <= 1.0.1 Remote SQL Injection Exploit
  3658. RevokeBB <= 1.0 RC4 Blind SQL Injection / Hash Retrieve Exploit
  3659. Zenturi ProgramChecker ActiveX (sasatl.dll) Remote BoF Exploit
  3660. XOOPS Module icontent 1.0/4.5 Remote File Inclusion Exploit
  3661. IE6 / Provideo Camimage (ISSCamControl.dll 1.0.1.5) Remote BoF Exploit
  3662. DVD X Player 4.1 Professional .PLF file Buffer Overflow Exploit
  3663. Quick.Cart <= 2.2 RFI/LFI Remote Code Execution Exploit
  3664. PNphpBB2 <= 1.2 (index.php c) Remote SQL Injection Exploit
  3665. IBM Tivoli Provisioning Manager PRE AUTH Remote Exploit
  3666. screen 4.0.3 Local Authentication Bypass Vulnerability (OpenBSD)
  3667. Sendcard <= 3.4.1 (Local File Inclusion) Remote Code Execution Exploit
  3668. EQdkp <= 1.3.2 (listmembers.php rank) Remote SQL Injection Exploit
  3669. Madirish Webmail 2.0 (addressbook.php) Remote File Inclusion Vuln
  3670. HP Tru64 Remote Secure Shell User Enumeration Exploit (CVE-2007-2791)
  3671. SNMPc <= 7.0.18 Remote Denial of Service Exploit (meta)
  3672. Kravchuk letter script 1.0 (scdir) Remote File Inclusion Vulnerabilities
  3673. Comicsense 0.2 (index.php epi) Remote SQL Injection Vulnerability
  3674. PBLang <= 4.67.16.a Remote Code Execution Exploit
  3675. Comicsense 0.2 (index.php epi) Remote SQL Injection Exploit
  3676. DRDoS - Distributed Reflection Denial of Service
  3677. Wordpress 2.2 (xmlrpc.php) Remote SQL Injection Exploit
  3678. Kartli Alisveris Sistemi 1.0 Remote SQL Injection Vulnerability
  3679. NewsSync for phpBB 1.5.0rc6 Remote File Inclusion Exploit
  3680. Yahoo! Messenger Webcam 8.1 ActiveX Remote Buffer Overflow Exploit
  3681. Yahoo! Messenger Webcam 8.1 ActiveX Remote Buffer Overflow Exploit 2
  3682. MS Windows GDI+ ICO File Remote Denial of Service Exploit
  3683. Microsoft Windows Animated Cursor Stack Overflow Exploit
  3684. MiniWeb Http Server 0.8.x Remote Denial of Service Exploit
  3685. SafeNET High Assurance Remote 1.4.0 (IPSecDrv.sys) Remote DoS
  3686. Zenturi ProgramChecker ActiveX Multiple Insecure Methods Exploit
  3687. Zenturi ProgramChecker ActiveX NavigateUrl() Insecure Method Exploit
  3688. MoviePlay 4.76 .lst File Local Buffer Overflow Exploit
  3689. Yahoo! Messenger Webcam 8.1 (Ywcvwr.dll) Download / Execute Exploit
  3690. Yahoo! Messenger Webcam 8.1 (Ywcupl.dll) Download / Execute Exploit
  3691. e-Vision CMS <= 2.02 SQL Injection/Remote Code Execution Exploit
  3692. PHP Real Estate Classifieds Remote File Inclusion Exploit
  3693. Internet Download Accelerator 5.2 Remote Buffer Overflow PoC
  3694. GeometriX Download Portal (down_indir.asp id) SQL Injection Vuln
  3695. Ace-FTP Client 1.24a Remote Buffer Overflow PoC
  3696. Link Request Contact Form 3.4 Remote Code Execution Vulnerability
  3697. TEC-IT TBarCode OCX ActiveX Remote Arbitrary File Overwrite Exploit
  3698. Safari 3 for Windows Beta Remote Command Execution PoC
  3699. Fuzzylime Forum 1.0 (low.php topic) Remote SQL Injection Exploit
  3700. XOOPS Module TinyContent 1.5 Remote File Inclusion Vulnerability
  3701. XOOPS Module Horoscope <= 2.0 Remote File Inclusion Vulnerability
  3702. Microsoft Speech API ActiveX control Remote BoF Exploit (win2k sp4)
  3703. Microsoft Speech API ActiveX control Remote BoF Exploit (xp sp2)
  3704. Microsoft Office MSODataSourceControl COM-object BoF PoC (0day)
  3705. XOOPS Module XFsection (modify.php) Remote File Inclusion Vulnerability
  3706. XOOPS Module XT-Conteudo (spaw_root) RFI Vulnerability
  3707. XOOPS Module Cjay Content 3 Remote File Inclusion Vulnerability
  3708. Sitellite CMS <= 4.2.12 (559668.php) Remote File Inclusion Vulnerability
  3709. PHP::HTML 0.6.4 (phphtml.php) Remote File Inclusion Vulnerability
  3710. phpMyInventory 2.8 (global.inc.php) Remote File Inclusion Vulnerability
  3711. YourFreeScreamer 1.0 (serverPath) Remote File Inclusion Vulnerability
  3712. MiniBB 2.0.5 (language) Local File Inclusion Exploit
  3713. Solar Empire <= 2.9.1.1 Blind SQL Injection / Hash Retrieve Exploit
  3714. MiniBill 1.2.5 (run_billing.php) Remote File Inclusion Vulnerability
  3715. PHP 5.2.3 Tidy extension Local Buffer Overflow Exploit
  3716. Jasmine CMS 1.0 SQL Injection/Remote Code Execution Exploit
  3717. LiveCMS <= 3.4 (categoria.php cid) Remote SQL Injection Exploit
  3718. W1L3D4 WEBmarket 0.1 Remote SQL Injection Vulnerability
  3719. XOOPS Module WiwiMod 0.4 Remote File Inclusion Vulnerability
  3720. Musoo 0.21 Remote File Inclusion Vulnerabilities
  3721. LAN Management System (LMS) <= 1.9.6 Remote File Inclusion Exploit
  3722. BitchX 1.1-final (EXEC) Remote Command Execution Exploit
  3723. HTTP SERVER (httpsv) 1.6.2 (GET 404) Remote Denial of Service Exploit
  3724. SerWeb 0.9.4 (load_lang.php) Remote File Inclusion Exploit
  3725. Powl 0.94 (htmledit.php) Remote File Inclusion Vulnerability
  3726. Sun Board 1.00.00 alpha Remote File Inclusion Vulnerabilities
  3727. NetClassifieds (SQL/XSS/Full Path) Multiple Remote Vulnerabilities
  3728. Apache mod_jk 1.2.19/1.2.20 Remote Buffer Overflow Exploit
  3729. BarCode ActiveX Control BarCodeAx.dll 4.9 Remote Overflow Exploit
  3730. Pharmacy System 2.0 (index.php ID) Remote SQL Injection Vulnerability
  3731. Pluxml 0.3.1 Remote Code Execution Exploit
  3732. DAGGER Web Engine <= 23jan2007 Remote File Inclusion Vulnerability
  3733. Simple Invoices 2007 05 25 (index.php submit) SQL Injection Exploit
  3734. e107 <= 0.7.8 (photograph) Arbitrary File Upload Vulnerability
  3735. phpTrafficA <= 1.4.2 (pageid) Remote SQL Injection Vulnerability
  3736. NCTAudioEditor2 ActiveX DLL (NCTWMAFile2.dll v. 2.6.2.157) Exploit
  3737. b1gbb 2.24.0 (footer.inc.php tfooter) Remote File Inclusion Vulnerability
  3738. BugMall Shopping Cart 2.5 (SQL/XSS) Multiple Remote Vulnerabilities
  3739. 6ALBlog (newsid) Remote SQL Injection Vulnerability
  3740. SiteDepth CMS 3.44 (ShowImage.php name) File Disclosure Vulnerability
  3741. DreamLog 0.5 (upload.php) Arbitrary File Upload Exploit
  3742. Pagetool 1.07 (news_id) Remote SQL Injection Vulnerability
  3743. eDocStore (doc.php doc_id) Remote SQL Injection Vulnerability
  3744. NCTAudioStudio2 ActiveX DLL 2.6.1.148 CreateFile() Insecure Method
  3745. Avaxswf.dll v.1.0.0.1 from Avax Vector ActiveX Arbitrary Data Write
  3746. phpSiteBackup 0.1 (pcltar.lib.php) Remote File Inclusion Vulnerability
  3747. EVA-Web 1.1<= 2.2 (index.php3) Remote File Inclusion Vulnerabilities
  3748. WordPress 2.2 (wp-app.php) Arbitrary File Upload Exploit
  3749. elkagroup Image Gallery 1.0 Remote SQL Injection Vulnerability
  3750. QuickTalk forum 1.3 (lang) Local File Inclusion Vulnerabilities
  3751. QuickTicket 1.2 (qti_checkname.php) Local File Inclusion Vulnerability
  3752. RealNetworks RealPlayer/HelixPlayer SMIL wallclock Stack Overflow PoC
  3753. HP Digital Imaging (hpqxml.dll 2.0.0.133) Arbitary Data Write Exploit
  3754. Sony Network Camera SNC-P5 v1.0 ActiveX viewer Heap Overflow PoC
  3755. Microsoft Excel 2000/2003 Sheet Name Vulnerability PoC
  3756. b1gbb 2.24.0 (SQL Injection / XSS) Remote Vulnerabilities
  3757. AMX Corp. VNC ActiveX Control (AmxVnc.dll 1.0.13.0) BoF Exploit
  3758. GL-SH Deaf Forum <= 6.4.4 Local File Inclusion Vulnerabilities
  3759. WebChat 0.78 (login.php rid) Remote SQL Injection Vulnerability
  3760. W3Filer 2.1.3 Remote Stack Overflow PoC
  3761. Buddy Zone 1.5 (view_sub_cat.php cat_id) SQL Injection Vulnerability
  3762. Buddy Zone <= 1.5 Multiple SQL Injection Vulnerabilities
  3763. Ripe Website Manager (CMS) <= 0.8.9 Remote File Inclusion Vulns
  3764. TotalCalendar <= 2.402 (view_event.php) Remote SQL Injection Vulns
  3765. XCMS 1.1 (Galerie.php) Local File Inclusion Vulnerabilities
  3766. sPHPell 1.01 Multiple Remote File Inclusion Vulnerabilities
  3767. ArcadeBuilder Game Portal Manager 1.7 Remote SQL Injection Vuln
  3768. Easybe 1-2-3 Music Store (process.php) Remote SQL Injection Vuln
  3769. phpEventCalendar <= 0.2.3 (eventdisplay.php) SQL Injection Exploit
  3770. YouTube Clone Script (msg.php id) Remote SQL Injection Vulnerability
  3771. HP Instant Support (Driver Check) Remote Buffer Overflow Exploit PoC
  3772. AV Arcade 2.1b (index.php id) Remote SQL Injection Vulnerability
  3773. PHPDirector <= 0.21 (videos.php id) Remote SQL Injection Vulnerability
  3774. vbzoom 1.x (forum.php MainID) Remote SQL Injection Vulnerability
  3775. SuperCali PHP Event Calendar 0.4.0 SQL Injection Vulnerability
  3776. Girlserv ads <= 1.5 (details_news.php) SQL Injection Vulnerability
  3777. AXIS Camera Control (AxisCamControl.ocx v. 1.0.2.15) BoF Exploit
  3778. MyCMS <= 0.9.8 Remote Command Execution Exploit (2 method)
  3779. MyCMS <= 0.9.8 Remote Command Execution Exploit
  3780. ESRI ArcSDE 9.0 - 9.2sp1 Remote Buffer Overflow Exploit
  3781. PNphpBB2 <= 1.2i viewforum.php Remote SQL Injection Exploit
  3782. EnjoySAP ActiveX kweditcontrol.kwedit.1 Remote Stack Overflow PoC
  3783. EnjoySAP ActiveX rfcguisink.rfcguisink.1 Remote Heap Overflow PoC
  3784. VRNews 1.1.1 (admin.php) Remote Permission Bypass Vulnerability
  3785. AsteriDex <= 3.0 Remote (callboth.php) Remote Code Execution Exploit
  3786. ViRC 2.0 (JOIN Response) Remote SEH Overwrite Exploit 0day
  3787. phpVID 0.9.9 (categories_type.php cat) SQL Injection Vulnerability
  3788. eMeeting Online Dating Software 5.2 SQL Injection Vulnerabilities
  3789. HP Digital Imaging (hpqvwocx.dll v. 2.1.0.556) SaveToFile() Exploit
  3790. LimeSurvey (PHPSurveyor) 1.49RC2 Remote File Inclusion Vulnerability
  3791. SAP DB 7.4 WebTools Remote SEH overwrite Exploit
  3792. NeoTracePro 3.25 ActiveX TraceTarget() Remote BoF Exploit
  3793. GameSiteScript <= 3.1 (profile id) Remote SQL Injection Vulnerability
  3794. Chilkat Zip ActiveX Component 12.4 Multiple Insecure Methods Exploit
  3795. FlashGameScript <= 1.7 (user) Remote SQL Injection Vulnerability
  3796. Apache Tomcat Connector (mod_jk) Remote Exploit (exec-shield)
  3797. AV Tutorial Script 1.0 Remote User Pass Change Exploit
  3798. Aigaion <= 1.3.3 (topic topic_id) Remote SQL Injection Vulnerability
  3799. WinPcap 4.0 NPF.SYS Privilege Elevation Vulnerability PoC Exploit
  3800. vBulletin Mod RPG Inferno 2.4 (inferno.php) SQL Injection Vulnerability
  3801. OpenLD <= 1.2.2 (index.php id) Remote SQL Injection Vulnerability
  3802. Sun Java WebStart JNLP Stack Buffer Overflow Exploit PoC
  3803. FlashBB <= 1.1.8 (sendmsg.php) Remote File Inclusion Vulnerability
  3804. Program Checker (sasatl.dll 1.5.0.531) Javascript Heap Spraying Exploit
  3805. Mail Machine <= 3.989 Local File Inclusion Exploit
  3806. Linux Kernel < 2.6.20.2 IPV6_Getsockopt_Sticky Memory Leak PoC
  3807. SquirrelMail G/PGP Encryption Plug-in 2.0 Command Execution Vuln
  3808. PsNews 1.1 (show.php newspath) Local File Inclusion Vulnerability
  3809. PHP 5.2.3 bz2 com_print_typeinfo() Denial of Service Exploit
  3810. SecureBlackbox (PGPBBox.dll 5.1.0.112) Arbitary Data Write Exploit
  3811. Program Checker (sasatl.dll 1.5.0.531) DebugMsgLog Heap Spraying Exploit
  3812. Symantec AntiVirus symtdi.sys Local Privilege Escalation Exploit
  3813. MkPortal <= 1.1.1 reviews / gallery modules SQL Injection Exploit
  3814. MKPortal NoBoard Module (BETA) Remote File Inclusion Vulnerability
  3815. PHP 5.2.3 glob() Denial of Service Exploit
  3816. CMScout <= 1.23 (index.php) Remote SQL Injection Vulnerability
  3817. eSyndiCat Directory Software Multiple SQL Injection Vulnerabilities
  3818. Realtor 747 (index.php categoryid) Remote SQL Injection Vulnerbility
  3819. Prozilla Directory Script (directory.php cat_id) SQL Injection Vulnerbility
  3820. paFileDB 3.6 (search.php) Remote SQL Injection Vulnerability
  3821. Traffic Stats (referralUrl.php offset) Remote SQL Injection Vulnerbility
  3822. Flash Player/Plugin Video file parsing Remote Code Execution POC
  3823. Expert Advisior (index.php id) Remote SQL Injection Vulnerbility
  3824. Data Dynamics ActiveBar ActiveX (actbar3.ocx <= 3.1) Insecure Methods
  3825. Pictures Rating (index.php msgid) Remote SQL Injection Vulnerbility
  3826. Vivvo CMS <= 3.4 (index.php) Remote BLIND SQL Injection Exploit
  3827. QuickEStore <= 8.2 (insertorder.cfm) Remote SQL Injection Vulnerability
  3828. Joomla Component Expose <= RC35 Remote File Upload Vulnerability
  3829. BBS E-Market (postscript.php p_mode) Remote File Inclusion Vulnerability
  3830. Asterisk < 1.2.22 / 1.4.8 / 2.2.1 chan_skinny Remote Denial of Service
  3831. phpBB Module SupaNav 1.0.0 (link_main.php) RFI Vulnerability
  3832. A-shop <= 0.70 Remote File Deletion Vulnerability
  3833. Md-Pro <= 1.0.8x (Topics topicid) Remote SQL Injection Vulnerability
  3834. Versalsoft HTTP File Uploader AddFile() Remote Buffer Overflow Exploit
  3835. Joomla Component Pony Gallery <= 1.5 SQL Injection Vulnerability
  3836. Oracle 9i/10g evil views Change Passwords Exploit (CVE-2007-3855)
  3837. PHP <= 5.2.3 snmpget() object id Local Buffer Overflow Exploit
  3838. TeamSpeak 2.0 (Windows Release) Remote Denial of Service Exploit
  3839. Blog System 1.x (index.php news_id) Remote SQL Injection Vulnerability
  3840. Lotus Domino IMAP4 Server 6.5.4 Remote Buffer Overflow Exploit
  3841. Data Dynamics ActiveReport ActiveX (actrpt2.dll <= 2.5) Inscure Method
  3842. WSN Links Basic Edition (displaycat catid) SQL Injection Vulnerbility
  3843. RGameScript Pro (page.php id) Remote File Inclusion Vulnerability
  3844. JBlog 1.0 Create / Delete Admin Authentication Bypass Exploit
  3845. Joomla! CMS 1.5 beta 2 (search) Remote Code Execution Vulnerability
  3846. bwired (index.php newsID) Remote SQL Injection Vulnerability
  3847. Zenturi NixonMyPrograms Class (sasatl.dll v. 1.5.0.531) Remote BoF
  3848. MS Windows Explorer.exe Gif Image Denial of Service Exploit
  3849. Xserver 0.1 Alpha Post Request Remote Buffer Overflow Exploit
  3850. LinkedIn Toolbar 3.0.2.1098 Remote Buffer Overflow Exploit
  3851. PHP 5.2.3 win32std ext. safe_mode/disable_functions Protections Bypass
  3852. Confixx Pro <= 3.3.1 (saveserver.php) Remote File Inclusion Vulnerability
  3853. Entertainment CMS (Local Inclusion) Remote Command Execution Exploit
  3854. Article Directory (index.php page) Remote File Inclusion Vulnerability
  3855. Windows RSH daemon 1.7 Remote Buffer Overflow Exploit
  3856. IPSwitch IMail Server 2006 SEARCH Remote Stack Overflow Exploit
  3857. Webyapar 2.0 Multiple Remote SQL Injection Vulnerabilities
  3858. IndexScript <= 2.8 (show_cat.php cat_id) SQL Injection Vulnerability
  3859. Clever Internet ActiveX Suite 6.2 Arbitrary File Download/Overwrite
  3860. PHP php_gd2.dll imagepsloadfont Local Buffer Overflow PoC
  3861. IPSwitch IMail Server 2006 9.10 SUBSCRIBE Remote Overflow Exploit
  3862. CrystalPlayer 1.98 Playlist Crafted mls File Local Buffer Overflow Exploit
  3863. Nessus Vulnerability Scanner 3.0.6 ActiveX Remote Delete File Exploit
  3864. IBM AIX <= 5.3 sp6 capture Terminal Sequence Local Root Exploit
  3865. IBM AIX <= 5.3 sp6 pioout Arbitrary Library Loading Local Root Exploit
  3866. IBM AIX <= 5.3 sp6 ftp gets() Local Root Exploit
  3867. mlsrvx.dll 1.8.9.1 ArGoSoft Mail Server Data Write/Code Execution
  3868. Seditio CMS <= v121 (pfs.php) Remote File Upload Vulnerability
  3869. PHP 5.x (win32service) Local Safe Mode Bypass Exploit
  3870. Nessus Vulnerability Scanner 3.0.6 ActiveX Command Exec Exploit
  3871. Adult Directory (cat_id) Remote SQL Injection Vulnerability
  3872. SimpleBlog 3.0 (comments_get.asp id) Remote SQL Injection Vulnerability
  3873. VMware IntraProcessLogging.dll 5.5.3.42958 Arbitrary Data Write Exploit
  3874. PHP123 Top Sites (category.php cat) Remote SQL Injection Vuln
  3875. LinPHA <= 1.3.1 (new_images.php) Remote Blind SQL Injection Exploit
  3876. corehttp 0.5.3alpha (httpd) Remote Buffer Overflow Exploit
  3877. VMware Inc 6.0.0 (vielib.dll 2.2.5.42958) Remode Code Execution Exploit
  3878. VMware Inc 6.0.0 CreateProcess Remote Code Execution Exploit
  3879. wolioCMS Auth Bypass / Remote SQL Injection Vulnerabilities
  3880. Borland Interbase <= 2007 SP1 Create-Request Remote Overflow Exploit
  3881. Joomla Component com_gmaps 1.00 (mapId) Remote SQL Injection
  3882. Asterisk < 1.2.22, 1.4.8 IAX2 channel driver Remote Crash Exploit
  3883. Yahoo! Widget < 4.0.5 GetComponentVersion() Remote Overflow Exploit
  3884. MS Internet Explorer 6 DirectX Media Remote Overflow DoS Exploit
  3885. Live for Speed S1/S2/Demo (.mpr replay file) Buffer Overflow Exploit
  3886. paBugs <= 2.0 Beta 3 (main.php cid) Remote SQL Injection Exploit
  3887. AuraCMS [Forum Module] Remote SQL Injection Vulnerability
  3888. CHILKAT ASP String (CkString.dll <= 1.1) SaveToFile() Inscure Method
  3889. Envolution <= 1.1.0 (topic) Remote SQL Injection Exploit
  3890. Panda Antivirus 2008 Local Privilege Escalation Exploit
  3891. la-nai cms 1.2.14 Multiple Remote SQL Injection Vulnerabilities
  3892. Microsoft Visual 6 (VDT70.DLL NotSafe) Stack Overflow Exploit
  3893. PHP mSQL (msql_connect) Local Buffer Overflow PoC
  3894. YNP Portal System 2.2.0 (showpage.cgi p) Remote File Disclosure
  3895. Live for Speed S1/S2/Demo (.ply file) Buffer Overflow Exploit
  3896. Live for Speed S1/S2/Demo (.spr file) Buffer Overflow Exploit
  3897. CartWeaver (Details.cfm ProdID) Remote SQL Injection Vulnerability
  3898. Prozilla Pub Site Directory (directory.php cat) SQL Injection Vulnerbility
  3899. BIND 9 DNS Cache Poisoning Exploit (v0.3beta)
  3900. PhpHostBot <= 1.06 (svr_rootscript) Remote File Inclusion Vulnerability
  3901. PHPNews 0.93 (format_menue) Remote File Inclusion Vulnerability
  3902. FrontAccounting 1.12 Build 31 Remote File Inclusion Vulnerability
  3903. PHP mSQL (msql_connect) Local Buffer Overflow Exploit
  3904. FishCart <= 3.2 RC2 (fc_example.php) Remote File Inclusion Vulnerability
  3905. Cisco IOS Next Hop Resolution Protocol (NHRP) Denial of Service Exploit
  3906. Ncaster 1.7.2 (archive.php) Remote File Inclusion Vulnerability
  3907. PHP <= 5.2.3 snmpget() object id Local Buffer Overflow Exploit (EDI)
  3908. Php Blue Dragon CMS 3.0.0 Remote SQL Injection Exploit
  3909. Php Blue Dragon CMS 3.0.0 Remote File Inclusion Vulnerability
  3910. Php Blue Dragon CMS 3.0.0 Remote Code Execution Exploit
  3911. Pixlie 1.7 (pixlie.php root) Remote File Disclosure Vulnerability
  3912. Microsoft DXMedia SDK 6 (SourceUrl) ActiveX Remote Code Execution
  3913. Savant 3.1 Get Request Remote Overflow Exploit (Universal)
  3914. WengoPhone 2.x SIP Phone Remote Denial of Service Exploit
  3915. SOTEeSKLEP <= 3.5RC9 (file) Remote File Disclosure Vulnerability
  3916. Racer v0.5.3 beta 5 Remote Buffer Overflow Exploit
  3917. Prozilla Webring Website Script (category.php cat) Remote SQL Injection
  3918. CounterPath X-Lite 3.x SIP phone Remote Denial of Service Exploit
  3919. IBM Rational ClearQuest Web Login Bypass SQL Injection Vulnerability
  3920. SurgeMail 38k (SEARCH) Remote Buffer Overflow Exploit
  3921. WireShark < 0.99.6 MMS Remote Denial of Service Exploit
  3922. Easy Chat Server 2.2 Remote Denial of Service Exploit
  3923. EDraw Office Viewer Component 5.1 HttpDownloadFile() Insecure Method
  3924. GetMyOwnArcade (search.php query) Remote SQL Injection Vulnerability
  3925. Diskeeper 9 Remote Memory Disclosure Exploit
  3926. PHP <= 5.2.0 (php_win32sti) Local Buffer Overflow PoC (win32)
  3927. Mercury SMTPD Remote Preauth Stack Based Overrun PoC
  3928. Squirrelcart <= 1.x.x (cart.php) Remote File Inclusion Vulnerability
  3929. Mambo Component SimpleFAQ 2.11 Remote SQL Injection Vulnerability
  3930. Cisco IP Phone 7940 (3 SIP messages) Remote Denial of Service Exploit
  3931. Cisco IP Phone 7940 (10 SIP messages) Remote Denial of Service Exploit
  3932. eCentrex VOIP Client module (uacomx.ocx 2.0.1) Remote BOF Exploit
  3933. litecommerce 2004 (category_id) Remote SQL Injection Vulnerability
  3934. Mercury/32 4.51 SMTPD CRAM-MD5 Pre-Auth Remote Overflow Exploit
  3935. PHP <= 5.2.3 (php_win32sti) Local Buffer Overflow Exploit
  3936. PHP <= 5.2.3 (php_win32sti) Local Buffer Overflow Exploit (2)
  3937. PHP 5.2.3 php_ntuser ntuser_getuserlist() Local Buffer Overflow PoC
  3938. Joomla Component NeoRecruit <= 1.4 (id) SQL Injection Vulnerability
  3939. Mambo Component RemoSitory (cat) Remote SQL Injection Vulnerability
  3940. Joomla Component RSfiles <= 1.0.2 (path) File Download Vulnerability
  3941. Joomla Component Nice Talk <= 0.9.3 (tagid) SQL Injection Vulnerability
  3942. Joomla Component EventList <= 0.8 (did) SQL Injection Vulnerability
  3943. Joomla Component BibTeX <= 1.3 Remote Blind SQL Injection Exploit
  3944. PHP FFI Extension 5.0.5 Local Safe_mode Bypass Exploit
  3945. ProFTPD 1.x (module mod_tls) Remote Buffer Overflow Exploit
  3946. SunShop 4.0 RC 6 (search) Remote Blind SQL Injection Exploit
  3947. PHP Perl Extension Safe_mode BypassExploit
  3948. SIDVault LDAP Server Preauth Remote Buffer Overflow Exploit
  3949. Mercury/32 v3.32-v4.51 SMTP Pre-Auth EIP Overwrite Exploit
  3950. 2532|Gigs 1.2.1 (activateuser.php) Local File Inclusion Vulnerability
  3951. PHP <= 5.2.0 (php_iisfunc.dll) Local Buffer Overflow PoC (win32)
  3952. Thomson SIP phone ST 2030 Remote Denial of Service Exploit
  3953. SomeryC <= 0.2.4 (include.php skindir) Remote File Inclusion Vulnerability
  3954. BitchX 1.1 Final MODE Remote Heap Overflow Exploit (0-day)
  3955. NVR SP2 2.0 (nvUnifiedControl.dll v. 1.1.45.0)SetText() Remote Exploit
  3956. NVR SP2 2.0 (nvUtility.dll v. 1.0.14.0) SaveXMLFile() Inscure Method
  3957. NVR SP2 2.0 (nvUtility.dll v. 1.0.14.0) DeleteXMLFile() Inscure Method
  3958. XAMPP for Windows 1.6.3a Local Privilege Escalation Exploit
  3959. Arcadem 2.01 Remote SQL Injection / RFI Vulnerabilties
  3960. WBB2-Addon: Acrotxt v1 (show) Remote SQL Injection Vulnerability
  3961. Postcast Server Pro 3.0.61 / Quiksoft EasyMail (emsmtp.dll 6.0.1) BoF
  3962. Micro CMS 3.5 (revert-content.php) Remote SQL Injection Vulnerability
  3963. ACG News 1.0 (aid/catid) Remote SQL Injection Vulnerabilities
  3964. DL PayCart 1.01 (viewitem.php ItemID) Blind SQL Injection Exploit
  3965. VWar <= v1.5.0 R15 (mvcw.php) Remote File Inclusion Vulnerability
  3966. PHPNuke-Clan <= 4.2.0 (mvcw_conver.php) RFI Vulnerability
  3967. MSN messenger 7.x (8.0?) VIDEO Remote Heap Overflow Exploit
  3968. Yahoo! Messenger 8.1.0.413 (webcam) Remote Crash Exploit
  3969. xGB 2.0 (xGB.php) Remote Permission Bypass Vulnerability
  3970. MS Windows (GDI32.DLL) Denial of Service Exploit (MS07-046)
  3971. ABC estore 3.0 (cat_id) Remote Blind SQL Injection Exploit
  3972. PHPNS 1.1 (shownews.php id) Remote SQL Injection Vulnerability
  3973. phpBG 0.9.1 (rootdir) Remote File Inclusion Vulnerabilities
  3974. Pakupaku CMS <= 0.4 Remote File Upload / LFI Vulnerability
  3975. NMDeluxe 2.0.0 (id) Remote SQL Injection Vulnerability
  3976. Ourspace 2.0.9 (uploadmedia.cgi) Remote File Upload Vulnerability
  3977. Hexamail Server 3.0.0.001 (pop3) pre-auth Remote Overflow PoC
  3978. Norman Virus Control nvcoaft51.sys ioctl BF672028 Exploit
  3979. phpBB Links MOD 1.2.2 Remote SQL Injection Exploit
  3980. Wireshark < 0.99.5 DNP3 Dissector Infinite Loop Exploit
  3981. PPStream (PowerPlayer.dll 2.0.1.3829) Activex Remote Overflow Exploit
  3982. CKGold Shopping Cart 2.0 (category.php) Blind SQL Injection Exploit
  3983. Joomla! 1.5 Beta1/Beta2/RC1 Remote SQL Injection Exploit
  3984. Yahoo! Messenger (YVerInfo.dll <= 2007.8.27.1) ActiveX BoF Exploit
  3985. Weblogicnet (files_dir) Multiple Remote File Inclusion Vulnerabilities
  3986. Yvora CMS 1.0 (error_view.php ID) Remote SQL Injection Vulnerability
  3987. Virtual DJ 5.0 (m3u File) Local Buffer OverFlow Exploit
  3988. OTSTurntables 1.00 (m3u File) Local Buffer Overflow Exploit
  3989. eNetman v.20050830 (index.php page) Remote File Inclusion Vulnerability
  3990. Telecom Italy Alice Messenger Remote registry key manipulation Exploit
  3991. STPHPLibrary (STPHPLIB_DIR) Remote File Inclusion Vulnerability
  3992. Apple Quicktime < 7.2 SMIL Remote Integer Overflow PoC
  3993. CCProxy <= v6.2 Telnet Proxy Ping Overflow Exploit (meta)
  3994. Microsoft Visual Basic 6.0 VBP_Open OLE Local CodeExec Exploit
  3995. Web Oddity Web Server 0.09b Directory Transversal Exploit
  3996. PHPOF <= 20040226 (DB_adodb.class.php) RFI Vulnerability
  3997. AtomixMP3 2.3 (pls File) Local Buffer OverFlow Exploit
  3998. AnyInventory <= 2.0 (environment.php) Remote File Inclusion Vuln
  3999. GlobalLink 2.7.0.8 glItemCom.dll SetInfo() Heap Overflow Exploit
  4000. Trend Micro ServerProtect eng50.dll Remote Stack Overflow Exploit
  4001. phpMytourney (menu.php) Remote File Inclusion Vulnerability
  4002. Microsoft Visual FoxPro 6.0 (FPOLE.OCX v. 6.0.8450.0) Remote PoC
  4003. Webace-Linkscript 1.3 SE (start.php) Remote SQL Injection Vulnerability
  4004. RW::Download 2.0.3 lite (index.php dlid) Remote SQL Injection Vuln
  4005. GlobalLink 2.7.0.8 glitemflat.dll SetClientInfo() Heap Overflow Exploit
  4006. EDraw Office Viewer Component 5.2 ActiveX Remote BoF PoC
  4007. Online Fantasy Football League (OFFL) 0.2.6 RFI Vulnerabilities
  4008. BaoFeng2 Mps.dll Activex Multiple Remote Buffer Overflow PoCs
  4009. TLM CMS 3.2 Multiple Remote SQL Injection Vulnerabilities
  4010. Focus/SIS <= 1.0/2.2 Remote File Inclusion Vulnerabilities
  4011. fuzzylime cms <= 3.0 Local File Inclusion Vulnerability
  4012. Microsoft SQL Server Distributed Management Objects (sqldmo.dll) BoF
  4013. Sisfo Kampus 2006 (blanko.preview.php) Local File Disclosure Vuln
  4014. Txx CMS 0.2 Multiple Remote File Inclusion Vulnerabilities
  4015. phpress 0.2.0 (adisplay.php lang) Local File Inclusion Vulnerability
  4016. Joomla Component Restaurante Remote File Upload Vulnerability
  4017. WebED 0.8999a Multiple Remote File Inclusion Vulnerabilities
  4018. AuraCMS 1.5rc Multiple Remote SQL Injection Vulnerabilities
  4019. Sisfo Kampus 2006 (dwoprn.php f) Remote File Download Vulnerability
  4020. phpRealty 0.02 (MGR) Multiple Remote File Inclusion Vulnerabilities
  4021. Ultra Crypto Component (CryptoX.dll <= 2.0) SaveToFile() Inscure Method
  4022. Ultra Crypto Component (CryptoX.dll <= 2.0) Remote BoF Exploit
  4023. AuraCMS 2.1 Remote File Attachment / LFI Vulnerabilities
  4024. Lighttpd <= 1.4.16 FastCGI Header Overflow Remote Exploit
  4025. PHP <= 4.4.7 / 5.2.3 MySQL/MySQLi Safe Mode Bypass Vulnerability
  4026. Microsoft Visual Studio 6.0 (PDWizard.ocx) Remote Command Execution
  4027. Microsoft Visual Studio 6.0 (VBTOVSI.DLL 1.0.0.0) File Overwrite Exploit
  4028. NuclearBB Alpha 2 (root_path) Remote File Inclusion Vulnerability
  4029. X-Cart <= ? Multiple Remote File Inclusion Vulnerabilities
  4030. Wordpress Multiple Versions Pwnpress Exploitation Tookit (0.2pub)
  4031. Microsoft SQL Server Distributed Management Objects BoF Exploit
  4032. Apple Quicktime (Multiple Browsers) Command Execution PoC (0day)
  4033. KwsPHP Module jeuxflash 1.0 (id) Remote SQL Injection Vulnerability
  4034. Joomla Component joomlaradio v5 Remote File Inclusion Vulnerability
  4035. JetCast Server 2.0.0.4308 Remote Denial of Service Exploit
  4036. GForge < 4.6b2 (skill_delete) Remote SQL Injection Vulnerability
  4037. Ajax File Browser 3b (settings.inc.php approot) RFI Vulnerability
  4038. phpFFL 1.24 PHPFFL_FILE_ROOT Remote File Inclusion Vulnerabilities
  4039. PHP Webquest <= 2.5 (id_actividad) Remote SQL Injection Exploit
  4040. JBlog 1.0 (index.php id) Remote SQL Injection Exploit
  4041. HP ActiveX (hpqutil.dll ListFiles hpqutil.dll) Remote Heap Overflow PoC
  4042. Gelato (index.php post) Remote SQL Injection Exploit
  4043. Chupix CMS 0.2.3 (download.php) Remote File Disclosure Vulnerability
  4044. KwsPHP 1.0 (login.php) Remote SQL Injection Exploit
  4045. KwsPHP 1.0 Member_Space Module SQL Injection Exploit
  4046. KwsPHP 1.0 stats Module Remote SQL Injection Exploit
  4047. Joomla Component Flash Fun! 1.0 Remote File Inclusion Vulnerability
  4048. Joomla Component joom12Pic 1.0 Remote File Inclusion Vulnerability
  4049. SimpCMS <= all (keyword) Remote SQL Injection Vulnerability
  4050. Omnistar Article Manager Software (article.php) SQL Injection Exploit
  4051. Shop-Script FREE <= 2.0 Remote Command Execution Exploit
  4052. MW6 Technologies QRCode ActiveX 3.0 Remote File Overwrite Exploit
  4053. phpsyncml <= 0.1.2 Remote File Include Vulnerabilities
  4054. KwsPHP 1.0 sondages Module Remote SQL Injection Vulnerability
  4055. modifyform (modifyform.html) Remote File Inclusion Vulnerability
  4056. Apple Quicktime /w IE .qtl Version XAS Remote Exploit PoC
  4057. phpBB Mod Ktauber.com StylesDemo Blind SQL Injection Exploit
  4058. Airsensor M520 HTTPD Remote Preauth DoS / BOF PoC
  4059. jetAudio 7.x ActiveX DownloadFromMusicStore() Code Execution Exploit
  4060. Yahoo! Messenger 8.1.0.421 CYFT Object Arbitrary File Download
  4061. Mercury/32 4.52 IMAPD SEARCH command Post-Auth Overflow Exploit
  4062. Streamline PHP Media Server 1.0-beta4 RFI Vulnerability
  4063. Microsoft Visual Basic Enterprise Edition 6.0 SP6 Code Execution Exploit
  4064. Sun jre1.6.0_X isInstalled.dnsResolve Function Overflow PoC
  4065. OneCMS 2.4 (userreviews.php abc) Remote SQL Injection Exploit
  4066. phpBB Plus <= 1.53 (phpbb_root_path) Remote File Inclusion Vuln
  4067. Flip <= 3.0 Remoe Admin Creation Exploit
  4068. Flip <= 3.0 Remote Password Hash Disclosure Exploit
  4069. Lighttpd <= 1.4.17 FastCGI Header Overflow Remote Exploit
  4070. IPSwitch IMail Server 8.0x Remote Heap Overflow Exploit
  4071. neuron news 1.0 (index.php q) Local File Inclusion Vulnerability
  4072. Joomla Component com_slideshow Remote File Inclusion Vulnerability
  4073. iziContents <= RC6 (RFI/LFI) Multiple Remote Vulnerabilities
  4074. CMS Made Simple 1.2 Remote Code Execution Vulnerability
  4075. Clansphere 2007.4 (cat_id) Remote SQL Injection Vulnerability
  4076. Black Lily 2007 (products.php class) Remote SQL Injection Vulnerability
  4077. EasyMail MessagePrinter Object (emprint.DLL 6.0.1.0) BOF Exploit
  4078. Wordsmith 1.1b (config.inc.php _path) Remote File Inclusion Vuln
  4079. PHP-Nuke addon Nuke Mobile Entartainment LFI Vulnerability
  4080. helplink 0.1.0 (show.php file) Remote File Inclusion Vulnerability
  4081. phpFullAnnu (PFA) 6.0 Remote SQL Injection Vulnerability
  4082. Xitami Web Server 2.5 (If-Modified-Since) Remote BoF Exploit (0day)
  4083. DFD Cart 1.1 Multiple Remote File Inclusion Vulnerabilities
  4084. AskJeeves Toolbar 4.0.2.53 activex Remote Buffer Overflow Exploit
  4085. EB Design Pty Ltd (EBCRYPT.DLL v.2.0) Multiple Remote Vulnerabilites
  4086. sk.log <= 0.5.3 (skin_url) Remote File Inclusion Vulnerability
  4087. Motorola Timbuktu Pro <= 8.6.5 File Deletion/Creation Exploit
  4088. FrontAccounting 1.13 Remote File Inclusion Vulnerabilities
  4089. Softbiz Classifieds PLUS (id) Remote SQL Injection Vulnerability
  4090. Novus 1.0 (notas.asp nota_id) Remote SQL Injection Vulnerability
  4091. ActiveKB Knowledgebase 2.? (catId) Remote SQL Injection Vulnerability
  4092. Linux Kernel 2.4/2.6 x86-64 System Call Emulation Exploit
  4093. lustig.cms BETA 2.5 (forum.php view) Remote File Inclusion Vulnerability
  4094. Chupix CMS 0.2.3 (repertoire) Remote File Inclusion Vulnerability
  4095. IntegraMOD Nederland 1.4.2 Remote File Inclusion Vulnerability
  4096. PhFiTo 1.3.0 (SRC_PATH) Remote File Inclusion Vulnerability
  4097. Public Media Manager <= 1.3 Remote File Inclusion Vulnerability
  4098. Zomplog <= 3.8.1 upload_files.php Arbitrary File Upload Exploit
  4099. MDPro 1.0.76 Remote SQL Injection Exploit
  4100. Tor < 0.1.2.16 ControlPort Remote Rewrite Exploit
  4101. Mambo Component Mambads <= 1.5 Remote SQL Injection Vulnerability
  4102. mxBB Module mx_glance 2.3.3 Remote File Include Vulnerability
  4103. phpBB Mod OpenID 0.2.0 BBStore.php Remote File Inclusion Vuln
  4104. actSite 1.56 (news.php) Local File Inclusion Vulnerability
  4105. actSite 1.991 Beta (base.php) Remote File Inclusion Vulnerability
  4106. EDraw Office Viewer Component 5.3 FtpDownloadFile() Remote BoF
  4107. PHP-Fusion module Expanded Calendar 2.x SQL Injection Exploit
  4108. Segue CMS <= 1.8.4 index.php Remote File Inclusion Vulnerability
  4109. php wcms XT 0.0.7 Multiple Remote File Inclusion Vulnerabilities
  4110. smbftpd 0.96 SMBDirList-function Remote Format String Exploit
  4111. CyberLink PowerDVD CreateNewFile Arbitrary Remote Rewrite DoS
  4112. MultiCart 1.0 Remote Blind SQL Injection Exploit
  4113. Poppawid 2.7 (form) Remote File Inclusion Vulnerability
  4114. Web Template Management System 1.3 Remote SQL Injection
  4115. Ossigeno CMS <= 2.2a3 (footer.php) Remote File Inclusion Vulnerability
  4116. FSFDT v3.000 d9 (HELP) Remote Buffer Overflow Exploit
  4117. Trionic Cite CMS <= 1.2rev9 Remote File Inclusion Vulnerability
  4118. Furkan Tastan Blog Remote SQL Injection Vulnerability
  4119. Pegasus Imaging ThumbnailXpress 1.0 Remote Arbitrary File Deletion
  4120. Pegasus Imaging ImagXpress 8.0 Remote Arbitrary File Overwrite
  4121. Joomla panoramic component 1.0 Remote File Inclusion Vulnerability
  4122. ELSE IF CMS 0.6 Multiple Remote Vulnerabilities / Exploit
  4123. CMS Creamotion (securite.php) Remote File Inclusion Exploit
  4124. Picturesolution <= v2.1 (config.php path) Remote File Inclusion Vuln
  4125. SkaDate Online 5.0/6.0 Remote File Disclosure Vulnerability
  4126. Verlihub Control Panel <= 1.7.x Local File Inclusion Vulnerability
  4127. idmos-phoenix cms (aural.php) Remote File Inclusion Vulnerability
  4128. Joomla Flash Image Gallery Component RFI Vulnerability
  4129. Joomla Component wmtportfolio 1.0 Remote File Inclusion Vulnerability
  4130. wzdftpd <= 0.8.0 (USER) Remote Denial of Service Exploit
  4131. Joomla component MOSMediaLite451 Remote File Inclusion Vulnerability
  4132. TorrentTrader Classic 1.07 Multiple Remote Vulnerabilities
  4133. PHP Homepage M 1.0 galerie.php Remote SQL Injection Exploit
  4134. xKiosk 3.0.1i (xkurl.php PEARPATH) Remote File Inclusion Vulnerability
  4135. LiveAlbum 0.9.0 common.php Remote File Inclusion Vulnerability
  4136. Softbiz Jobs & Recruitment Remote SQL Injection Vulnerability
  4137. LightBlog 8.4.1.1 Remote Code Execution Exploit
  4138. Microsoft Visual FoxPro 6.0 FPOLE.OCX Arbitrary Command Execution
  4139. Joomla Component MP3 Allopass 1.0 Remote File Inclusion Vulnerability
  4140. Joomla Component JContentSubscription 1.5.8 Multiple RFI Vulns
  4141. TikiWiki 1.9.8 Remote PHP Injection Vulnerability
  4142. Drupal <= 5.2 PHP Zend Hash Vulnerability Exploitation Vector
  4143. cpDynaLinks 1.02 category.php Remote SQL Injection Exploit
  4144. NuSEO PHP Enterprise 1.6 Remote File Inclusion Vulnerability
  4145. Php-Stats 0.1.9.2 Multiple Vulnerabilities Exploit
  4146. Eggdrop Server Module Message Handling Remote BoF Exploit
  4147. Solaris 10 x86/sparc sysinfo Kernel Memory Disclosure Exploit
  4148. Solaris fifofs I_PEEK Kernel Memory Disclosure Exploit (x86/sparc)
  4149. PHP 5.2.4 ionCube extension safe_mode / disable_functions Bypass
  4150. WebDesktop 0.1 Remote File Inclusion Vulnerabilities
  4151. Pindorama 0.1 client.php Remote File Inclusion Vulnerability
  4152. PicoFlat CMS <= 0.4.14 index.php Remote File Inclusion Vulnerability
  4153. Joomla Flash uploader 2.5.1 Remote File Inclusion Vulnerabilities
  4154. Apple iTouch/iPhone 1.1.1 tif File Remote Jailbreak Exploit
  4155. KwsPHP 1.0 Newsletter Module Remote SQL Injection Exploit
  4156. Joomla Component com_colorlab 1.0 Remote File Inclusion Vulnerability
  4157. TikiWiki <= 1.9.8 tiki-graph_formula.php Command Execution Exploit
  4158. PBEmail 7 ActiveX Edition Insecure Method Exploit
  4159. Softbiz Recipes Portal Script Remote SQL Injection Vulnerability
  4160. KwsPHP 1.0 mg2 Module Remote SQL Injection Vulnerability
  4161. WWWISIS <= 7.1 (IsisScript) Local File Disclosure / XSS Vulnerabilities
  4162. Apache Tomcat (webdav) Remote File Disclosure Exploit
  4163. jetAudio 7.x (m3u File) Local SEH Overwrite Exploit
  4164. eXtremail <= 2.1.1 memmove() Remote Denial of Service Exploit
  4165. eXtremail <= 2.1.1 (LOGIN) Remote Stack Overflow Exploit
  4166. eXtremail <= 2.1.1 PLAIN authentication Remote Stack Overflow Exploit
  4167. eXtremail <= 2.1.1 Remote Heap Overflow PoC
  4168. doop CMS <= 1.3.7 (page) Local File Inclusion Vulnerability
  4169. Subversion 0.3.7/1.0.0 Remote Buffer Overflow Exploit
  4170. Artmedic CMS <= 3.4 (index.php page) Local File Inclusion Vulnerability
  4171. Okul Otomasyon Portal 2.0 Remote SQL Injection Vulnerability
  4172. GCALDaemon <= 1.0-beta13 Remote Denial of Service Exploit
  4173. Half-Life Server 3.1.1.0 Remote Buffer Overflow Exploit
  4174. Boa 0.93.15 HTTP Basic Authentication Bypass Exploit
  4175. PHPDJ 0.5 (djpage.php page) Remote File Inclusion Vulnerability
  4176. LimeSurvey <= 1.52 (language.php) Remote File Inclusion Vulnerability
  4177. awzMB <= 4.2 beta 1 Multiple Remote File Inclusion Vulnerabilities
  4178. ZZ FlashChat <= (help.php) 3.1 Local File Inclusion Vulnerability
  4179. Simple Machines Forum 1.1.3 Remote Blind SQL Injection Exploit
  4180. Vanilla <= 1.1.3 Remote Blind SQL Injection Exploit
  4181. PHP Project Management <= 0.8.10 Multiple RFI / LFI Vulnerabilities
  4182. BBPortalS <= 2.0 Remote Blind SQL Injection Exploit
  4183. PeopleAggregator <= 1.2pre6-release-53 Multiple RFI Vulnerabilities
  4184. Apache Tomcat (webdav) Remote File Disclosure Exploit (ssl support)
  4185. PHP 5.x COM functions safe_mode and disable_function bypass
  4186. SocketMail 2.2.8 fnc-readmail3.php Remote File Inclusion Vulnerability
  4187. TOWeLS 0.1 scripture.php Remote File Inclusion Vulnerability
  4188. LiteSpeed Web Server <= 3.2.3 Remote Source Code Disclosure Vuln
  4189. Simple PHP Blog (sphpblog) <= 0.5.1 Multiple Vulnerabilities
  4190. InstaGuide Weather Script (index.php) Local File Inclusion Vulnerability
  4191. Mozilla Firefox <= 2.0.0.7 Remote Denial of Service Exploit
  4192. DNS Recursion bandwidth amplification Denial of Service PoC
  4193. Flatnuke 3 Remote Command Execution / Privilege Escalation
  4194. Flatnuke 3 Remote Cookie Manipoulation / Privilege Escalation
  4195. PHP-Nuke Platinum 7.6.b.5 Remote File Inclusion Vulnerability
  4196. Oracle 10g CTX_DOC.MARKUP SQL Injection Exploit
  4197. PHP Image 1.2 Multiple Remote File Inclusion Vulnerabilities
  4198. eIQnetworks ESA SEARCHREPORT Remote Overflow Exploit (meta)
  4199. Jakarta Slide <= 2.1 RC1 Remote File Disclosure Exploit
  4200. TikiWiki <= 1.9.8.1 Local File Inclusion Vulnerabilities
  4201. CA BrightStor HSM <= r11.5 Remote Stack Based Overflow / DoS
  4202. Oracle 10g/11g SYS.LT.FINDRICSET Local SQL Injection Exploit
  4203. Oracle 10g/11g SYS.LT.FINDRICSET Local SQL Injection Exploit (2)
  4204. Oracle 10g LT.FINDRICSET Local SQL Injection Exploit (IDS evasion)
  4205. IBM Tivoli Storage Manager 5.3 Express CAD Service BoF Exploit
  4206. IBM Lotus Domino 7.0.2FP1 IMAP4 Server LSUB Command Exploit
  4207. GoSamba 1.0.1 (include_path) Multiple RFI Vulnerabilities
  4208. JobSite Professional 2.0 file.php Remote SQL Injection Vulnerability
  4209. CaupoShop Pro 2.x (action) Remote File Inclusion Vulnerability
  4210. emagiC CMS.Net 4.0 (emc.asp) Remote SQL Injection Vulnerability
  4211. GOM Player 2.1.6.3499 (GomWeb3.dll 1.0.0.12) Remote Overflow Exploit
  4212. FireConfig 0.5 (dl.php file) Remote File Disclosure Vulnerability
  4213. Sige 0.1 sige_init.php Remote File Inclusion Vulnerability
  4214. teatro 1.6 (basePath) Remote File Include Vulnerability
  4215. Sony CONNECT Player 4.x (m3u File) Local Stack Overflow Exploit
  4216. Kodak Image Viewer TIF/TIFF Code Execution Exploit PoC (MS07-055)
  4217. MySpace Resource Script (MSRS) 1.21 RFI Vulnerability
  4218. ProfileCMS 1.0 Remote File Upload Vulnerability Shell Upload Exploit
  4219. miniBB 2.1 (table) Remote SQL Injection Vulnerability
  4220. phpFaber URLInn 2.0.5 (dir_ws) Remote File Inclusion Vulnerability
  4221. PHP-AGTC membership system 1.1a Remote Add Admin Exploit
  4222. ModuleBuilder V1.0 (file) Remote File Disclosure Vulnerability
  4223. ISPworker 1.21 download.php Remote File Disclosure Vulnerability
  4224. WordPress Plugin BackUpWordPress <= 0.4.2b RFI Vulnerability
  4225. SonicWall SSL-VPN NeLaunchCtrl ActiveX Control Remote Exploit
  4226. Synergiser <= 1.2 RC1 Local File Inclusion / Full Path Disclosure
  4227. Scribe <= 0.2 Remote PHP Code Execution Vulnerability
  4228. DM Guestbook <= 0.4.1 Multiple Local File Inclusion Vulnerabilities
  4229. EDraw Flowchart ActiveX Control 2.0 Insecure Method Exploit
  4230. Ax Developer CMS 0.1.1 (index.php module) Local File Inclusion Vuln
  4231. Firefly Media Server <= 0.2.4 Remote Denial of Service Exploit
  4232. Ubuntu 6.06 DHCPd bug Remote Denial of Service Exploit
  4233. GuppY 4.6.3 (includes.inc selskin) Remote File Inclusion Vulnerability
  4234. Quick and Dirty Blog 0.4 (categories.php) Local File Inclusion Vuln
  4235. scWiki 1.0 Beta 2 (common.php pathdot) Remote File Inclusion Vuln
  4236. Vortex Portal 1.0.42 Remote File Inclusion Vulnerabilities
  4237. nuBoard 0.5 (index.php site) Remote File Inclusion Vulnerability
  4238. syndeoCMS 2.5.01 (cmsdir) Remote File Inclusion Vulnerability
  4239. JBC Explorer <= 7.20 RC 1 Remote Code Execution Exploit
  4240. ASP Message Board 2.2.1c Remote SQL Injection Vulnerability
  4241. Viewpoint Media Player for IE 3.2 Remote Stack Overflow PoC
  4242. jPORTAL 2 mailer.php Remote SQL Injection Vulnerability
  4243. IBM AIX <= 5.3.0 setlocale() Local Privilege Escalation Exploit
  4244. Adobe Shockwave ShockwaveVersion() Stack Overflow PoC
  4245. jPORTAL <= 2.3.1 articles.php Remote SQL Injection Vulnerability
  4246. MySQL <= 5.0.45 (Alter) Denial of Service Vulnerability
  4247. Microsoft Internet Explorer TIF/TIFF Code Execution (MS07-055)
  4248. Softbiz Auctions Script product_desc.php Remote SQL Injection Vuln
  4249. Softbiz Ad Management plus Script ver 1 Remote SQL Injection Vuln
  4250. Softbiz Banner Exchange Network Script 1.0 SQL Injection Vulnerability
  4251. Softbiz Link Directory Script Remote SQL Injection Vulnerability
  4252. patBBcode 1.0 bbcodeSource.php Remote File Inclusion Vulnerability
  4253. Myspace Clone Script Remote SQL Injection Vulnerability
  4254. Toko Instan 7.6 Multiple Remote SQL Injection Vulnerabilities
  4255. Apple Mac OS X 10.4.x Kernel i386_set_ldt() Integer Overflow PoC
  4256. Microsoft Jet Engine MDB File Parsing Stack Overflow PoC
  4257. Joomla Component Carousel Flash Image Gallery RFI Vulnerability
  4258. ProfileCMS <= 1.0 (id) Remote SQL Injection Vulnerability
  4259. Myspace Clone Script (index.php) Remote File Inclusion Vulnerability
  4260. net-finity (links.php) Remote SQL Injection Vulnerability
  4261. meBiblio 0.4.5 (index.php action) Remote File Inclusion Vulnerability
  4262. phpBBViet <= 02.03.2007 (phpbb_root_path) Remote File Inclusion
  4263. VigileCMS 1.4 Multiple Remote Vulnerabilities
  4264. HotScripts Clone Script Remote SQL Injection Vulnerability
  4265. IceBB 1.0-rc6 Remote Database Authentication Details Exploit
  4266. Sciurus Hosting Panel Remote Code Injection Exploit
  4267. Joomla Component JUser 1.0.14 Remote File Inclusion Vulnerability
  4268. bcoos 1.0.10 (LFI / SQL Injection) Multiple Remote Vulnerabilities
  4269. SkyPortal vRC6 Multiple Remote Vulnerabilities
  4270. Ucms <= 1.8 Backdoor Remote Command Execution Exploit
  4271. TalkBack 2.2.7 Multiple Remote File Inclusion Vulnerabilities
  4272. alstrasoft E-Friends <= 4.98 (seid) Multiple SQL Injection Vulnerabilities
  4273. DevMass Shopping Cart <= 1.0 Remote File Include Vulnerability
  4274. VigileCMS <= 1.8 Stealth Remote Command Execution Exploit
  4275. NetAuctionHelp 4.1 (nsearch) Remote SQL Injection Vulnerability
  4276. Content Injector 1.52 (index.php cat) Remote SQL Injection Vulnerability
  4277. PHPKIT 1.6.4pl1 article.php Remote SQL Injection Exploit
  4278. KB-Bestellsystem (kb_whois.cgi) Command Execution Vulnerability
  4279. Apple QuickTime 7.2/7.3 RTSP Response Remote SEH Overwrite PoC
  4280. Irola My-Time 3.5 Remote SQL Injection Vulnerability
  4281. Mp3 ToolBox 1.0 beta 5 (skin_file) Remote File Inclusion Vulnerability
  4282. Apple QuickTime 7.2/7.3 RSTP Response Code Exec Exploit (Vista/XP)
  4283. Amber Script 1.0 (show_content.php id) Local File Inclusion Vulnerability
  4284. WorkingOnWeb 2.0.1400 events.php Remote SQL Injection Vulnerability
  4285. PBLang <= 4.99.17.q Remote File Rewriting / Command Execution
  4286. project alumni <= 1.0.9 Remote XSS / SQL Injection Vulnerability
  4287. RunCMS <= 1.6 Local File Inclusion Vulnerability
  4288. Apple QuickTime 7.2/7.3 RTSP Response Universal Exploit (IE7/FF/Opera)
  4289. RunCMS <= 1.6 disclaimer.php Remote File Overwrite Exploit
  4290. IAPR COMMENCE 1.3 Multiple Remote File Inclusion Vulnerability
  4291. Softbiz Freelancers Script v.1 Remote SQL Injection Exploit
  4292. DeluxeBB <= 1.09 Remote Admin Email Change Exploit
  4293. Tilde CMS <= 4.x (aarstal) Remote SQL Injection Vulnerability
  4294. BitDefender Online Scanner 8 ActiveX Heap Overflow Exploit
  4295. Apple QuickTime 7.2/7.3 RSTP Response Universal Exploit (cool)
  4296. Eurologon CMS Multiple Remote SQL Injection Vulnerabilities
  4297. Eurologon CMS files.php Arbitrary File Download Vulnerability
  4298. PHP-Nuke NSN Script Depository 1.0.0 Remote Source Disclosure Vuln
  4299. wpQuiz 2.7 Multiple Remote SQL Injection Vulnerabilities
  4300. project alumni 1.0.9 (index.php act) Local File Inclusion Vulnerability
  4301. PHP-CON 1.3 (include.php) Remote File Inclusion Vulnerability
  4302. EHCP <= 0.22.8 Multiple Remote File Inclusion Vulnerabilities
  4303. Charrays CMS 0.9.3 Multiple Remote File Inclusion Vulnerabilities
  4304. Apple QuickTime 7.2/7.3 RSTP Response Universal Exploit (win/osx)
  4305. TuMusika Evolution 1.7R5 Remote File Disclosure Vulnerability
  4306. NoAh <= 0.9 pre 1.2 (filepath) Remote File Disclosure Vulnerabilities
  4307. Web-MeetMe 3.0.3 (play.php) Remote File Disclosure Vulnerability
  4308. WebED 0.0.9 (index.php) Remote File Disclosure Vulnerability
  4309. Seditio CMS <= 121 Remote SQL Injection Exploit
  4310. KML share 1.1 (region.php layer) Remote File Disclosure Vulnerability
  4311. LearnLoop 2.0beta7 (sFilePath) Remote File Disclosure Vulnerability
  4312. FTP Admin 0.1.0 (LFI/XSS/AB) Multiple Remote Vulnerabilities
  4313. Windows Media Player AIFF Divide By Zero Exception DoS PoC
  4314. RealPlayer 11 Malformed AU File Denial of Service Exploit
  4315. tellmatic 1.0.7 Multiple Remote File Inclusion Vulnerabilities
  4316. Rayzz Script 2.0 Remote / Local File Inclusion Vulnerabilities
  4317. phpBB Garage 1.2.0 Beta3 Remote SQL Injection Vulnerability
  4318. Snitz Forums 2000 Active.asp Remote SQL Injection Vulnerability
  4319. VLC 0.86 < 0.86d ActiveX Remote Bad Pointer Initialization PoC
  4320. Apple Mac OS X xnu <= 1228.0 Local Kernel Denial of Service PoC
  4321. Apple Mac OS X 10.5.0 (leopard) vpnd Remote Denial of Service PoC
  4322. Mambo/Joomla Component rsgallery <= 2.0b5 (catid) SQL Injection Vuln
  4323. Cisco Phone 7940 Remote Denial of Service Exploit
  4324. SineCMS <= 2.3.4 Calendar Remote SQL Injection Vulnerability
  4325. ezContents 1.4.5 (index.php link) Remote File Disclosure Vulnerability
  4326. Wordpress Plugin PictPress <= 0.91 Remote File Disclosure Vulnerability
  4327. SerWeb <= 2.0.0 dev1 2007-02-20 Multiple RFI / LFI Vulnerabilities
  4328. MWOpen E-Commerce leggi_commenti.asp Remote SQL Injection
  4329. Send ICMP Nasty Garbage (sing) Append File Logrotate Exploit
  4330. Firefly Media Server (mt-daapd) 2.4.1 / SVN 1699 Multiple Vulnerabilities
  4331. Simple HTTPD <= 1.38 Multiple Remote Vulnerabilities
  4332. Media Player Classic 6.4.9 MP4 File Stack Overflow Exploit
  4333. Windows Media Player 6.4 MP4 File Stack Overflow PoC
  4334. Nullsoft Winamp 5.32 MP4 tags Stack Overflow Exploit
  4335. PolDoc CMS 0.96 (download_file.php) File Disclosure Vulnerability
  4336. Flat PHP Board <= 1.2 Multiple Vulnerabilities
  4337. Content Injector 1.53 (index.php) Remote SQL Injection Vulnerability
  4338. Ace Image Hosting Script (id) Remote SQL Injection Vulnerability
  4339. DWdirectory <= 2.1 Remote SQL Injection Vulnerability
  4340. SH-News 3.0 (comments.php id) Remote SQL Injection Vulnerability
  4341. Lotfian.com DATABASE DRIVEN TRAVEL SITE SQL Injection Vuln
  4342. Falt4 CMS RC4 10.9.2007 Multiple Remote Vulnerabilities
  4343. Falcon CMS 1.4.3 (RFI/XSS) Multiple Remote Vulnerabilities
  4344. BarracudaDrive <= 3.7.2 Multiple Remote Vulnerabilities
  4345. MonAlbum 0.87 Upload Shell / Password Grabber Exploit
  4346. BadBlue <= 2.72b Multiple Remote Vulnerabilities
  4347. Online Media Technologies AVSMJPEGFILE.DLL 1.1 Remote BoF PoC
  4348. Simple HTTPD <= 1.41 (/aux) Remote Denial of Service Exploit
  4349. SquirrelMail G/PGP Plugin deletekey() Command Injection Exploit
  4350. Mcms Easy Web Make (index.php template) Local File Inclusion Vuln
  4351. HP Compaq Notebooks ActiveX Remote Code Execution Exploit
  4352. Wordpress <= 2.3.1 Charset Remote SQL Injection Vulnerability
  4353. ViArt CMS/Shop/HelpDesk 3.3.2 Remote File Inclusion Vulnerability
  4354. Apple Mac OS X xnu <= 1228.0 Local kernel Denial of Service PoC
  4355. HP OpenView Network Node Manager 07.50 CGI Remote BoF Exploit
  4356. Fastpublish CMS 1.9999 config[fsBase] RFI Vulnerability
  4357. CityWriter 0.9.7 head.php Remote File Inclusion Vulnerability
  4358. CMS Galaxie Software (category_id) Remote SQL Injection Vulnerability
  4359. MMS Gallery PHP 1.0 (id) Remote File Disclosure Vulnerability
  4360. xml2owl 0.1.1 (filedownload.php) Remote File Disclosure Vulnerability
  4361. Hosting Controller 6.1 Hot fix <= 3.3 Multiple Remote Vulnerabilities
  4362. Adult Script <= 1.6 Unauthorized Administrative Access Exploit
  4363. Samba 3.0.27a send_mailslot() Remote Buffer Overflow PoC
  4364. 123tkShop 0.9.1 Remote Authentication Bypass Vulnerability
  4365. Anon Proxy Server 0.1000 Remote Command Execution Vulnerability
  4366. Oreon 1.4 / Centreon 1.4.1 Multiple RFI Vulnerabilties
  4367. Form Tools 1.5.0b Multiple Remote File Inclusion Vulnerabilities
  4368. PHP Real Estate (fullnews.php id) Remote SQL Injection Vulnerability
  4369. GF-3XPLORER 2.4 (XSS/LFI/Etc.) Multiple Remote Vulnerabilities
  4370. MOG-WebShop (index.php group) Remote SQL Injection Exploit
  4371. FreeWebshop 2.2.1 Remote Blind SQL Injection Exploit
  4372. MySpace Content Zone 3.x Remote File Upload Vulnerability
  4373. WFTPD Explorer Pro 1.0 Remote Heap Overflow PoC
  4374. FreeWebshop <= 2.2.7 (cookie) Admin Password Grabber Exploit
  4375. rooter VDSL Device (Goahead WEBSERVER) Disclosure Vulnerability
  4376. MS Windows Message Queuing Service RPC BOF Exploit (MS07-065)
  4377. RavWare Software MAS Flic Control Remote Buffer Overflow Exploit
  4378. RaidenHTTPD 2.0.19 (ulang) Remote Command Execution Exploit
  4379. SurgeMail v.38k4 webmail Host header Denial of Service Exploit
  4380. Rosoft Media Player <= 4.1.7 .M3U Stack Overflow Exploit
  4381. phpMyRealty 1.0.x (search.php type) Remote SQL Injection Vulnerability
  4382. jetAudio 7.0.5 COWON Media Center MP4 Stack Overflow Exploit
  4383. iMesh <= 7.1.0.x (IMWeb.dll 7.0.0.x) Remote Heap Overflow Exploit
  4384. Dokeos 1.8.4 Bypass Upload Shell From Your Profile Vulnerability
  4385. 3proxy 0.5.3g logurl() Remote Buffer Overflow Exploit (win32) (pl)
  4386. PhpMyDesktop|arcade 1.0 Final (phpdns_basedir) RFI Vulnerability
  4387. Linux Kernel < 2.6.11.5 BLUETOOTH Stack Local Root Exploit
  4388. HP Software Update client 3.0.8.4 Multiple Remote Vulnerabilities
  4389. xeCMS 1.x (view.php list) Remote File Disclosure Vulnerability
  4390. Apple Mac OS X mount_smbfs Stack Based Buffer Overflow Exploit
  4391. MS Windows 2000 AS SP4 Message Queue Exploit (MS07-065)
  4392. Sendmail with clamav-milter < 0.91.2 Remote Root Exploit
  4393. nicLOR CMS (sezione_news.php) Remote SQL Injection Vulnerability
  4394. NmnNewsletter 1.0.7 (output) Remote File Inclusion Vulnerability
  4395. Arcadem LE 2.04 (loadadminpage) Remote File Inclusion Vulnerability
  4396. 1024 CMS 1.3.1 (LFI/SQL) Multiple Remote Vulnerabilities
  4397. mBlog 1.2 (page) Remote File Disclosure Vulnerability
  4398. Social Engine 2.0 Multiple Local File Inclusion Vulnerabilities
  4399. Shadowed Portal <= 5.7d3 Remote Command Execution Exploit
  4400. Shadowed Portal <= 5.7d3 (POST) Remote File Inclusion Vulnerability
  4401. Wallpaper Site 1.0.09 (category.php) Remote SQL Injection Vulnerability
  4402. Ip Reg 0.3 Multiple Remote SQL Injection Vulnerabilities
  4403. zBlog 1.2 Remote SQL Injection Vulnerability
  4404. OpenSSL < 0.9.7l / 0.9.8d SSLv2 Client Crash Exploit
  4405. PHP ZLink 0.3 (go.php) Remote SQL Injection Exploit
  4406. Adult Script <= 1.6.5 Multiple Remote SQL Injection Vulnerabilities
  4407. MMSLamp (idpro) Remote SQL Injection Vulnerability
  4408. WebSihirbazi 5.1.1 (pageid) Remote SQL Injection Vulnerability
  4409. MeGaCheatZ 1.1 Multiple Remote SQL Injection Vulnerabilities
  4410. CuteNews <= 1.4.5 Admin Password md5 Hash Fetching Exploit
  4411. ThemeSiteScript 1.0 (index.php loadadminpage) RFI Vulnerability
  4412. Jupiter 1.1.5ex Privileges Escalation Exploit
  4413. Agares PhpAutoVideo 2.21 Remote/Local File Inclusion Vulnerabilities
  4414. Joomla Component mosDirectory 2.3.2 Remote File Inclusion Vuln
  4415. BadBlue 2.72 PassThru Remote Buffer Overflow Exploit
  4416. TeamCalPro 3.1.000 Multiple Remote/Local File Inclusion Vulnerabilities
  4417. AuraCMS 2.2 (admin_users.php) Remote Add Administrator Exploit
  4418. RunCMS 1.6 Get Admin Cookie Remote Blind SQL Injection Exploit
  4419. MailMachine Pro 2.2.4 Remote SQL Injection Vulnerability
  4420. PMOS Help Desk <= 2.4 Remote Command Execution Exploit
  4421. RunCMS 1.6 Multiple Remote Vulnerabilities
  4422. eSyndiCat Link Exchange Script 2005-2006 SQL Injection Vulnerability
  4423. RunCMS 1.6 Remote Blind SQL Injection Exploit (IDS evasion)
  4424. Blakord Portal <= Beta 1.3.A (all modules) SQL Injection Vulnerability
  4425. XZero Community Classifieds <= 4.95.11 LFI / SQL Injection
  4426. XZero Community Classifieds <= 4.95.11 Remote File Inclusion Vuln
  4427. PNphpBB2 <= 1.2i (printview.php phpEx) Local File Inclusion Vuln
  4428. March Networks DVR 3204 Logfile Information Disclosure Exploit
  4429. ZeusCMS <= 0.3 Remote Blind SQL Injection Exploit
  4430. Joovili <= 3.0.6 (joovili.images.php) Remote File Disclosure Vulnerability
  4431. xml2owl 0.1.1 showCode.php Remote Command Execution Vulnerability
  4432. SkyFex Client 1.0 ActiveX Start() Method Remote Stack Overflow
  4433. XCMS <= 1.82 Remote Local File Inclusion Vulnerability
  4434. Hot or Not Clone by Jnshosts.com Database Backup Dump Vulnerability
  4435. NoseRub <= 0.5.2 Login SQL Injection Vulnerability
  4436. Persits Software XUpload Control AddFolder() Buffer Overflow Exploit
  4437. jPORTAL 2.3.1 & UserPatch (forum.php) Remote Code Execution Exploit
  4438. Mihalism Multi Forum Host <= 3.0.x Remote File Inclusion Vulnerability
  4439. CCMS 3.1 Demo Remote SQL Injection Exploit
  4440. CMS Made Simple <= 1.2.2 (TinyMCE module) SQL Injection Vuln
  4441. Kontakt Formular 1.4 Remote File Inclusion Vulnerability
  4442. Mihalism Multi Host 2.0.7 download.php Remote File Disclosure Vuln
  4443. XCMS <= 1.83 Remote Command Execution Exploit
  4444. Bitweaver R2 CMS Remote File Upload / Disclosure Vulnerabilities
  4445. MatPo Bilder Galerie 1.1 Remote File Inclusion Vulnerability
  4446. SanyBee Gallery 0.1.1 (p) Local File Inclusion Vulnerability
  4447. w-Agora <= 4.2.1 (cat) Remote SQL Injection Vulnerability
  4448. IBM Domino Web Access Upload Module inotes6.dll BoF Exploit
  4449. Macrovision Installshield isusweb.dll SEH Overwrite Exploit
  4450. IBM Domino Web Access Upload Module dwa7w.dll BoF Exploit
  4451. IPTBB <= 0.5.4 (viewdir id) Remote Sql Injection Vulnerability
  4452. MyPHP Forum <= 3.0 (Final) Multiple SQL Injection Vulnerabilities
  4453. Zenphoto 1.1.3 (rss.php albumnr) Remote SQL Injection Exploit
  4454. oneSCHOOL (all versions) admin/login.asp SQL Injection exploit
  4455. Vantage Linguistics AnswerWorks 4 API ActiveX Control BoF Exploit
  4456. WebPortal CMS <= 0.6.0 (index.php m) Remote SQL Injection Exploit
  4457. Joomla Component PU Arcade <= 2.1.3 SQL Injection Vulnerability
  4458. AGENCY4NET WEBFTP 1 download2.php File Disclosure Vulnerability
  4459. DivX Player 6.6.0 ActiveX SetPassword() Denial of Service PoC
  4460. ClipShare (uprofile.php UID) Remote SQL Injection Vulnerability
  4461. MyPHP Forum <= 3.0 (Final) Remote SQL Injection Vulnerability
  4462. Site@School <= 2.4.10 Remote Blind SQL Injection Exploit
  4463. NetRisk <= 1.9.7 Remote/Local File Inclusion Vulnerability
  4464. samPHPweb (db.php commonpath) Remote File Inclusion Vulnerability
  4465. WebPortal CMS 0.6-beta Remote Password Change Exploit
  4466. samPHPweb (songinfo.php) Remote SQL Injection Vulnerability
  4467. ClipShare 2.6 Remote User Password Change Exploit
  4468. SNETWORKS PHP CLASSIFIEDS 5.0 Remote File Inclusion Vulnerability
  4469. CoolPlayer 2.17 .m3u Playlist Stack Overflow Exploit
  4470. Tribisur <= 2.0 Remote SQL Injection Exploit
  4471. Invision Power Board <= 2.1.7 ACTIVE XSS/SQL Injection Exploit
  4472. NetRisk 1.9.7 (change_submit.php) Remote Password Change Exploit
  4473. MODx CMS 0.9.6.1 Multiple Remote Vulnerabilities
  4474. Wordpress Plugin Wp-FileManager 1.2 Remote Upload Vulnerability
  4475. RunCMS Newbb_plus <= 0.92 Client IP Remote SQL Injection Exploit
  4476. Uebimiau Web-Mail 2.7.10/2.7.2 Remote File Disclosure Vulnerability
  4477. XOOPS mod_gallery Zend_Hash_key + Extract RFI Vulnerability
  4478. PortalApp 4.0 (SQL/XSS/Auth Bypasses) Multiple Remote Vulnerabilities
  4479. LoudBlog <= 0.6.1 (parsedpage) Remote Code Execution Vulnerability
  4480. Horde Web-Mail 3.x (go.php) Remote File Disclosure Vulnerability
  4481. CuteNews 1.1.1 (html.php) Remote Code Execution Vulnerability
  4482. NetRisk 1.9.7 (XSS/SQL) Multiple Remote Vulnerabilities
  4483. DCP-Portal <= 6.11 Remote SQL Injection Exploit
  4484. SineCMS <= 2.3.5 Local File Inclusion / RCE Vulnerabilities
  4485. Shop-Script 2.0 index.php Remote File Disclosure Vulnerability
  4486. Half-Life CSTRIKE Server 1.6 Denial of Service Exploit (no-steam)
  4487. OneCMS 2.4 Remote SQL Injection / Upload Vulnerabilities
  4488. FlexBB <= 0.6.3 Cookies Remote SQL Injection Exploit
  4489. EkinBoard <= 1.1.0 Remote File Upload / Auth Bypass Vulnerabilities
  4490. Eggblog <= 3.1.0 Cookies Remote SQL Injection Exploit
  4491. TUTOS 1.3 (cmd.php) Remote Command Execution Vulnerability
  4492. ClamAV 0.91.2 libclamav MEW PE Buffer Overflow Exploit
  4493. SmallNuke 2.0.4 Pass Recovery Remote SQL Injection Exploit
  4494. Zero CMS 1.0 Alpha Arbitrary File Upload / SQL Injection Vulnerabilities
  4495. EvilBoard 0.1a (SQL/XSS) Multiple Remote Vulnerabilities
  4496. Microsoft DirectX SAMI File Parsing Remote Stack Overflow Exploit
  4497. PHP Webquest 2.6 (id_actividad) Remote SQL Injection Exploit
  4498. Move Networks Quantum Streaming Player SEH Overwrite Exploit
  4499. Gateway Weblaunch ActiveX Control Insecure Method Exploit
  4500. osData <= 2.08 Modules Php121 Local File Inclusion Vulnerability
  4501. UploadImage/UploadScript 1.0 Remote Change Admin Password Exploit
  4502. PHP Webquest 2.6 Get Database Credentials Vulnerability
  4503. Microsoft FoxServer (vfp6r.dll 6.0.8862.0) ActiveX Command Execution
  4504. Microsoft Rich Textbox Control 6.0 (SP6) SaveFile() Insecure Method
  4505. Tuned Studios Templates Local File Inclusion Vulnerability
  4506. SAP MaxDB <= 7.6.03.07 pre-auth Remote Command Execution Exploit
  4507. McAfee E-Business Server Remote pre-auth Code Execution / DoS PoC
  4508. Docebo <= 3.5.0.3 (lib.regset.php) Command Execution Exploit
  4509. DomPHP <= 0.81 Remote Add Administrator Exploit
  4510. SunOS 5.10 Remote ICMP Kernel Crash Exploit
  4511. MTCMS <= 2.0 Remote SQL Injection Vulnerabilities
  4512. DomPHP 0.81 (index.php page) Remote File Inclusion Vulnerability
  4513. Evilsentinel <= 1.0.9 (multiple vulnerabilities) Disable Exploit
  4514. Quicktime Player <= 7.3.1.70 (rtsp) Buffer Overflow Vulnerability
  4515. iGaming CMS <= 1.3.1/1.5 Remote SQL Injection Exploit
  4516. DigitalHive <= 2.0 RC2 (user_id) Remote SQL Injection Exploit
  4517. DomPHP 0.81 (index.php cat) Remote SQL Injection Vulnerability
  4518. vcart 3.3.2 Multiple Remote File Inclusion Vulnerabilities
  4519. AJchat 0.10 unset() bug Remote SQL Injection Vulnerability
  4520. Docebo <= 3.5.0.3 (lib.regset.php/non-blind) SQL Injection Exploit
  4521. Microsoft Visual InterDev 6.0 (SP6) .sln File Local Buffer Overflow Exploit
  4522. Linux Kernel <=2.6.21.1 IPv6 Jumbo Bug Remote DoS Exploit
  4523. StreamAudio ChainCast ProxyManager ccpm_0237.dll BoF Exploit
  4524. ImageAlbum 2.0.0b2 (id) Remote SQL Injection Vulnerability
  4525. 0DayDB 2.3 (delete id) Remote Admin Bypass Exploit
  4526. photokron <= 1.7 (update script) Remote Database Disclosure Exploit
  4527. Agares PhpAutoVideo 2.21 (articlecat) SQL Injection Vulnerability
  4528. TaskFreak! <= 0.6.1 Remote SQL Injection Vulnerability
  4529. ASP Photo Gallery 1.0 Multiple SQL Injection Vulnerabilities
  4530. TutorialCMS 1.02 (userName) Remote SQL Injection Vulnerability
  4531. minimal Gallery 0.8 Remote File Disclosure Vulnerability
  4532. NUVICO DVR NVDV4 / PdvrAtl Module (PdvrAtl.DLL 1.0.1.25) BoF Exploit
  4533. Binn SBuilder (nid) Remote Blind SQL Injection Vulnerability
  4534. Agares PhpAutoVideo 2.21 (articlecat) Remote SQL Injection Exploit
  4535. Quicktime Player 7.3.1.70 rtsp Remote Buffer Overflow Exploit PoC
  4536. X7 Chat <= 2.0.5 (day) Remote SQL Injection Exploit
  4537. Xforum 1.4 (topic) Remote SQL Injection Exploit
  4538. Macrovision FlexNet DownloadManager Insecure Methods Exploit
  4539. RichStrong CMS (showproduct.asp cat) Remote SQL Injection Exploit
  4540. Cisco VPN Client IPSec Driver Local kernel system pool Corruption PoC
  4541. LulieBlog 1.0.1 (delete id) Remote Admin Bypass Vulnerability
  4542. Macrovision FlexNet isusweb.dll DownloadAndExecute Method Exploit
  4543. FaScript FaMp3 v1 (show.php) Remote SQL Injection Vulnerability
  4544. FaScript FaName v1 (page.php) Remote SQL Injection Vulnerability
  4545. FaScript FaPersian Petition (show.php) SQL Injection Vulnerability
  4546. FaScript FaPersianHack v1 (show.php) SQL Injection Vulnerability
  4547. RTS Sentry Digital Surveillance (CamPanel.dll 2.1.0.2) BOF Exploit
  4548. Blogcms 4.2.1b (SQL/XSS) Multiple Remote Vulnerabilities
  4549. Aria 0.99-6 (effect.php page) Local File Inclusion Vulnerability
  4550. MailBee WebMail Pro 4.1 (ASP.NET) Remote File Disclosure Vulnerability
  4551. ALITALK 1.9.1.1 Multiple Remote Vulnerabilities
  4552. MiniWeb 0.8.19 Multiple Remote Vulnerabilities
  4553. PixelPost 1.7 Remote Blind SQL Injection Exploit
  4554. PHP-RESIDENCE 0.7.2 (Search) Remote SQL Injection Vulnerability
  4555. Gradman <= 0.1.3 (agregar_info.php) Local File Inclusion Exploit
  4556. MyBulletinBoard (MyBB) <= 1.2.10 Remote Code Execution Exploit
  4557. MyBulletinBoard (MyBB) <= 1.2.10 Multiple Remote Vulnerabilities
  4558. PHPEcho CMS 2.0 (id) Remote SQL Injection Vulnerability
  4559. Mini File Host 1.2 (upload.php language) LFI Vulnerability
  4560. Crystal Reports XI Release 2 (Enterprise Tree Control) ActiveX BOF/DoS
  4561. Digital Data Communications (RtspVaPgCtrl) Remote BOF Exploit
  4562. AuraCMS 1.62 (stat.php) Remote Code Execution Exploit
  4563. MS Windows Message Queuing Service RPC BOF Exploit (dnsname)
  4564. OpenBSD 4.2 rtlabel_id2name() Local Null Pointer Dereference DoS
  4565. Gradman <= 0.1.3 (info.php tabla) Local File Inclusion Vulnerability
  4566. Small Axe 0.3.1 (linkbar.php cfile) Remote File Inclusion Vulnerability
  4567. MS Visual Basic Enterprise Ed. 6 SP6 .dsr File Handling BOF Exploit
  4568. Wordpress plugin WP-Forum 1.7.4 Remote SQL Injection Vulnerability
  4569. Mini File Host 1.2.1 (upload.php language) Local File Inclusion Exploit
  4570. Belkin Wireless G Plus MIMO Router F5D9230-4 Auth Bypass Vulnerability
  4571. TikiWiki < 1.9.9 tiki-listmovies.php Directory Traversal Vulnerability
  4572. Frimousse 0.0.2 explorerdir.php Local Directory Traversal Vulnerability
  4573. 360 Web Manager 3.0 (IDFM) SQL Injection Vulnerability
  4574. Bloofox 0.3 (SQL/FD) Multiple Remote Vulnerabilities
  4575. Toshiba Surveillance (MeIpCamX.DLL 1.0.0.4) Remote BOF Exploit
  4576. Axigen <= 5.0.2 AXIMilter Remote Format String Exploit
  4577. Windows RSH daemon <= 1.8 Remote Buffer Overflow Exploit
  4578. Citadel SMTP <= 7.10 Remote Overflow Exploit
  4579. Coppermine Photo Gallery 1.4.10 Remote SQL Injection Exploit
  4580. Mooseguy Blog System 1.0 (blog.php month) SQL Injection Vulnerability
  4581. boastMachine <= 3.1 (mail.php id) SQL Injection Vulnerability
  4582. OZJournals 2.1.1 (id) File Disclosure Vulnerability
  4583. IDM-OS 1.0 (download.php fileName) File Disclosure Vulnerability
  4584. Lama Software (14.12.2007) Multiple Remote File Inclusion Vulnerabilities
  4585. AlstraSoft Forum Pay Per Post Exchange 2.0 SQL Injection Vulnerability
  4586. MoinMoin 1.5.x MOIND_ID cookie Bug Remote Exploit
  4587. aflog 1.01 comments.php XSS / SQL Injection Vulnerability
  4588. HP Virtual Rooms WebHPVCInstall Control Buffer Overflow Exploit
  4589. Easysitenetwork Recipe (categoryid) Remote SQL Injection Vulnerability
  4590. Coppermine Photo Gallery <= 1.4.14 Remote SQL Injection Exploit
  4591. SetCMS 3.6.5 (setcms.org) Remote Command Execution Exploit
  4592. YaBB SE <= 1.5.5 Remote Command Execution Exploit
  4593. PHP-Nuke < 8.0 (sid) Remote SQL Injection Exploit
  4594. PHP-Nuke <= 8.0 Final (sid) Remote SQL Injection Exploit
  4595. Invision Gallery <= 2.0.7 Remote SQL Injection Exploit
  4596. Lycos FileUploader Control ActiveX Remote Buffer Overflow Exploit
  4597. Foojan WMS 1.0 (index.php story) Remote SQL Injection Vulnerability
  4598. LulieBlog 1.02 (voircom.php id) Remote SQL Injection Vulnerability
  4599. Web Wiz Forums <= 9.07 (sub) Remote Directory Traversal Vulnerability
  4600. Web Wiz Rich Text Editor 4.0 Multiple Remote Vulnerabilities
  4601. Web Wiz NewsPad 1.02 (sub) Remote Directory Traversal Vulnerability
  4602. Siteman 1.1.9 (cat) Remote File Disclosure Vulnerability
  4603. Comodo AntiVirus 2.0 ExecuteStr() Remote Command Execution Exploit
  4604. SLAED CMS 2.5 Lite (newlang) Local File Inclusion Vulnerability
  4605. Liquid-Silver CMS 0.1 (update) Local File Inclusion Vulnerability
  4606. Aconon Mail 2004 Remote Directory Traversal Vulnerability
  4607. Apple iPhone 1.1.2 Remote Denial of Service Exploit
  4608. Move Networks Upgrade Manager Control Buffer Overflow Exploit
  4609. Seagull 0.6.3 (optimizer.php files) Remote File Disclosure Vulnerability
  4610. ImageShack Toolbar 4.5.7 FileUploader Class InsecureMethod PoC
  4611. Gateway WebLaunch ActiveX Remote Buffer Overflow Exploit
  4612. Tiger PHP News System 1.0b build 39 Remote SQL Injection Vulnerability
  4613. flinx <= 1.3 (category.php id) Remote SQL Injection Vulnerability
  4614. Sejoong Namo ActiveSquare 6 NamoInstaller.dll install Method Exploit
  4615. Persits XUpload 3.0 AddFile() Remote Buffer Overflow Exploit
  4616. CandyPress eCommerce suite 4.1.1.26 Multiple Remote Vulnerabilities
  4617. Simple Forum 3.2 (FD/XSS) Multiple Remote Vulnerabilities
  4618. phpIP 4.3.2 Numerous Remote SQL Injection Vulnerabilities
  4619. Bubbling Library 1.32 Multiple Local File Inclusion Vulnerabilities
  4620. Wordpress Plugin WP-Cal 0.3 editevent.php SQL Injection Vulnerability
  4621. Wordpress plugin fGallery 2.4.1 fimrss.php SQL Injection Vulnerability
  4622. Oracle 10g R1 pitrig_drop PLSQL Injection (get users hash)
  4623. Oracle 10g R1 pitrig_truncate PLSQL Injection (get users hash)
  4624. Oracle 10g R1 xdb.xdb_pitrig_pkg PLSQL Injection (change sys password)
  4625. Oracle 10g R1 xdb.xdb_pitrig_pkg Buffer Overflow Exploit (PoC)
  4626. IrfanView 4.10 .FPX File Memory Corruption Exploit
  4627. MailBee Objects 5.5 (MailBee.dll) Remote Insecure Method Exploit
  4628. phpMyClub 0.0.1 (page_courante) Local File Inclusion Vulnerability
  4629. bubbling library 1.32 dispatcher.php Remote File Disclosure Vulnerabilities
  4630. Bigware Shop 2.0 pollid Remote SQL Injection Vulnerability
  4631. Smart Publisher 1.0.1 (disp.php) Remote Code Execution Vulnerability
  4632. Safenet IPSecDrv.sys <= 10.4.0.12 Local kernel ring0 SYSTEM Exploit
  4633. Chilkat Mail ActiveX 7.8 (ChilkatCert.dll) Insecure Method Exploit
  4634. phpCMS 1.2.2 (parser.php file) Remote File Disclosure Vulnerability
  4635. Mambo Component Newsletter (listid) Remote SQL Injection Vulnerability
  4636. Mambo Component Fq (listid) Remote SQL Injection Vulnerability
  4637. Mambo Component MaMML (listid) Remote SQL Injection Vulnerability
  4638. Mambo Component Glossary 2.0 (catid) SQL Injection Vulnerability
  4639. Mambo Component musepoes (aid) Remote SQL Injection Vulnerability
  4640. Connectix Boards <= 0.8.2 template_path Remote File Inclusion Exploit
  4641. Wordpress Plugin Adserve 0.2 adclick.php SQL Injection Exploit
  4642. Mambo Component Recipes 1.00 (id) Remote SQL Injection Vulnerability
  4643. Mambo Component jokes 1.0 (cat) SQL Injection Vulnerability
  4644. Mambo Component EstateAgent 0.1 Remote SQL Injection Vulnerability
  4645. Wordpress Plugin WassUp 1.4.3 (spy.php to_date) SQL Injection Exploit
  4646. ibProArcade <= 3.3.0 Remote SQL Injection Exploit
  4647. Coppermine Photo Gallery 1.4.14 Remote Command Execution Exploit
  4648. Joomla Component ChronoForms 2.3.5 RFI Vulnerabilities
  4649. PHP Links <= 1.3 (vote.php id) Remote SQL Injection Vulnerability
  4650. PHP Links <= 1.3 smarty.php Remote File Inclusion Vulnerability
  4651. MySpace Uploader (MySpaceUploader.ocx 1.0.0.4) BOF Exploit
  4652. Mindmeld 1.2.0.10 Multiple Remote File Inclusion Vulnerabilities
  4653. sflog! 0.96 Remote File Disclosure Vulnerabilities
  4654. Chilkat FTP ActiveX 2.0 (ChilkatCert.dll) Insecure Method Exploit
  4655. Mambo Component AkoGallery 2.5b SQL Injection Vulnerability
  4656. Mambo Component Catalogshop 1.0b1 SQL Injection Vulnerability
  4657. Mambo Component Restaurant 1.0 Remote SQL Injection Vulnerability
  4658. Total Video Player 1.03 M3U File Local Buffer Overflow Exploit
  4659. LightBlog 9.5 cp_upload_image.php Remote File Upload Vulnerability
  4660. Joomla Component NeoReferences 1.3.1 (catid) SQL Injection Vuln
  4661. Wordpress Plugin dmsguestbook 1.7.0 Multiple Remote Vulnerabilities
  4662. Titan FTP Server 6.03 (USER/PASS) Remote Heap Overflow PoC
  4663. The Everything Development System <= Pre-1.0 SQL Injection Vuln
  4664. Wordpress Plugin Wordspew Remote SQL Injection Vulnerability
  4665. BookmarkX script 2007 (topicid) Remote SQL Injection Vulnerability
  4666. phpShop <= 0.8.1 Remote SQL injection / Filter Bypass Vulnerabilities
  4667. BlogPHP v.2 (id) XSS / Remote SQL Injection Exploit
  4668. Yahoo! Music Jukebox 2.2 AddImage() ActiveX Remote BOF PoC Exploit
  4669. IpSwitch WS_FTP Server with SSH 6.1.0.0 Remote Buffer Overflow PoC
  4670. Sejoong Namo ActiveSquare 6 NamoInstaller.dll ActiveX BoF Exploit
  4671. Yahoo! Music Jukebox 2.2 AddImage() ActiveX Remote BOF Exploit
  4672. Joomla Component mosDirectory 2.3.2 (catid) SQL Injection Vulnerability
  4673. Yahoo! Music Jukebox 2.2 AddImage() ActiveX Remote BOF Exploit (2)
  4674. FaceBook PhotoUploader (ImageUploader4.ocx 4.5.57.0) BOF Exploit
  4675. A-Blog V.2 (id) XSS / Remote SQL Injection Exploit
  4676. Yahoo! Music Jukebox 2.2 AddButton() ActiveX Remote BOF Exploit (3)
  4677. Yahoo! JukeBox MediaGrid ActiveX mediagrid.dll AddBitmap() BOF Exploit
  4678. Wordpress Plugin st_newsletter Remote SQL Injection Vulnerability
  4679. MicroTik RouterOS <= 3.2 SNMPd snmp-set Denial of Service Exploit
  4680. Joomla Component Marketplace 1.1.1 SQL Injection Vulnerability
  4681. ITechBids 5.0 (bidhistory.php item_id) Remote SQL Injection Vulnerability
  4682. XOOPS 2.0.18 Local File Inclusion / URL Redirecting Vulnerabilities
  4683. Mambo Component Awesom <= 0.3.2 (listid) SQL Injection Vulnerability
  4684. Mambo Component Shambo2 (Itemid) Remote SQL Injection Vulnerability
  4685. VHD Web Pack 2.0 (index.php page) Local File Inclusion Vulnerability
  4686. All Club CMS <= 0.0.1f index.php Local File Inclusion Vulnerability
  4687. RMSOFT Gallery System 2.0 (images.php id) SQL Injection Vulnerability
  4688. NERO Media Player <= 1.4.0.35b M3U File Buffer Overflow PoC
  4689. All Club CMS <= 0.0.2 index.php Remote SQL Injection Vulnerability
  4690. Photokorn Gallery 1.543 (pic) SQL Injection Vulnerability
  4691. Wordpress MU < 1.3.2 active_plugins option Code Execution Exploit
  4692. dBpowerAMP Audio Player Release 2 M3U File Buffer Overflow PoC
  4693. OpenSiteAdmin <= 0.9.1.1 Multiple File Inclusion Vulnerabilities
  4694. dBpowerAMP Audio Player Release 2 M3U File Buffer Overflow Exploit
  4695. MyBulletinBoard (MyBB) <= 1.2.11 private.php SQL Injection Exploit
  4696. Astanda Directory Project 1.2 (link_id) SQL Injection Vulnerability
  4697. Joomla Component Ynews 1.0.0 (id) Remote SQL Injection Vulnerability
  4698. Mambo Component com_downloads Remote SQL Injection Vulnerability
  4699. Mihalism Multi Host Download (Username) Blind SQL Injection Exploit
  4700. osCommerce Addon Customer Testimonials 3.1 SQL Injection Vulnerability
  4701. Mambo Component Sermon 0.2 (gid) SQL Injection Vulnerability
  4702. Total Video Player 1.20 M3U File Local Stack Buffer Overflow Exploit
  4703. Backup Exec System Recovery Manager <= 7.0.1 File Upload Exploit
  4704. SapLPD 6.28 Remote Buffer Overflow Exploit (win32)
  4705. Joomla Component com_doc Remote SQL Injection Vulnerability
  4706. Joomla Component com_noticias 1.0 SQL Injection Vulnerability
  4707. PowerNews (Newsscript) 2.5.6 Local File Inclusion Vulnerabilities
  4708. Joomla Component NeoGallery 1.1 SQL Injection Vulnerability
  4709. Mambo Component com_gallery Remote SQL Injection Vulnerability
  4710. jetAudio <= 7.0.5 (.ASX) Remote Stack Overflow Exploit PoC
  4711. ImageStation (SonyISUpload.cab 1.0.0.38) ActiveX Buffer Overflow PoC
  4712. Microsoft DirectSpeechSynthesis Module Remote Buffer Overflow Exploit
  4713. Limbo CMS <= 1.0.4.2 Cuid cookie Blind SQL Injection Exploit
  4714. DomPHP 0.82 (index.php page) Local File Inclusion Vulnerability
  4715. Open-Realty <= 2.4.3 (last_module) Remote Code Execution Exploit
  4716. Journalness <= 4.1 (last_module) Remote Code Execution exploit
  4717. Linux Kernel 2.6.17 - 2.6.24.1 vmsplice Local Root Exploit
  4718. Linux Kernel 2.6.23 - 2.6.24 vmsplice Local Root Exploit
  4719. Mambo Component Comments <= 0.5.8.5g SQL Injection Vulnerability
  4720. PKs Movie Database 3.0.3 XSS / SQL Injection Vulnerabilities
  4721. ITechBids 6.0 (detail.php item_id) SQL Injection Vulnerability
  4722. SAPID CMF Build 87 (last_module) Remote Code Execution Vulnerability
  4723. PacerCMS 0.6 (last_module) Remote Code Execution Vulnerability
  4724. Mix Systems CMS (parent/id) Remote SQL Injection Exploit
  4725. ImageStation (SonyISUpload.cab 1.0.0.38) ActiveX BOF Exploit
  4726. vKios <= 2.0.0 (products.php cat) Remote SQL Injection Exploit
  4727. FaceBook PhotoUploader <= 5.0.14.0 Remote Buffer Overflow Exploit
  4728. Joomla Component rapidrecipe <= 1.6.5 SQL Injection Vulnerability
  4729. Joomla Component pcchess <= 0.8 Remote SQL Injection Vulnerability
  4730. AuraCMS 2.2 (gallery_data.php) Remote SQL Injection Exploit
  4731. Citrix Presentation Server Client WFICA.OCX ActiveX Heap BOF Exploit
  4732. Microsoft Office .WPS File Stack Overflow Exploit (MS08-011)
  4733. Affiliate Market Ver.0.1 BETA (language) Local File Inclusion Vulnerability
  4734. Joomla Component xfaq 1.2 (aid) Remote SQL Injection Vulnerability
  4735. QuickTime 7.4.1 QTPlugin.ocx Multiple Stack Overflow Vulnerabilities
  4736. IBM Domino Web Access Upload Module SEH Overwrite Exploit
  4737. JSPWiki 2.4.104 / 2.5.139 Multiple Remote Vulnerabilities
  4738. Philips VOIP841 (Firmware <= 1.0.4.800) Multiple Vulnerabilities
  4739. Affiliate Market Ver.0.1 BETA XSS / SQL Injection Exploit
  4740. nuBoard 0.5 (threads.php ssid) SQL Injection Vulnerability
  4741. artmedic weblog 1.0 Multiple Local File Inclusion Vulnerabilities
  4742. Joomla Component paxxgallery 0.2 (iid) SQL Injection Vulnerability
  4743. Joomla Component MCQuiz 0.9 Final (tid) SQL Injection Vulnerability
  4744. Joomla Component Quiz <= 0.81 (tid) SQL Injection Vulnerability
  4745. Joomla Component mediaslide (albumnum) Blind SQL Injection Exploit
  4746. LookStrike Lan Manager 0.9 Remote / Local File Inclusion Vulnerabilities
  4747. Rosoft Media Player 4.1.8 M3U File Remote Buffer Overflow PoC
  4748. Scribe <= 0.2 (index.php page) Local File Inclusion Vulnerability
  4749. freePHPgallery 0.6 Cookie Local File Inclusion Vulnerability
  4750. PHP Live! <= 3.2.2 (questid) Remote SQL Injection Vulnerability
  4751. Wordpress Plugin Simple Forum 2.0-2.1 SQL Injection Vulnerability
  4752. Wordpress Plugin Simple Forum 1.10-1.11 SQL Injection Vulnerability
  4753. Mambo Component Quran <= 1.1 (surano) SQL Injection Vulnerability
  4754. TRUC 0.11.0 (download.php) Remote File Disclosure Vulnerability
  4755. AuraCMS 1.62 Multiple Remote SQL Injection Exploit
  4756. Simple CMS <= 1.0.3 (indexen.php area) Remote SQL Injection Exploit
  4757. Joomla Component jooget <= 2.6.8 Remote SQL Injection Vulnerability
  4758. Mambo Component Ricette 1.0 Remote SQL Injection Vulnerability
  4759. Joomla Component com_galeria Remote SQL Injection Vulnerability
  4760. Wordpress Photo album Remote SQL Injection Vulnerability
  4761. PHPizabi 0.848b C1 HFP1 Remote File Upload Vulnerability
  4762. XPWeb 3.3.2 (Download.php url) Remote File Disclosure Vulnerability
  4763. Joomla Component astatsPRO 1.0 refer.php SQL Injection Vulnerability
  4764. Mambo Component Portfolio 1.0 (categoryId) SQL Injection Vulnerability
  4765. LightBlog 9.6 (username) Local File Inclusion Vulnerability
  4766. DESlock+ <= 3.2.6 (list) Local Kernel Memory Leak PoC
  4767. DESlock+ <= 3.2.6 DLMFENC.sys Local Kernel ring0 link list zero PoC
  4768. DESlock+ <= 3.2.6 local kernel ring0 link list zero SYSTEM Exploit
  4769. DESlock+ <= 3.2.6 DLMFDISK.sys local kernel ring0 SYSTEM Exploit
  4770. Joomla Component com_pccookbook (user_id) SQL Injection Vulnerability
  4771. Joomla Component com_clasifier (cat_id) SQL Injection Vulnerability
  4772. PHP-Nuke Module books SQL (cid) Remote SQL Injection Vulnerability
  4773. XOOPS Module myTopics (articleid) Remote SQL Injection Vulnerability
  4774. sCssBoard (pwnpack) Multiple Versions Remote Exploit
  4775. Thecus N5200Pro NAS Server Control Panel RFI Vulnerability
  4776. Apple iPhoto 4.0.3 DPAP Server Denial of Service Exploit
  4777. X.Org xorg-server <= 1.1.1-48.13 Probe for Files Exploit PoC
  4778. Ourgame GLWorld 2.x hgs_startNotify() ActiveX Buffer Overflow Exploit
  4779. PHP-Nuke Module Sections (artid) Remote SQL Injection Vulnerability
  4780. PHP-Nuke Module EasyContent (page_id) SQL Injection Vulnerability
  4781. RunCMS Module MyAnnonces (cid) SQL Injection Vulnerability
  4782. XOOPS Module eEmpregos (cid) Remote SQL Injection Vulnerability
  4783. XOOPS Module classifieds (cid) Remote SQL Injection Vulnerability
  4784. PHP-Nuke Modules Okul 1.0 (okulid) Remote SQL Injection Vulnerability
  4785. Joomla Component com_hwdvideoshare SQL Injection Vulnerability
  4786. PHP-Nuke Module Docum (artid) SQL Injection Vulnerability
  4787. Globsy 1.0 (file) Remote File Disclosure Vulnerability
  4788. PHP-Nuke Module Inhalt (cid) SQL Injection Vulnerability
  4789. Woltlab Burning Board 3.0.x Remote Blind SQL Injection Exploit
  4790. PunBB <= 1.2.16 Blind Password Recovery Exploit
  4791. MultiCart 2.0 (productdetails.php) Remote SQL Injection Exploit
  4792. X.Org xorg-x11-xfs <= 1.0.2-3.1 Local Race Condition Exploit
  4793. PHP-Nuke Modules Manuales 0.1 (cid) SQL Injection Vulnerability
  4794. PHP-Nuke Module Siir (id) Remote SQL Injection Vulnerability
  4795. BeContent v.031 (id) Remote SQL Injection Vulnerability
  4796. OSSIM 0.9.9rc5 (XSS/SQL Injection) Multiple Remote Vulnerabilities
  4797. PHP-Nuke Module NukeC 2.1 (id_catg) SQL Injection Vulnerability
  4798. phpQLAdmin 2.2.7 Multiple Remote File Inclusion Vulnerabilities
  4799. Quantum Game Library 0.7.2c Remote File Inclusion Vulnerabilities
  4800. phpProfiles 4.5.2 BETA (body_comm.inc.php) RFI Vulnerability
  4801. Quinsonnas Mail Checker 1.55 (footer.php) RFI Vulnerability
  4802. Joomla Component simple shop 2.0 SQL Injection Vulnerability
  4803. Mambo Component garyscookbook <= 1.1.1 SQL Injection Vulnerability
  4804. phpUserBase 1.3b (unverified.inc.php) Local File Inclusion Vulnerability
  4805. phpUserBase 1.3b (unverified.inc.php) Remote File Inclusion Vulnerability
  4806. Pigyard Art Gallery Multiple Remote Vulnerabilities
  4807. Portail Web Php <= 2.5.1.1 Multiple Inclusion Vulnerabilities
  4808. php Download Manager <= 1.1 Local File Inclusion Vulnerability
  4809. MyServer 0.8.11 (204 No Content) error Remote Denial of Service Exploit
  4810. PORAR WEBBOARD (question.asp) Remote SQL Injection Vulnerability
  4811. PHP-Nuke Module Kose_Yazilari (artid) SQL Injection Vulnerability
  4812. MiniNuke 2.1 (members.asp uid) Remote SQL Injection Vulnerability
  4813. Rising Antivirus Online Scanner Insecure Method Flaw Exploit
  4814. DBHcms <= 1.1.4 Remote File Inclusion exploit
  4815. Move Networks Quantum Streaming Player Control BOF Exploit
  4816. Apple Mac OS X xnu <= 1228.3.13 ipv6-ipcomp Remote kernel DoS PoC
  4817. Nukedit 4.9.x Remote Create Admin Exploit
  4818. D-Link MPEG4 SHM Audio Control (VAPGDecoder.dll 1.7.0.5) BOF Exploit
  4819. Wordpress Plugin Sniplets 1.1.2 (RFI/XSS/RCE) Multiple Vulnerabilities
  4820. Mambo Component Simpleboard 1.0.3 (catid) SQL Injection Vulnerability
  4821. EazyPortal <= 1.0 (COOKIE) Remote SQL Injection Exploit
  4822. GROUP-E 1.6.41 (head_auth.php) Remote File Inclusion Vulnerability
  4823. Koobi Pro 5.7 (categ) Remote SQL Injection Vulnerability
  4824. SiteBuilderElite 1.2 Multiple Remote File Inclusion Vulnerabilities
  4825. Podcast Generator <= 1.0 BETA 2 RFI / File Disclosure Vulnerabilities
  4826. Crysis <= 1.1.1.5879 Remote Format String Denial of Service PoC
  4827. Barryvan Compo Manager 0.5pre-1 Remote File Inclusion Vulnerability
  4828. PHP-Nuke My_eGallery <= 2.7.9 Remote SQL Injection Vulnerability
  4829. Centreon <= 1.4.2.3 (get_image.php) Remote File Disclosure Exploit
  4830. Symantec BackupExec Calendar Control (PVCalendar.ocx) BoF Exploit
  4831. Koobi CMS 4.3.0 - 4.2.3 (categ) Remote SQL Injection Vulnerability
  4832. Mambo Component com_Musica (id) Remote SQL Injection Vulnerability
  4833. phpArcadeScript <= 3.0RC2 (userid) SQL Injection Vulnerability
  4834. phpComasy 0.8 (mod_project_id) Remote SQL Injection Vulnerability
  4835. Galaxy FTP Server 1.0 (Neostrada Livebox DSL Router) DoS Exploit
  4836. Dynamic photo gallery 1.02 (albumID) Remote SQL Injection Vulnerability
  4837. MiniWebSvr 0.0.9a Remote Directory Transversal Vulnerability
  4838. Versant Object Database <= 7.0.1.3 Commands Execution Exploit
  4839. Mitra Informatika Solusindo cart Remote SQL Injection Vulnerability
  4840. Ruby 1.8.6 (Webrick Httpd 1.3.1) Directory Traversal Vulnerability
  4841. XOOPS Module Glossario 2.2 (sid) Remote SQL Injection Vulnerability
  4842. ICQ Toolbar 2.3 ActiveX Remote Denial of Service Exploit
  4843. XOOPS Module wfdownloads (cid) Remote SQL Injection Vulnerability
  4844. zKup CMS 2.0 <= 2.3 Remote Add Admin Exploit
  4845. zKup CMS 2.0 <= 2.3 Remote Upload Exploit
  4846. Joomla Component Candle 1.0 (cID) SQL Injection Vulnerability
  4847. QuickTicket <= 1.5 (qti_usr.php id) SQL Injection Vulnerability
  4848. BM Classifieds <= 20080409 Multiple SQL Injection Vulnerabilities
  4849. VHCS <= 2.4.7.1 (vhcs2_daemon) Remote Root Exploit
  4850. KingSoft UpdateOcx2.dll SetUninstallName() Heap Overflow PoC
  4851. Mambo Component eWriting 1.2.1 (cat) SQL Injection Vulnerability
  4852. Solaris 8/9/10 fifofs I_PEEK Local Kernel memory Leak Exploit
  4853. Acronis PXE Server 2.0.0.1076 Directory Traversal / NULL Pointer Vulns
  4854. ASG-Sentry <= 7.0.0 Multiple Remote Vulnerabilities
  4855. Argon Client Management Services <= 1.31 Directory Traversal Vuln
  4856. phpMyNewsletter <= 0.8b5 (archives.php msg_id) SQL Injection Exploit
  4857. Mapbender <= 2.4.4 (mapFiler.php) Remote Code Execution Vulnerability
  4858. Mapbender 2.4.4 (gaz) Remote SQL Injection Vulnerability
  4859. Bloo <= 1.00 Multiple Remote SQL Injection Vulnerabilities
  4860. MailEnable SMTP Service VRFY/EXPN Command Buffer Overflow DoS
  4861. phpBB Mod FileBase (id) Remote SQL Injection Vulnerability
  4862. Joomla Component ProductShowcase <= 1.5 SQL Injection Vulnerability
  4863. Motorola Timbuktu Pro 8.6.5/8.7 Path Traversal / Log Injection Exploit
  4864. Danneo CMS <= 0.5.1 Remote Blind SQL Injection Exploit
  4865. QuickTalk Forum <= 1.6 Remote Blind SQL Injection Exploit
  4866. XOOPS Module Gallery 0.2.2 (gid) Remote SQL Injection Vulnerability
  4867. XOOPS Module My_eGallery 3.04 (gid) SQL Injection Vulnerability
  4868. Fully Modded phpBB (kb.php) Remote SQL Injection Vulnerability
  4869. eXV2 Module bamaGalerie 3.03 Remote SQL Injection Vulnerability
  4870. XOOPS Module tutorials (printpage.php) SQL Injection Vulnerability
  4871. EasyCalendar <= 4.0tr Multiple Remote Vulnerabilities
  4872. EasyGallery <= 5.0tr Multiple Remote Vulnerabilities
  4873. MDaemon IMAP server 9.6.4 (FETCH) Remote Buffer Overflow Exploit
  4874. MailEnable Pro/Ent <= 3.13 (Fetch) post-auth Remote BOF Exploit
  4875. VLC <= 0.8.6e Subtitle Parsing Local Buffer Overflow Exploit
  4876. eXV2 Module MyAnnonces (lid) Remote SQL Injection Vulnerability
  4877. eXV2 Module eblog 1.2 (blog_id) Remote SQL Injection Vulnerability
  4878. eXV2 Module Viso <= 2.0.4.3 (kid) Remote SQL Injection Vulnerability
  4879. eXV2 Module WebChat 1.60 (roomid) Remote SQL Injection Vulnerability
  4880. AuraCMS <= 2.2.1 (online.php) Remote Blind SQL Injection Exploit
  4881. Dovecot IMAP 1.0.10 <= 1.1rc2 Remote Email Disclosure Exploit
  4882. SunOS 5.10 Sun Cluster rpc.metad Denial of Service PoC
  4883. NetWin Surgemail 3.8k4-4 IMAP post-auth Remote LIST Universal Exploit
  4884. fuzzylime cms <= 3.01 (admindir) Remote File Inclusion Vulnerability
  4885. Rosoft Media Player 4.1.8 RML Stack Based Buffer Overflow PoC
  4886. Mutiple Timesheets <= 5.0 Multiple Remote Vulnerabilities
  4887. phpBP <= RC3 (2.204) FIX4 Remote SQL Injection Vulnerability
  4888. CA BrightStor ARCserve Backup r11.5 ActiveX Remote BOF Exploit
  4889. Exero CMS 1.0.1 (theme) Multiple Local File Inclusion Vulnerabilities
  4890. PHPauction GPL Enhanced 2.51 Multiple RFI Vulnerabilities
  4891. XOOPS Module Dictionary <= 0.94 Remote SQL Injection Vulnerability
  4892. Apple Safari (webkit) Remote Denial of Service Exploit (iphone/osx/win)
  4893. MG-SOFT Net Inspector 6.5.0.828 Multiple Remote Vulnerabilities
  4894. Home FTP Server 1.4.5 Remote Denial of Service Exploit
  4895. Joomla Component Acajoom (com_acajoom) SQL Injection Vulnerability
  4896. KAPhotoservice (album.asp) Remote SQL Injection Exploit
  4897. Easy-Clanpage 2.2 (id) Remote SQL Injection Vulnerability
  4898. ASPapp (links.asp CatId) Remote SQL Injection Vulnerability
  4899. Joomla Component joovideo 1.2.2 (id) SQL Injection Vulnerability
  4900. Joomla Component Alberghi <= 2.1.3 (id) SQL Injection Vulnerability
  4901. Mambo Component accombo 1.x (id) SQL Injection Vulnerability
  4902. Joomla Component Restaurante 1.0 (id) SQL Injection Vulnerability
  4903. PEEL CMS Admin Hash Extraction and Remote Upload Exploit
  4904. Sun Solaris <= 10 rpc.ypupdated Remote Root Exploit
  4905. CenterIM <= 4.22.3 Remote Command Execution Vulnerability
  4906. RunCMS Module section (artid) Remote SQL Injection Vulnerability
  4907. ASPapp Knowledge Base Remote SQL Injection Vulnerability
  4908. Microsoft Office Excel Code Execution Exploit (MS08-014)
  4909. phpAddressBook 2.11 Multiple Local File Inclusion Vulnerabilities
  4910. ZyXEL ZyWALL Quagga/Zebra (default pass) Remote Root Vulnerability
  4911. RunCMS Module Photo 3.02 (cid) Remote SQL Injection Vulnerability
  4912. D.E. Classifieds (cat_id) Remote SQL Injection Vulnerability
  4913. PostNuke <= 0.764 Blind SQL Injection Exploit
  4914. XLPortal <= 2.2.4 (search) Remote SQL Injection Exploit
  4915. Joomla Components custompages 1.1 Remote File Inclusion Vulnerability
  4916. PHP-Nuke Platinum 7.6.b.5 (dynamic_titles.php) SQL Injection Exploit
  4917. Cuteflow Bin 1.5.0 (login.php) Local File Inclusion Vulnerability
  4918. Joomla Component rekry 1.0.0 (op_id) SQL Injection Vulnerability
  4919. destar 0.2.2-5 Arbitrary Add New User Exploit
  4920. Joomla Component d3000 1.0.0 Remote SQL Injection Vulnerability
  4921. Joomla Component Cinema 1.0 Remote SQL Injection Vulnerability
  4922. phpBB Module XS-Mod 2.3.1 Local File Inclusion Vulnerability
  4923. PowerBook 1.21 (index.php page) Local File Inclusion Vulnerability
  4924. PowerPHPBoard 1.00b Multiple Local File Inclusion Vulnerabilities
  4925. HIS-Webshop (his-webshop.pl t) Remote File Disclosure Vulnerability
  4926. destar 0.2.2-5 Arbitrary Add Admin User Exploit
  4927. snircd <= 1.3.4 (send_user_mode) Denial of Service Vulnerability
  4928. MPlayer sdpplin_parse() Array Indexing Buffer Overflow Exploit PoC
  4929. e107 Plugin My_Gallery 2.3 Arbitrary File Download Vulnerability
  4930. BolinOS 4.6.1 (LFI/XSS) Multiple Security Vulnerabilities
  4931. Joomla Component alphacontent <= 2.5.8 (id) SQL Injection Vulnerability
  4932. TopperMod 2.0 Remote SQL Injection Vulnerability
  4933. TopperMod 1.0 (mod.php) Local File Inclusion Vulnerability
  4934. Linksys WRT54G (firmware 1.00.9) Security Bypass Vulnerabilities
  4935. TFTP Server for Windows 1.4 ST Buffer Overflow Exploit (0day)
  4936. Quick TFTP Pro 2.1 Remote SEH Overflow Exploit (0day)
  4937. PacketTrap Networks pt360 2.0.39 TFTPD Remote DoS Exploit
  4938. JAF-CMS 4.0 RC2 Multiple Remote File Inclusion Vulnerabilities
  4939. Joomla Component MyAlbum 1.0 (album) SQL Injection Vulnerability
  4940. AuraCMS 2.x (user.php) Security Code Bypass / Add Administrator Exploit
  4941. Microsoft Office XP SP3 PPT File Buffer Overflow Exploit (ms08-016)
  4942. Visual Basic (vbe6.dll) Local Stack Overflow PoC / DoS
  4943. Smoothflash (admin_view_image.php cid) SQL Injection Vulnerability
  4944. mxBB Module mx_blogs 2.0.0-beta Remote File Inclusion Exploit
  4945. KISGB <= (tmp_theme) 5.1.1 Local File Inclusion Vulnerability
  4946. JShop 1.x - 2.x (page.php xPage) Local File Inclusion Vulnerability
  4947. Wordpress Plugin Download (dl_id) SQL Injection Vulnerability
  4948. MS Windows Explorer Unspecified .DOC File Denial of Service Exploit
  4949. phpSpamManager 0.53b (body.php) Remote File Disclosure Vulnerability
  4950. Woltlab Burning Board Addon JGS-Treffen SQL Injection Vulnerability
  4951. mod_jk2 v2.0.2 for Apache 2.0 Remote Buffer Overflow Exploit (win32)
  4952. Neat weblog 0.2 (articleId) Remote SQL Injection Vulnerability
  4953. Real Player rmoc3260.dll ActiveX Control Remote Code Execution Exploit
  4954. EasyNews 40tr (SQL/XSS/LFI) Remote SQL Injection Exploit
  4955. FaScript FaPhoto v1 (show.php id) SQL Injection Vulnerability
  4956. Mambo Component ahsShop <= 1.51 (vara) SQL Injection Vulnerability
  4957. eggBlog 4.0 Password Retrieve Remote SQL Injection Exploit
  4958. Joomla Component actualite 1.0 (id) SQL Injection Vulnerability
  4959. ChilkatHttp ActiveX 2.3 Arbitrary Files Overwrite Exploit
  4960. Nuked-Klan <= 1.7.6 Multiple Vulnerabilities Exploit
  4961. RunCMS Module bamagalerie3 Remote SQL Injection Vulnerability
  4962. Noticeware Email Server 4.6.1.0 Denial of Service Exploit
  4963. HP OpenView NNM 7.5.1 OVAS.exe SEH PRE AUTH Overflow Exploit
  4964. Mcafee EPO 4.0 FrameworkService.exe Remote Denial of Service Exploit
  4965. Novel eDirectory HTTP Denial of Service Exploit
  4966. Joomla Component OnlineFlashQuiz <= 1.0.2 RFI Vulnerability
  4967. XnView 1.92.1 Slideshow (FontName) Buffer Overflow Exploit
  4968. DaZPHP 0.1 (prefixdir) Local File Inclusion Vulnerability
  4969. PhpBlock a8.4 (PATH_TO_CODE) Remote File Inclusion Vulnerability
  4970. Microsoft Visual InterDev 6.0 (SP6) SLN File Local Buffer Overflow PoC
  4971. KwsPHP Module Galerie (id_gal) Remote SQL Injection Vulnerability
  4972. KwsPHP Module Archives (id) Remote SQL Injection Vulnerability
  4973. KwsPHP Module jeuxflash (cat) Remote SQL Injection Vulnerability
  4974. KwsPHP Module ConcoursPhoto (C_ID) SQL Injection Vulnerability
  4975. Xitami Web Server v2.5c2 LRWP Processing Format String PoC
  4976. SCO UnixWare < 7.1.4 p534589 (pkgadd) Local Root Exploit
  4977. SCO UnixWare Reliant HA Local Root Exploit
  4978. SCO UnixWare Merge mcd Local Root Exploit
  4979. XPOZE Pro <= 3.05 (reed) Remote SQL Injection Exploit
  4980. Vastal I-Tech Software Zone (cat_id) SQL Injection Vulnerability
  4981. sabros.us 1.75 (thumbnails.php) Remote File Disclosure Vulnerability
  4982. MS Visual Basic Enterprise Ed. 6 SP6 DSR File Local BOF Exploit
  4983. Comdev News Publisher Remote SQL Injection Vulnerability
  4984. Affiliate Directory (cat_id) Remote SQL Injection Vulnerbility
  4985. PHP Photo Gallery 1.0 (photo_id) SQL Injection Vulnerability
  4986. Blogator-script 0.95 (incl_page) Remote File Inclusion Vulnerability
  4987. Sun Solaris <= 10 rpc.ypupdated Remote Root Exploit (meta)
  4988. PIGMy-SQL <= 1.4.1 (getdata.php id) Blind SQL Injection Exploit
  4989. Blogator-script 0.95 (id_art) Remote SQL Injection Vulnerability
  4990. Dragoon 0.1 (lng) Local File Inclusion Vulnerability
  4991. Blogator-script 0.95 Change User Password Vulnerability
  4992. Entertainment Directory <= 1.1 SQL Injection Vulnerability
  4993. Easynet Forum Host (forum.php forum) SQL Injection Vulnerability
  4994. CoBaLT 0.1 Multiple Remote SQL Injection Vulnerabilities
  4995. Gaming Directory 1.0 (cat_id) Remote SQL Injection Vulnerability
  4996. VisualPic 0.3.1 Remote File Inclusion Vulnerability
  4997. Picture Rating 1.0 Blind SQL Injection Exploit
  4998. Links Directory 1.1 (cat_id) Remote SQL Injection Vulnerability
  4999. Software Index 1.1 (cid) Remote SQL Injection Vulnerability
  5000. MyBB Plugin Custom Pages 1.0 Remote SQL Injection Vulnerability
  5001. Blog PixelMotion (sauvBase.php) Arbitrary Database Backup Vulnerability
  5002. Blog PixelMotion (modif_config.php) Remote File Upload Vulnerability
  5003. Blog PixelMotion (index.php categorie) SQL Injection Vulnerability
  5004. Site Sift Listings (id) Remote SQL Injection Vulnerability
  5005. Prozilla Top 100 v1.2 Arbitrary Delete Stats Vulnerability
  5006. Prozilla Forum Service (forum.php forum) SQL Injection Vulnerability
  5007. Apache Tomcat Connector jk2-2.0.2 (mod_jk2) Remote Overflow Exploit
  5008. Prozilla Reviews Script 1.0 Arbitrary Delete User Vulnerability
  5009. Prozilla Topsites 1.0 Arbitrary Edit/Add Users Vulnerability
  5010. Prozilla Cheat Script 2.0 (id) Remote SQL Injection Vulnerability
  5011. Prozilla Freelancers (project) Remote SQL Injection Vulnerability
  5012. Drake CMS <= 0.4.11 Remote Blind SQL Injection Exploit
  5013. LinPHA <= 1.3.3 (maps plugin) Remote Command Execution Exploit
  5014. Dragoon 0.1 (root) Remote File Inclusion Vulnerability
  5015. Mole 2.1.0 (viewsource.php) Remote File Disclosure Vulnerability
  5016. Data Dynamics ActiveBar (Actbar3.ocx 3.2) Multiple Insecure Methods
  5017. HP OpenView NNM 7.53 Multiple Remote Vulnerabilities
  5018. CDNetworks Nefficient Download (NeffyLauncher.dll) Code Execution Vuln
  5019. Tumbleweed SecureTransport FileTransfer ActiveX BOF Exploit
  5020. ChartDirector 4.1 (viewsource.php file) File Disclosure Vulnerability
  5021. 724CMS <= 4.01 Enterprise (index.php ID) SQL Injection Vulnerability
  5022. My Gaming Ladder <= 7.5 (ladderid) SQL Injection Vulnerability
  5023. iScripts SocialWare (id) Remote SQL Injection Vulnerbility
  5024. phpTournois <= G4 Remote File Upload/Code Execution Exploit
  5025. ExBB <= 0.22 (LFI/RFI) Multiple Remote Vulnerabilities
  5026. Pligg CMS 9.9.0 (editlink.php id) Remote SQL Injection Vulnerability
  5027. FLABER <= 1.1 RC1 Remote Command Execution Exploit
  5028. LokiCMS <= 0.3.3 Remote Command Execution Exploit
  5029. SuperNET Shop 1.0 Remote SQL Injection Vulnerabilities
  5030. Prediction Football 1.x (matchid) Remote SQL Injection Vulnerability
  5031. Koobi Pro 6.25 links Remote SQL Injection Vulnerability
  5032. Koobi Pro 6.25 shop Remote SQL Injection Vulnerability
  5033. Koobi Pro 6.25 gallery Remote SQL Injection Vulnerability
  5034. Koobi Pro 6.25 showimages Remote SQL Injection Vulnerability
  5035. Koobi 4.4/5.4 gallery Remote SQL Injection Vulnerability
  5036. IBiz E-Banking Integrator V2 ActiveX Edition Insecure Method Exploit
  5037. phpBB Add-on Fishing Cat Portal Remote File Inclusion Exploit
  5038. KnowledgeQuest 2.5 Arbitrary Add Admin Exploit
  5039. Free Photo Gallery Site Script (path) File Disclosure Vulnerability
  5040. Phaos R4000 Version (file) Remote File Disclosure Vulnerability
  5041. KnowledgeQuest 2.6 SQL Injection Vulnerabilities
  5042. LiveCart <= 1.1.1 (category id) Blind SQL Injection Exploit
  5043. Ksemail (index.php language) Local File Inclusion Vulnerability
  5044. Alsaplayer < 0.99.80-rc3 Vorbis Input Local Buffer Overflow Exploit
  5045. LightNEasy 1.2 (no database) Remote Hash Retrieve Exploit
  5046. RX Maxsoft (popup_img.php fotoID) Remote SQL Injection Vulnerability
  5047. Borland InterBase 2007 ibserver.exe Buffer Overflow PoC
  5048. PHPKB 1.5 Knowledge Base (ID) SQL Injection Vulnerability
  5049. NewsOffice 1.1 Remote File Inclusion Vulnerability
  5050. HP OpenView Network Node Manager <= 7.53 Multiple Vulnerabilities
  5051. Joomla Component joomlaXplorer <= 1.6.2 Remote Vulnerabilities
  5052. phpAddressBook 2.11 (view.php id) SQL Injection Vulnerability
  5053. CcMail <= 1.0.1 Insecure Cookie Handling Vulnerability
  5054. 1024 CMS <= 1.4.2 Local File Inclusion / Blind SQL Injection Exploit
  5055. Joomla Component com_extplorer <= 2.0.0 RC2 Local Directory Traversal
  5056. Pollbooth <= 2.0 (pollID) Remote SQL Injection Vulnerability
  5057. cpCommerce 1.1.0 (XSS/LFI) Multiple Remote Vulnerabilities
  5058. XM Easy Personal FTP Server 5.4.0 (XCWD) Denial of Service Exploit
  5059. PostCard 1.0 Remote Insecure Cookie Handling Vulnerability
  5060. Mumbo Jumbo Media OP4 Remote Blind SQL Injection Exploit
  5061. SmallBiz 4 Seasons CMS Remote SQL Injection Vulnerability
  5062. MS Windows GDI Image Parsing Stack Overflow Exploit (MS08-021)
  5063. SmallBiz eShop (content_id) Remote SQL Injection Vulnerability
  5064. BosClassifieds 3.0 (index.php cat) SQL Injection Vulnerability
  5065. HP OpenView NNM v7.5.1 ovalarmsrv.exe Remote Overflow Exploit
  5066. BosNews 4.0 (article) Remote SQL Injection Vulnerability
  5067. Koobi CMS 4.2.4/4.2.5/4.3.0 Multiple Remote SQL Injection Vulnerabilities
  5068. Koobi Pro 6.25 poll Remote SQL Injection Vulnerability
  5069. KwsPHP (Upload) Remote Code Execution Exploit
  5070. Classifieds Caffe (index.php cat_id) SQL Injection Vulnerability
  5071. BigAnt Server 2.2 PreAuth Remote SEH Overflow Exploit (0day)
  5072. LightNEasy SQLite / no database <= 1.2.2 Multiple Remote Vulnerabilities
  5073. DivX Player <= 6.7.0 SRT File Buffer Overflow PoC
  5074. Lasernet CMS 1.5 (new) Remote SQL Injection Vulnerability
  5075. BS.Player 2.27 Build 959 SRT File Buffer Overflow PoC
  5076. Carbon Communities <= 2.4 Multiple Remote Vulnerabilities
  5077. XplodPHP AutoTutorials <= 2.1 (id) SQL Injection Vulnerability
  5078. xine-lib <= 1.1.12 NSF demuxer Stack Overflow Vulnerability PoC
  5079. e107 Module 123 Flash Chat 6.8.0 Remote File Inclusion Vulnerability
  5080. Microsoft Works 7 WkImgSrv.dll ActiveX Denial of Service PoC
  5081. Intel Centrino ipw2200BG Wireless Driver Remote BOF Exploit (meta)
  5082. DivX Player 6.6.0 SRT File SEH Buffer Overflow Exploit
  5083. Grape Statistics 0.2a (location) Remote File Inclusion Vulnerability
  5084. 5th Avenue Shopping Cart (category_ID) SQL Injection Vulnerability
  5085. 2532|Gigs <= 1.2.2 Arbitrary Database Backup/Download Vulnerability
  5086. OpenInvoice 0.9 Arbitrary Change User Password Exploit
  5087. PhShoutBox <= 1.5 (final) Insecure Cookie Handling Vulnerability
  5088. Simple Customer 1.2 (contact.php id) SQL Injection Vulnerability
  5089. AllMyGuests <= 0.4.1 (AMG_id) Remote SQL Injection Vulnerability
  5090. PHP-Fusion <= 6.01.14 Remote Blind SQL Injection Exploit
  5091. Apartment Search Script (listtest.php r) SQL Injection Vulnerability
  5092. SubEdit Player build 4066 subtitle Buffer Overflow PoC
  5093. XOOPS Module Recipe (detail.php id) SQL Injection Vulnerability
  5094. Aterr 0.9.1 (class) Local File Inclusion Vulnerabilities (php5)
  5095. W1L3D4 Philboard 1.0 (philboard_reply.asp) SQL Injection Vulnerability
  5096. HostDirectory Pro Insecure Cookie Handling Vulnerability
  5097. Kubelance 1.6.4 (ipn.php i) Local File Inclusion Vulnerability
  5098. Acidcat CMS 3.4.1 Multiple Remote Vulnerabilities
  5099. Adobe Album Starter 3.2 Unchecked Local Buffer Overflow Exploit
  5100. BlogWorx 1.0 (view.asp id) Remote SQL Injection Vulnerability
  5101. Crazy Goomba 1.2.1 (id) Remote SQL Injection Vulnerability
  5102. RedDot CMS 7.5 (LngId) Remote SQL Injection Exploit
  5103. TR News 2.1 (nb) Remote SQL Injection Vulnerability
  5104. Joomla Component FlippingBook 1.0.4 SQL Injection Vulnerability
  5105. Web Calendar <= 4.1 Blind SQL Injection Exploit
  5106. Wordpress Plugin Spreadsheet <= 0.6 SQL Injection Vulnerability
  5107. E RESERV 2.1 (index.php ID_loc) SQL Injection Vulnerability
  5108. Joomla Component Filiale 1.0.4 (idFiliale) SQL Injection Vulnerability
  5109. Zune Software ActiveX Arbitrary File Overwrite Exploit
  5110. YouTube Clone Script (spages.php) Remote Code Execution Exploit
  5111. Joomla Community Builder <= 1.0.1 Blind SQL Injection Vulnerability
  5112. DivX Player 6.7 SRT File Subtitle Parsing Buffer Overflow Exploit
  5113. Joomla Component JPad 1.0 SQL Injection Vulnerability (postauth)
  5114. miniBB 2.2 (CSS/SQL/FPD) Multiple Remote Vulnerabilities
  5115. PostNuke Module PostSchedule (eid) SQL Injection Vulnerability
  5116. WatchFire Appscan 7.0 ActiveX Multiple Insecure Methods Exploit
  5117. Joomla Component Joomla-Visites 1.1 RC2 RFI Vulnerability
  5118. Kantaris 0.3.4 SSA Subtitle Local Buffer Overflow Exploit
  5119. Siteman 2.x (EXEC/LFI/XSS) Multiple Remote Vulnerabilities
  5120. PostNuke Module pnFlashGames <= 2.5 SQL Injection Vulnerabilities
  5121. Content Management System for Phprojekt 0.6.1 RFI Vulnerabiltiies
  5122. Clever Copy 3.0 (postview.php) Remote SQL Injection Exploit
  5123. Angelo-Emlak 1.0 Multiple Remote SQL injection Vulnerabilities
  5124. PHP Forge <= 3 beta 2 (id) Remote SQL Injection Vulnerability
  5125. RunCMS Module MyArticles 0.6 Beta-1 SQL Injection Vulnerability
  5126. PHPizabi v0.848b C1 HFP3 Database Information Disclosure Vuln
  5127. MegaBBS Forum 2.2 (SQL/XSS) Multiple Remote Vulnerabilities
  5128. Jokes Site Script (jokes.php?catagorie) SQL Injection Vulnerability
  5129. FluentCMS (view.php sid) Remote SQL Injection Vulnerability
  5130. Content Management System for Phprojekt 0.6.1 File Disclosure Vuln
  5131. HP Software Update (Hpufunction.dll 4.0.0.1) Insecure Method PoC
  5132. Joomla Component com_alphacontent Blind SQL Injection Exploit
  5133. ODFaq 2.1.0 Blind SQL Injection Exploit
  5134. Joomla Component paxxgallery 0.2 (gid) Blind SQL Injection Exploit
  5135. GroupWise 7.0 (mailto: scheme) Buffer Overflow PoC
  5136. Prozilla Hosting Index (directory.php cat_id) SQL Injection Vulnerability
  5137. Softbiz Web Host Directory Script (host_id) SQL Injection Vulnerability
  5138. MS Windows XP SP2 (win32k.sys) Privilege Escalation Exploit (MS08-025)
  5139. VLC 0.8.6d httpd_FileCallBack Remote Format String Exploit
  5140. Joovili 3.1 (browse.videos.php category) SQL Injection Vulnerability
  5141. SugarCRM Community Edition 4.5.1/5.0.0 File Disclosure Vulnerability
  5142. LokiCMS <= 0.3.3 Arbitrary File Delete Vulnerability
  5143. Project Based Calendaring System (PBCS) 0.7.1 Multiple Vulnerabilities
  5144. OxYProject 0.85 (edithistory.php) Remote Code Execution Vulnerability
  5145. Harris WapChat v.1 Multiple Remote File Inclusion Vulnerabilities
  5146. interact 2.4.1 Multiple Remote File Inclusion Vulnerabilities
  5147. Joomla Component Webhosting (catid) Blind SQL Injection Exploit
  5148. ActualAnalyzer Lite (free) 2.78 Local File Inclusion Vulnerability
  5149. vlBook 1.21 (XSS/LFI) Multiple Remote Vulnerabilities
  5150. Microsoft Works 7 WkImgSrv.dll ActiveX Remote BOF Exploit
  5151. Open Auto Classifieds 1.4.3b Remote SQL Injection Vulnerabilities
  5152. ItCMS 1.9 (boxpop.php) Remote Code Execution Vulnerability
  5153. BlogMe PHP (comments.php id) SQL Injection Vulnerability
  5154. HLDS WebMod 0.48 Multiple Remote Vulnerabilties
  5155. Smartblog (index.php tid) Remote SQL Injection Vulnerability
  5156. HLDS WebMod 0.48 (rconpass) Remote Heap Overflow Exploit
  5157. phpDirectorySource 1.1 Multiple Remote SQL Injection Vulnerabilities
  5158. cpLinks 1.03 (bypass/SQL/XXS) Multiple Remote Vulnerabilities
  5159. ScorpNews 1.0 (example.php site) Remote File Inclusion Vulnerability
  5160. Scout Portal Toolkit <= 1.4.0 (ParentId) Remote SQL Injection Exploit
  5161. PostNuke Module pnEncyclopedia <= 0.2.0 SQL Injection Vulnerability
  5162. Online Rental Property Script <= 4.5 (pid) SQL Injection Vulnerability
  5163. Anserv Auction XL (viewfaqs.php cat) SQL Injection Vulnerability
  5164. Kmita Tellfriend <= 2.0 (file) Remote File Inclusion Vulnerability
  5165. Kmita Mail <= 3.0 (file) Remote File Inclusion Vulnerability
  5166. BackLinkSpider (cat_id) Remote SQL Injection Vulnerability
  5167. Novell eDirectory < 8.7.3 SP 10 / 8.8.2 HTTP headers DOS Vulnerability
  5168. Miniweb 2.0 (historymonth) Remote SQL Injection Vulnerability
  5169. Power Editor 2.0 Remote File Disclosure / Edit Vulnerability
  5170. DeluxeBB <= 1.2 Multiple Remote Vulnerabilities Exploit
  5171. Pre Shopping Mall 1.1 (search.php search) SQL Injection Vulnerability
  5172. PHPEasyData 1.5.4 (cat_id) Remote SQL Injection Vulnerability
  5173. fipsCMS (print.asp lg) Remote SQL Injection Vulnerability
  5174. Galleristic 1.0 (index.php cat) Remote SQL Injection Exploit
  5175. gameCMS Lite 1.0 (index.php systemId) SQL Injection Vulnerability
  5176. PostcardMentor (step1.asp cat_fldAuto) SQL Injection Vulnerability
  5177. OneCMS 2.5 Remote Blind SQL Injection Exploit
  5178. CMS Faethon 2.2 Ultimate (RFI/XSS) Multiple Remote Vulnerabilies
  5179. ezContents CMS 2.0.0 Multiple Remote SQL Injection Vulnerabilities
  5180. Musicbox <= 2.3.7 (artistId) Remote SQL Injection Vulnerability
  5181. rdesktop 1.5.0 iso_recv_msg() Integer Underflow Vulnerability PoC
  5182. RunCMS <= 1.6.1 (msg_image) SQL Injection Exploit
  5183. TFTP Server for Windows 1.4 ST Remote BSS Overflow Exploit
  5184. Shader TV (Beta) Multiple Remote SQL Injection Vulnerabilities
  5185. vShare Youtube Clone 2.6 (tid) Remote SQL Injection Vulnerability
  5186. SazCart 1.5.1 Multiple Remote File Inclusion Vulnerabilities
  5187. Cyberfolio 7.12 (rep) Remote File Inclusion Vulnerability
  5188. miniBloggie 1.0 (del.php) Arbitrary Delete Post Vulnerability
  5189. Admidio 1.4.8 (getfile.php) Remote File Disclosure Vulnerability
  5190. SazCart <= 1.5.1 (prodid) Remote SQL Injection Exploit
  5191. HispaH Model Search (cat.php cat) Remote SQL Injection Vulnerability
  5192. Phoenix View CMS <= Pre Alpha2 (SQL/LFI/XSS) Multiple Vulnerabilities
  5193. txtCMS 0.3 (index.php) Local File Inclusion Exploit
  5194. Ktools PhotoStore <= 3.5.1 (gallery.php gid) SQL Injection Vulnerability
  5195. Advanced Links Management (ALM) 1.52 SQL Injection Vulnerability
  5196. Ktools PhotoStore <= 3.5.2 Multiple SQL Injection Vulnerabilities
  5197. Joomla Component com_datsogallery 1.6 Blind SQL Injection Exploit
  5198. Open Office.org 2.31 swriter Local Code Execution Exploit
  5199. rdesktop 1.5.0 process_redirect_pdu() BSS Overflow Vulnerability PoC
  5200. PhpBlock a8.5 Multiple Remote File Inclusion Vulnerabilities
  5201. Joomla Component xsstream-dm 0.01b Remote SQL Injection Exploit
  5202. QuickUpCMS Multiple Remote SQL Injection Vulnerabilities Exploit
  5203. Vortex CMS (index.php pageid) Blind SQL Injection Exploit
  5204. AJ Article 1.0 (featured_article.php) Remote SQL Injection Vulnerability
  5205. AJ Auction <= 6.2.1 (classifide_ad.php) SQL Injection Vulnerability
  5206. AJ Classifieds 2008 (index.php) Remote SQL Injection Vulnerability
  5207. ZeusCart <= 2.0 (category_list.php) SQL Injection Vulnerability
  5208. ClanLite 2.x (SQL Injection/XSS) Multiple Remote Vulnerabilities
  5209. BIGACE 2.4 Multiple Remote File Inclusion Vulnerabilities
  5210. Battle.net Clan Script <= 1.5.x Remote SQL Injection Exploit
  5211. Mega File Hosting Script 1.2 (fid) Remote SQL Injection Vulnerability
  5212. PHP Classifieds Script <= 05122008 SQL Injection Vulnerabilities
  5213. CMS Made Simple <= 1.2.4 (FileManager module) File Upload Exploit
  5214. Advanced Image Hosting (AIH) 2.1 Remote SQL Injection Exploit
  5215. AJ HYIP ACME (topic_detail.php id) Remote SQL Injection Vulnerability
  5216. EQDKP 1.3.2f (user_id) Authentication Bypass (PoC)
  5217. e107 Plugin BLOG Engine 2.2 (rid) Blind SQL Injection Vulnerability
  5218. e-107 Plugin zogo-shop 1.16 Beta 13 SQL Injection Vulnerability
  5219. Web Group Communication Center (WGCC) <= 1.0.3 SQL Injection Vuln
  5220. CaLogic Calendars 1.2.2 (langsel) Remote SQL Injection Vulnerability
  5221. Meto Forum 1.1 Multiple Remote SQL Injection Vulnerabilities
  5222. EMO Realty Manager (news.php ida) SQL Injection Vulnerability
  5223. The Real Estate Script (dpage.php docID) SQL Injection Vulnerability
  5224. Linkspile (link.php cat_id) Remote SQL Injection Vulnerability
  5225. IDAutomation Bar Code ActiveX Multiple Remote Vulnerabilities
  5226. Freelance Auction Script 1.0 (browseproject.php) SQL Injection Vuln
  5227. Feedback and Rating Script 1.0 (detail.php) SQL Injection Vulnerability
  5228. AS-GasTracker 1.0.0 Insecure Cookie Handling Vulnerability
  5229. ActiveKB <= 1.5 Insecure Cookie Handling/Arbitrary Admin Access
  5230. Internet Photoshow (Special Edition) Insecure Cookie Handling Vuln
  5231. La-Nai CMS <= 1.2.16 (fckeditor) Arbitrary File Upload Exploit
  5232. MS Internet Explorer (Print Table of Links) Cross-Zone Scripting PoC
  5233. Rgboard <= 3.0.12 (RFI/XSS) Multiple Remote Vulnerabilities
  5234. Kostenloses Linkmanagementscript (page_to_include) RFI Vulnerability
  5235. Debian OpenSSL Predictable PRNG Bruteforce SSH Exploit
  5236. Kostenloses Linkmanagementscript SQL Injection Vulnerabilities
  5237. Newsmanager 2.0 (RFI/RFD/SQL/PB) Multiple Remote Vulnerabilities
  5238. Symantec Altiris Client Service 6.8.378 Local Privilege Escalation Exploit
  5239. 68 Classifieds 4.0 (category.php cat) SQL Injection Vulnerability
  5240. Pet Grooming Management System <= 2.0 Arbitrary Add-Admin Exploit
  5241. RantX 1.0 Insecure Admin Authentication Vulnerability
  5242. Web Slider <= 0.6 Insecure Cookie/Authentication Handling Vuln
  5243. Multi-Page Comment System 1.1.0 Insecure Cookie Handling Vulnerability
  5244. IMGallery 2.5 Multiply Remote SQL Injection Vulnerabilities
  5245. Debian OpenSSL Predictable PRNG Bruteforce SSH Exploit (ruby)
  5246. StanWeb.CMS (default.asp id) Remote SQL Injection Exploit
  5247. Zomplog <= 3.8.2 (newuser.php) Arbitrary Add Admin Exploit
  5248. Archangel Weblog 0.90.02 (post_id) SQL Injection Exploit
  5249. Zomplog <= 3.8.2 (force_download.php) File Disclosure Vulnerability
  5250. WR-Meeting 1.0 (msnum) Local File Disclosure Vulnerability
  5251. How2ASP.net Webboard <= 4.1 Remote SQL Injection Vulnerability
  5252. FicHive 1.0 (category) Remote Blind SQL Injection Exploit
  5253. Smeego 1.0 (Cookie lang) Local File Inclusion Exploit
  5254. CMS WebManager-Pro Multiple Remote SQL Injection Vulnerabilities
  5255. TAGWORX.CMS Multiple Remote SQL Injection Vulnerabilities
  5256. Ajax framework (lang) Local File Inclusion Vulnerability
  5257. LulieBlog 1.2 Multiple Remote Vulnerabilities
  5258. AlkalinePHP <= 0.77.35 (adduser.php) Arbitrary Add-Admin Vuln
  5259. easyCMS <= 0.4.2 Multiple Remote Vulnerabilities
  5260. GNU/Gallery <= 1.1.1.0 (admin.php) Local File Inclusion Vulnerability
  5261. MeltingIce File System <= 1.0 Remote Arbitrary Add-User Exploit
  5262. PHP AGTC-Membership System <= 1.1a Arbitrary Add-Admin Exploit
  5263. MyPicGallery 1.0 Arbitrary Add-Admin Exploit
  5264. microSSys CMS <= 1.5 Remote File Inclusion Vulnerability
  5265. AlkalinePHP <= 0.80.00 beta (thread.php id) SQL Injection Exploit
  5266. MercuryBoard <= 1.1.5 (login.php) Remote Blind SQL Injection Exploit
  5267. EntertainmentScript (play.php id) Remote SQL Injection Vulnerability
  5268. EntertainmentScript 1.4.0 (page.php page) Local File Inclusion Exploit
  5269. eCMS 0.4.2 (SQL/PB) Multiple Remote Vulnerabilities
  5270. Mantis Bug Tracker 1.1.1 (CE/XSS/CSRF) Multiple Vulnerabilities
  5271. ComicShout 2.5 (index.php comic_id) Remote SQL Injection Vulnerability
  5272. MX-System 2.7.3 (index.php page) Remote SQL Injection Vulnerability
  5273. Php Jokesite 2.0 (cat_id) Remote SQL Injection Vulnerability
  5274. Netious CMS 0.4 (index.php pageid) SQL Injection Vulnerability
  5275. Alcatel OmniPCX Office 210/061.1 Remote Command Execution Vuln
  5276. 6rbScript (news.php newsid) Remote SQL Injection Vulnerability
  5277. Webløsninger <= v4 (XSS/SQL) Multiple Remote Vulnerabilities
  5278. Netbutikker <= v4 Remote SQL Injection Vulnerabilities
  5279. e107 Plugin BLOG Engine 2.2 (uid) Blind SQL Injection Vulnerability
  5280. VLC 0.8.6d SSA Parsing Double Sh311 Universal Exploit
  5281. Quate CMS 0.3.4 (RFI/LFI/XSS/DT) Multiple Remote Vulnerabilities
  5282. OneCMS 2.5 (install_mod.php) Local File Inclusion Vulnerability
  5283. RoomPHPlanning 1.5 (idresa) Remote SQL Injection Vulnerability
  5284. phpRaider 1.0.7 (phpbb3.functions.php) RFI Vulnerability
  5285. plusPHP URL Shortening Software 1.6 Remote File Inclusion Vulnerability
  5286. Xomol CMS <= 1.2 Login Bypass / LFI Vulnerabilities
  5287. RoomPHPlanning 1.5 Arbitrary Add Admin User Vulnerability
  5288. RoomPHPlanning 1.5 Multiple Remote SQL Injection Vulnerabilities
  5289. CMS MAXSITE <= 1.10 (category) Remote SQL Injection Vulnerability
  5290. RevokeBB 1.0 RC11 (search) Remote SQL Injection Vulnerability
  5291. CKGold Shopping Cart 2.5 (category_id) SQL Injection Vulnerability
  5292. PHP 5.2.6 sleep() Local Memory Exhaust Exploit
  5293. OtomiGen.X 2.2 (lang) Local File Inclusion Vulnerabilities
  5294. Creative Software AutoUpdate Engine ActiveX Stack Overflow Exploit
  5295. CA Internet Security Suite 2008 SaveToFile()File Corruption PoC
  5296. PHPhotoalbum 0.5 Multiple Remote SQL Injection Vulnerabilities
  5297. Joomla Component Artist (idgalery) SQL Injection Vulnerability
  5298. FlashBlog (articulo_id) Remote SQL Injection Vulnerability
  5299. Adobe Acrobat Reader <= 8.1.2 Malformed PDF Remote DOS PoC
  5300. SyntaxCMS <= 1.3 (fckeditor) Arbitrary File Upload Exploit
  5301. AirvaeCommerce 3.0 (pid) Remote SQL Injection Vulnerability
  5302. PicoFlat CMS 0.5.9 Local File Inclusion Vulnerabilitty (win)
  5303. CMS from Scratch <= 1.1.3 (fckeditor) Remote Shell Upload Exploit
  5304. Mambo Component mambads <= 1.0 RC1 Beta SQL Injection Vulnerability
  5305. CMS from Scratch <= 1.1.3 (image.php) Directory Traversal Vulnerability
  5306. ASUS DPC Proxy 2.0.0.16/19 Remote Buffer Overflow Exploit
  5307. Now SMS/MMS Gateway 5.5 Remote Buffer Overflow Exploit
  5308. PHP Booking Calendar 10 d Remote SQL Injection Exploit
  5309. PHP Booking Calendar 10 d (fckeditor) Arbitrary File Upload Exploit
  5310. HiveMaker Professional <= 1.0.2 (cid) SQL Injection Vulnerability
  5311. PsychoStats <= 2.3.3 Multiple Remote SQL Injection Vulnerabilities
  5312. CMSimple 3.1 Local File Inclusion / Arbitrary File Upload Exploit
  5313. Social Site Generator (sgc_id) Remote SQL Injection Vulnerability
  5314. AzureSites CMS Multiple Remote Vulnerabilities
  5315. PHP Visit Counter <= 0.4 (datespan) SQL Injection Vulnerability
  5316. PassWiki <= 0.9.16 RC3 (site_id) Local File Inclusion Vulnerability
  5317. BP Blog 6.0 (id) Remote Blind SQL Injection Vulnerability
  5318. EasyWay CMS (index.php mid) Remote SQL Injection Exploit
  5319. Social Site Generator (path) Remote File Inclusion Vulnerability
  5320. Joomla Component prayercenter <= 1.4.9 (id) SQL Injection Vulnerability
  5321. freeSSHd 1.2.1 Remote Stack Overflow PoC (auth)
  5322. Joomla Component com_biblestudy 1.5.0 (id) SQL Injection Exploit
  5323. Social Site Generator v2 Multiple Remote File Disclosure Vulnerabilities
  5324. Samba (client) receive_smb_raw() Buffer Overflow Vulnerability PoC
  5325. ComicShout 2.8 (news.php news_id) SQL Injection Vulnerability
  5326. Joomla Component com_mycontent 1.1.13 Blind SQL Injection Exploit
  5327. DesktopOnNet 3 Beta Multiple Remote File Inclusion Vulnerabilities
  5328. meBiblio 0.4.7 (SQL/Upload/XSS) Multiple Remote Vulnerabilities
  5329. I-Pos Internet Pay Online Store <= 1.3 Beta SQL Injection Vulnerability
  5330. SecurityGateway 1.0.1 (username) Remote Buffer Overflow PoC
  5331. Joomla Component JooBB 0.5.9 Blind SQL Injection Exploit
  5332. Debian OpenSSL Predictable PRNG Bruteforce SSH Exploit (Python)
  5333. Joomla Component acctexp <= 0.12.x Blind SQL Injection Exploit
  5334. Booby 1.0.1 Multiple Remote File Inclusion Vulnerabilities
  5335. Joomla Component equotes 0.9.4 Remote SQL injection Vulnerability
  5336. pLog (albumId) Remote SQL Injection Vulnerability
  5337. SMEweb 1.4b (SQL/XSS) Multiple Remote Vulnerabilities
  5338. MDaemon <= 9.6.5 Multiple Remote Buffer Overflow Exploit PoC
  5339. FlashBlog 0.31b Remote Arbitrary File Upload Vulnerability
  5340. Joomla Component joomradio 1.0 (id) SQL Injection Vulnerability
  5341. Joomla Component iDoBlog <= b24 Remote SQL Injection Vulnerability
  5342. Battle Blog <= 1.25 (comment.asp) Remote SQL Injection Vulnerability
  5343. C6 Messenger ActiveX Remote Download & Execute Exploit
  5344. QuickerSite 1.8.5 Multiple Remote Vulnerabilities
  5345. Joomla Component JooBlog 0.1.1 Blind SQL Injection Exploit
  5346. 1Book Guestbook Script Code Execution Vulnerability
  5347. Joomla Component jotloader <= 1.2.1.a Blind SQL injection Exploit
  5348. HP StorageWorks NSI Double Take Remote Overflow Exploit (meta)
  5349. PHP-Address Book <= 3.1.5 (SQL/XSS) Multiple Vulnerabilities
  5350. Joomla Component EasyBook 1.1 (gbid) SQL Injection Exploit
  5351. Akamai Download Manager < 2.2.3.7 ActiveX Remote Download Exploit
  5352. 427BB 2.3.1 (SQL/XSS) Multiple Remote Vulnerabilities
  5353. Joomla Component simpleshop <= 3.4 SQL injection Vulnerability
  5354. Power Phlogger 2.2.5 (css_str) SQL Injection Vulnerability
  5355. pSys 0.7.0.a (shownews) Remote SQL Injection Vulnerability
  5356. Black Ice Software Inc Barcode SDK (BITiff.ocx) Remote BOF Exploit
  5357. Black Ice Software Inc Barcode SDK (BITiff.ocx) Remote BOF Exploit (2)
  5358. Joomla Component JoomlaDate (user) SQL injection Vulnerability
  5359. Asterisk (SIP channel driver / in pedantic mode) Remote Crash Exploit
  5360. Black Ice Software Inc Barcode SDK (BIDIB.ocx) Multiple Vulns
  5361. freeSSHd 1.2.1 (Post Auth) Remote SEH Overflow Exploit
  5362. Joomla Component GameQ <= 4.0 Remote SQL injection Vulnerability
  5363. JiRo´s FAQ Manager (read.asp fID) SQL Injection Vulnerability
  5364. PHPInv 0.8.0 (LFI/XSS) Multiple Remote Vulnerabilities
  5365. Joomla Component yvcomment <= 1.16 Blind SQL Injection Exploit
  5366. XOOPS Module Uploader 1.1 (filename) File Disclosure Vulnerability
  5367. BrowserCRM 5.002.00 (clients.php) Remote File Inclusion Vulnerability
  5368. Galatolo Web Manager 1.0 XSS / Local File Inclusion Vulnerability
  5369. Joomla Component rapidrecipe Remote SQL injection Vulnerability
  5370. Galatolo Web Manager <= 1.0 Remote SQL Injection Exploit
  5371. iJoomla News Portal (Itemid) Remote SQL Injection Exploit
  5372. ProManager 0.73 (config.php) Local File Inclusion Vulnerability
  5373. Real Estate Web Site 1.0 (SQL/XSS) Multiple Remote Vulnerabilities
  5374. Telephone Directory 2008 (SQL/XSS) Multiple Remote Vulnerabilities
  5375. ASPilot Pilot Cart 7.3 (article) Remote SQL Injection Vulnerability
  5376. Realm CMS <= 2.3 Multiple Remote Vulnerabilities
  5377. Flux CMS <= 1.5.0 (loadsave.php) Remote Arbitrary File Overwrite Exploit
  5378. pNews 2.08 (shownews) Remote SQL Injection Vulnerability
  5379. Telephone Directory 2008 Arbitrary Delete Contact Exploit
  5380. Achievo <= 1.3.2 (fckeditor) Arbitrary File Upload Exploit
  5381. ErfurtWiki <= R1.02b (css) Local File Inclusion Vulnerabilities
  5382. DCFM Blog 0.9.4 (comments) Remote SQL Injection Vulnerability
  5383. yBlog 0.2.2.2 (XSS/SQL) Multiple Remote Vulnerabilities
  5384. Insanely Simple Blog 0.5 (index) Remote SQL Injection Vulnerabilities
  5385. ASPPortal Free Version (Topic_Id) Remote SQL Injection Vulnerability
  5386. Experts (answer.php) Remote SQL Injection Vulnerability
  5387. Black Ice Software Annotation Plugin (BiAnno.ocx) Remote BOF Exploit
  5388. Black Ice Software Annotation Plugin (BiAnno.ocx) BOF Exploit (2)
  5389. Syndeo CMS 2.6.0 (LFI/XSS) Multiple Remote Vulnerabilities
  5390. ASP Download 1.03 Arbitrary Change Administrator Account Vulnerability
  5391. Todd Woolums ASP News Management 2.2 SQL Injection Vulnerabiltiy
  5392. TNT Forum 0.9.4 Local File Inclusion Vulnerabilities
  5393. Yuhhu 2008 SuperStar (board) Remote SQL Injection Exploit
  5394. FOG Forum 0.8.1 Multiple Local File Inclusion Vulnerabilities
  5395. eFiction 3.0 (toplists.php list) Remote SQL Injection Vulnerability
  5396. IPTBB 0.5.6 Arbitrary Add-Admin Exploit
  5397. MycroCMS 0.5 Remote Blind SQL Injection Vulnerability
  5398. Pooya Site Builder (PSB) 6.0 Multiple SQL Injection Vulnerabilities
  5399. JAMM CMS (id) Remote Blind SQL Injection Exploit
  5400. SNMPv3 HMAC validation error Remote Authentication Bypass Exploit
  5401. Gravity Board X 2.0 Beta (SQL/XSS) Multiple Remote Vulnerabilities
  5402. Facil-CMS 0.1RC Multiple Local File Inclusion Vulnerabilities
  5403. muvee autoProducer <= 6.1 (TextOut.dll) ActiveX Remote BOF Exploit
  5404. Clever Copy 3.0 (results.php) Remote SQL Injection Exploit
  5405. XChat <= 2.8.7b (URI Handler) Remote Code Execution Exploit (ie6/ie7)
  5406. GLLCTS2 <= 4.2.4 (login.php detail) SQL Injection Exploit
  5407. Butterfly Organizer 2.0.0 (SQL/XSS) Multiple Remote Vulnerabilities
  5408. WebChamado 1.1 Arbitrary Add Admin Exploit
  5409. Mambo Component galleries 1.0 (aid) Remote SQL Injection Exploit
  5410. Butterfly Organizer 2.0.0 Arbitrary Delete (Category/Account) Exploit
  5411. Easy-Clanpage 3.0b1 (section) Local File Inclusion Vulnerability
  5412. WebChamado 1.1 (tsk_id) Remote SQL Injection Vulnerability
  5413. Pre News Manager <= 1.0 (index.php id) SQL Injection Vulnerability
  5414. Pre Ads Portal <= 2.0 Remote SQL Injection Vulnerability
  5415. E-SMART CART (productsofcat.asp) Remote SQL Injection Vulnerability
  5416. GLLCTS2 (listing.php sort) Remote Blind SQL Injection Exploit
  5417. PHP JOBWEBSITE PRO (JobSearch3.php) SQL Injection Vulnerability
  5418. Mambo <= 4.6.4 (Output.php) Remote File Inclusion Vulnerability
  5419. Pre Job Board (JobSearch.php) Remote SQL Injection Vulnerability
  5420. Contenido 4.8.4 (RFI/XSS) Multiple Remote Vulnerabilities
  5421. Family Connections CMS 1.4 Multiple Remote SQL Injection Vulnerabilities
  5422. PHPMyCart (shop.php cat) Remote SQL Injection Vulnerability
  5423. Shoutcast Admin Panel 2.0 (page) Local File Inclusion Vulnerability
  5424. vsftpd 2.0.5 (CWD) Remote Memory Consumption Exploit (post auth)
  5425. Cartweaver 3 (prodId) Remote Blind SQL Injection Exploit
  5426. DIY (index_topic did ) Blind SQL Injection Exploit
  5427. Dana IRC <= 1.3 Remote Buffer Overflow PoC
  5428. xeCMS <= 1.0.0 RC2 Insecure Cookie Handling Vulnerability
  5429. EZCMS <= 1.2 (bSQL/Admin Byapss) Multiple Remote Vulnerabilities
  5430. PHPEasyNews <= 1.13 RC2 (post) Remote SQL Injection Vulnerability
  5431. AlstraSoft AskMe Pro <= 2.1 Multiple SQL Injection Vulnerabilities
  5432. Devalcms 1.4a (currentfile) Local File Inclusion Vulnerability
  5433. AWBS <= 2.7.1 (news.php viewnews) Remote SQL Injection Vulnerability
  5434. Anata CMS 1.0b5 (change.php) Arbitrary Add Admin Vulnerability
  5435. Simple Machines Forum <= 1.1.4 Remote SQL Injection Exploit
  5436. Alt-N SecurityGateway 1.00-1.01 Remote Stack Overflow Exploit
  5437. Oxygen 2.0 (repquote) Remote SQL Injection Vulnerability
  5438. SH-News 3.0 Insecure Cookie Handling Vulnerability
  5439. NiTrO Web Gallery <= 1.4.3 (section) Remote SQL Injection Vulnerability
  5440. Open Azimyt CMS <= 0.22 (lang) Local File Inclusion Vulnerability
  5441. MyMarket 1.72 Blind SQL Injection Exploit
  5442. Joomla Simple Shop Galore Component 3.x (catid) SQL Injection
  5443. Comparison Engine Power 1.0 Blind SQL Injection Exploit
  5444. Bizon-CMS 2.0 (index.php Id) Remote SQL Injection Vulnerability
  5445. BaSiC-CMS (index.php r) Remote SQL Injection Vulnerability
  5446. Deterministic Network Enhancer dne2000.sys kernel ring0 SYSTEM exploit
  5447. FreeCMS.us 0.2 (index.php page) Remote SQL Injection Vulnerability
  5448. ClipShare < 3.0.1 (tid) Remote SQL Injection Vulnerability
  5449. easyTrade 2.x (detail.php id) Remote SQL Injection Vulnerability
  5450. ThaiQuickCart (sLanguage) Local File Inclusion Vulnerability
  5451. PHP Site Lock 2.0 (index.php page) Remote SQL Injection Vulnerability
  5452. P2P Foxy Out of Memory Denial of Service Exploit
  5453. FreeCMS.us 0.2 (fckeditor) Arbitrary File Upload Exploit
  5454. MyShoutPro 1.2 Final Insecure Cookie Handling Vulnerability
  5455. eroCMS <= 1.4 (index.php site) SQL Injection Vulnerability
  5456. WebCalendar 1.0.4 (includedir) Remote File Inclusion Vulnerability
  5457. Traindepot 0.1 (LFI/XSS) Multiple Remote Vulnerabilities
  5458. doITlive CMS <= 2.50 (SQL Injection/XSS) Multiple Vulnerabilities
  5459. AspWebCalendar 2008 Remote File Upload Vulnerability
  5460. Visual Basic Enterprise Edition SP6 vb6skit.dll Buffer Overflow PoC
  5461. netBIOS (showNews.php newsid) SQL Injection Vulnerability
  5462. Maxtrade AIO 1.3.23 (categori) Remote SQL Injection Vulnerability
  5463. Mybizz-Classifieds (index.php cat) SQL Injection Vulnerability
  5464. Easy Webstore 1.2 (index.php postid) Remote SQL Injection Vulnerability
  5465. nweb2fax <= 0.2.7 Multiple Remote Vulnerabilities
  5466. Carscripts Classifieds (index.php cat) Remote SQL Injection Vulnerability
  5467. BoatScripts Classifieds (index.php type) SQL Injection Vulnerability
  5468. eLineStudio Site Composer (ESC) <= 2.6 Multiple Vulnerabilities
  5469. OwnRS Blog beta3 (SQL/XSS) Multiple Remote Vulnerabilities
  5470. Academic Web Tools CMS <= 1.4.2.8 Multiple Vulnerabilities
  5471. samart-cms 2.0 (contentsid) Remote SQL Injection Vulnerability
  5472. CMS-BRD (menuclick) Remote SQL Injection Vulnerability
  5473. Orlando CMS 0.6 Remote File Inclusion Vulnerabilities
  5474. CaupoShop Classic 1.3 (saArticle[ID]) Remote SQL Injection Vulnerability
  5475. Lotus Core CMS 1.0.1 Remote File Inclusion Vulnerabilities
  5476. AJ Auction Web 2.0 (cate_id) SQL Injection Vulnerability
  5477. AJ Auction v1 (id) Remote SQL Injection Vulnerability
  5478. Virtual Support Office-XP <= 3.0.29 Multiple Remote Vulnerabilities
  5479. GL-SH Deaf Forum <= 6.5.5 Multiple Remote Vulnerabilities
  5480. FireAnt 1.3 (index.php page) Local File Inclusion Vulnerability
  5481. FubarForum 1.5 (index.php page) Local File Inclusion Vulnerability
  5482. Lightweight News Portal [LNP] 1.0b Multiple Remote Vulnerabilities
  5483. IPTBB 0.5.6 (index.php act) Local File Inclusion Vulnerability
  5484. CiBlog 3.1 (links-extern.php id) Remote SQL Injection Vulnerability
  5485. Jamroom 3.3.5 Remote File Inclusion Vulnerabilities
  5486. JaxUltraBB <= 2.0 (LFI/XSS) Multiple Remote Vulnerabilities
  5487. emuCMS 0.3 (cat_id) Remote SQL Injection Vulnerability
  5488. PHPAuction (profile.php user_id) Remote SQL Injection Vulnerability
  5489. SiteXS CMS 0.1.1 (Upload/XSS) Multiple Remote Vulnerabilities
  5490. @CMS 2.1.1 (readarticle.php article_id) SQL Injection Vulnerability
  5491. eNews 0.1 (delete.php) Arbitrary Delete Post Vulnerability
  5492. PHP KnowledgeBase Script 2.4 (cat_id) SQL Injection Vulnerability
  5493. Aprox CMS Engine v5(.1.0.4) Local File Inclusion Vulnerability
  5494. Scientific Image DataBase <= 0.41 Blind SQL Injection Exploit
  5495. LaserNet CMS <= 1.5 Arbitrary File Upload Exploit
  5496. LE.CMS <= 1.4 Remote Arbitrary File Upload Exploit
  5497. CCLeague Pro <= 1.2 Insecure Cookie Authentication Vulnerability
  5498. OFFL <= 0.2.6 (teams.php fflteam) Remote SQL Injection Vulnerability
  5499. AJ HYIP ACME (news.php id) Remote SQL Injection Vulnerability
  5500. phpAuction 3.2.1 (item.php id) Remote SQL Injection Vulnerability
  5501. Joomla Component EXP Shop (catid) SQL Injection Vulnerability
  5502. DUdForum 3.0 (forum.asp iFor) Remote SQL Injection Vulnerability
  5503. sHibby sHop <= 2.2 (SQL/Update) Multiple Remote Vulnerabilities
  5504. CMS Mini 0.2.2 Multiple Local File Inclusion Vulnerabilities
  5505. phpDMCA 1.0.0 Multiple Remote File Inclusion Vulnerabilities
  5506. IGSuite 3.2.4 (reverse shell) Blind SQL Injection Exploit
  5507. PageSquid CMS (index.php page) Remote SQL Injection Vulnerability
  5508. RSS-Aggregator (display.php path) Remote File Inclusion Vulnerability
  5509. MiGCMS 2.0.5 Multiple Remote File Inclusion Vulnerabilities
  5510. HoMaP-CMS 0.1 (plugin_admin.php) Remote File Inclusion Vulnerability
  5511. HomePH Design 2.10 RC2 (RFI/LFI/XSS) Multiple Vulnerabilities
  5512. Hedgehog-CMS 1.21 (header.php) Local File Inclusion Vulnerability
  5513. CMReams CMS 1.3.1.1 Beta2 (LFI/XSS) Multiple Remote Vulnerabilities
  5514. ODARS CMS 1.0.2 Remote File Inclusion Vulnerability
  5515. emuCMS 0.3 (fckeditor) Arbitrary File Upload Exploit
  5516. HoMaP-CMS 0.1 (index.php go) Remote SQL Injection Vulnerability
  5517. BlogPHP 2.0 Remote Privilege Escalation Exploit
  5518. Ready2Edit (pages.php menuid) Remote SQL Injection Vulnerability
  5519. ResearchGuide 0.5 (guide.php id) SQL Injection Vulnerability
  5520. MVC-Web CMS 1.0/1.2 (index.asp newsid) SQL Injection Vulnerability
  5521. MyBlog: PHP and MySQL Blog/CMS software (SQL/XSS) Vulnerabilities
  5522. Demo4 CMS (index.php id) Remote SQL Injection Vulnerability
  5523. Joomla Component com_facileforms 1.4.4 RFI Vulnerability
  5524. Dagger CMS 2008 (dir_inc) Remote File Inclusion Vulnerability
  5525. TinX CMS 1.1 (LFI/XSS) Multiple Remote Vulnerabilities
  5526. uTorrent / BitTorrent WebIU HTTP 1.7.7/6.0.1 Range header DoS Exploit
  5527. MM Chat 1.5 (LFI/XSS) Multiple Remote Vulnerabilities
  5528. Ourvideo CMS 9.5 (RFI/LFI/XSS) Multiple Remote Vulnerabilities
  5529. cmsWorks 2.2 RC4 (mod_root) Remote File Inclusion Vulnerability
  5530. cmsWorks 2.2 RC4 (fckeditor) Remote Arbitrary File Upload Exploit
  5531. Demo4 CMS 1b (fckeditor) Arbitrary File Upload Exploit
  5532. Relative Real Estate Systems <= 3.0 (listing_id) SQL Injection Vuln
  5533. ShareCMS 0.1 Multiple Remote SQL Injection Vulnerabilities
  5534. Linksys WRT54G (firmware 1.00.9) Security Bypass Vulnerabilities (2)
  5535. DUcalendar 1.0 (detail.asp iEve) Remote SQL Injection Vulnerability
  5536. HiveMaker Directory (index.php cid) SQL Injection Vulnerability
  5537. E-topbiz ViralDX 2.07 (adclick.php bannerid) SQL Injection Vulnerability
  5538. Link ADS 1 (out.php linkid) Remote SQL Injection Vulnerability
  5539. TOKOKITA (barang.php produk_id) Remote SQL Injection Exploit
  5540. Webdevindo-CMS 0.1 (index.php hal) Remote SQL Injection Vulnerability
  5541. mUnky 0.0.1 (index.php zone) Local File Inclusion Vulnerability
  5542. Jokes & Funny Pics Script (sb_jokeid) SQL Injection Vulnerability
  5543. Mambo Component Articles (artid) Blind SQL Injection Exploit
  5544. Page Manager CMS Remote Arbitrary File Upload Vulnerability
  5545. MyPHP CMS 0.3.1 (page.php pid) Remote SQL Injection Vulnerability
  5546. PHPmotion <= 2.0 (update_profile.php) Remote Shell Upload Exploit
  5547. Joomla Component netinvoice 1.2.0 SP1 SQL Injection Vulnerability
  5548. Keller Web Admin CMS 0.94 Pro Local File Inclusion Vulnerability
  5549. PolyPager <= 1.0rc2 (SQL/XSS) Multiple Remote Vulnerabilities
  5550. PHP-Fusion Mod Kroax <= 4.42 (category) SQL Injection Vulnerability
  5551. Galmeta Post CMS 0.2 Multiple Local File Inclusion Vulnerabilities
  5552. Seagull PHP Framework <= 0.6.4 (fckeditor) Arbitrary File Upload Exploit
  5553. Riddles Complete Website 1.2.1 (riddleid) SQL Injection Vulnerability
  5554. Tips Complete Website 1.2.0 (tipid) SQL Injection Vulnerability
  5555. Jokes Complete Website 2.1.3 (jokeid) SQL Injection Vulnerability
  5556. Drinks Complete Website 2.1.0 (drinkid) SQL Injection Vulnerability
  5557. Cheats Complete Website 1.1.1 (itemid) SQL Injection Vulnerability
  5558. XnView 1.93.6 for Windows .taac Local Buffer Overflow Exploit PoC
  5559. phpBLASTER CMS 1.0 RC1 Multiple Local File Inclusion Vulnerabilities
  5560. A+ PHP Scripts NMS Insecure Cookie Handling Vulnerability
  5561. Orca 2.0/2.0.2 (params.php) Remote File Inclusion Vulnerability
  5562. Keller Web Admin CMS 0.94 Pro Local File Inclusion Vulnerability (1st)
  5563. OTManager CMS 24a (LFI/XSS) Multiple Remote Vulnerabilities
  5564. W1L3D4 Philboard 1.2 (Blind SQL/XSS) Multiple Remote Vulnerabilities
  5565. OTManager CMS 2.4 Insecure Cookie Handling Vulnerability
  5566. SePortal 2.4 (poll.php poll_id) Remote SQL Injection Vulnerability
  5567. PHP-Fusion Mod classifieds (lid) Remote SQL Injection Vulnerability
  5568. PowerAward 1.1.0 RC1 (LFI /XSS) Multiple Remote Vulnerabilities
  5569. Joomla Component jabode (id) Remote SQL Injection Vulnerability
  5570. Online Booking Manager 2.2 (id) SQL Injection Vulnerability
  5571. Joomla Component beamospetition Remote SQL Injection Vulnerability
  5572. Joomla Component Xe webtv (id) Blind SQL Injection Exploit
  5573. SebracCMS <= 0.4 Multiple SQL Injection Vulnerabilities
  5574. Surgemail 39e-1 Post Auth IMAP Remote Buffer Overflow DoS
  5575. AcmlmBoard 1.A2 (pow) Remote SQL Injection Vulnerability
  5576. eSHOP100 (SUB) Remote SQL Injection Vulnerability
  5577. BareNuked CMS 1.1.0 Arbitrary Add Admin Exploit
  5578. RCM Revision Web Development (products.php) SQL Injection Vulnerability
  5579. Pivot 1.40.5 Dreamwind load_template() Credentials Disclosure Exploit
  5580. Catviz 0.4.0 beta1 Multiple Remote SQL Injection Vulnerabilities
  5581. myBloggie 2.1.6 Multiple Remote SQL Injection Vulnerabilities
  5582. AShop Deluxe 4.x (catalogue.php cat) Remote SQL Injection Exploit
  5583. pSys v0.7.0 Alpha (chatbox.php) Remote SQL Injection Vulnerability
  5584. OpenBSD 4.0 (FIRST ANIMATED EXPLOIT) Local Root Exploit (vga)
  5585. Mambo Component n-gallery Multiple SQL Injection Vulnerabilities
  5586. HIOX Banner Rotator 1.3 (hm) Remote File Inclusion Vulnerability
  5587. php-Agenda 2.2.4 (index.php page) Local File Inclusion Vulnerability
  5588. CAT2 (spaw_root) Local File Inclusion Vulnerability
  5589. Sisplet CMS (index.php id) Remote SQL Injection Vulnerability
  5590. VanGogh Web CMS 0.9 (article_ID) Remote SQL Injection Vulnerability
  5591. PHP-Nuke Platinium <= 7.6.b.5 Remote Code Execution Exploit
  5592. Efestech Shop 2.0 (cat_id) Remote SQL Injection Vulnerability
  5593. plx Ad Trader 3.2 (adid) Remote SQL Injection Vulnerability
  5594. Joomla Component versioning 1.0.2 (id) SQL Injection Vulnerability
  5595. Joomla Component mygallery (cid) Remote SQL Injection Vulnerability
  5596. XchangeBoard 1.70 (boardID) Remote SQL Injection Vulnerability
  5597. CMS little (index.php template) Local File Inclusion Vulnerability
  5598. Joomla Component com_brightweblinks (catid) SQL Injection Vulnerability
  5599. Joomla Component QuickTime VR 0.1 Remote SQL Injection Exploit
  5600. Joomla Component is 1.0.1 Multiple Remote SQL Injection Exploit
  5601. phPortal 1.2 Multiple Remote File Inclusions Exploit
  5602. CMS WebBlizzard (index.php page) Blind SQL Injection Exploit
  5603. phpWebNews 0.2 MySQL Edition (id_kat) SQL Injection Vulnerability
  5604. phpWebNews 0.2 MySQL Edition (det) SQL Injection Vulnerability
  5605. pHNews CMS Multiple Local File Inclusion Vulnerabilities
  5606. 1024 CMS <= 1.4.4 Multiple Remote/Local File Inclusion Vulnerabilities
  5607. Joomla Component altas 1.0 Multiple Remote SQL Injection Exploit
  5608. Joomla Component DBQuery <= 1.4.1.1 RFI Vulnerability
  5609. Panda Security ActiveScan 2.0 (Update) Remote BOF Exploit
  5610. Site@School <= 2.4.10 (fckeditor) Session Hijacking / File Upload Exploit
  5611. Thelia 1.3.5 Multiple Vulnerabilities Exploit
  5612. Kasseler CMS 1.3.0 (LFI/XSS) Multiple Vulnerabilities
  5613. ImperialBB <= 2.3.5 Remote File Upload Exploit
  5614. fuzzylime cms 3.01 Remote Command Execution Exploit
  5615. XPOZE Pro 3.06 (uid) Remote SQL Injection Vulnerability
  5616. ContentNow 1.4.1 (Upload/XSS) Multiple Remote Vulnerabilities
  5617. CMailServer 5.4.6 (CMailCOM.dll) Remote SEH Overwrite Exploit
  5618. Safari + Quicktime <= 7.3 RTSP Content-Type Remote BOF Exploit
  5619. SmartPPC Pay Per Click Script (idDirectory) Blind SQL Injection Vuln
  5620. WebXell Editor 0.1.3 Arbitrary File Upload Vulnerability
  5621. fuzzylime cms 3.01a (file) Local File Inclusion Exploit
  5622. Triton CMS Pro (X-Forwarded-For) Blind SQL Injection Exploit
  5623. Neutrino 0.8.4 Atomic Edition Remote Code Execution Exploit
  5624. SmartPPC Pay Per Click Script (idDirectory) Blind SQL Injection Exploit
  5625. Mole Group Hotel Script 1.0 Remote SQL Injection Vulnerability
  5626. Mole Group Real Estate Script <= 1.1 Remote SQL Injection Vulnerability
  5627. BrewBlogger 2.1.0.1 Arbitrary Add Admin Exploit
  5628. Boonex Dolphin 6.1.2 Multiple Remote File Inclusion Vulnerabilities
  5629. Joomla Component com_content 1.0.0 (ItemID) SQL Injection Vuln
  5630. trixbox (langChoice) Local File Inclusion Exploit (connect-back) v2
  5631. Mole Group Last Minute Script <= 4.0 Remote SQL Injection Vulnerability
  5632. BoonEx Ray 3.5 (sIncPath) Remote File Inclusion Vulnerability
  5633. Multiple Vendors Malicious SVG File Denial of Service PoC
  5634. Download Accelerator Plus - DAP 8.x (m3u) Local BOF Exploit 0day
  5635. OllyDBG v1.10 and ImpREC v1.7f (export name) BOF PoC
  5636. Poppler <= 0.8.4 libpoppler uninitialized pointer Code Execution PoC
  5637. AuraCMS <= 2.2.2 (pages_data.php) Arbitrary Edit/Add/Delete Exploit
  5638. Dreampics Builder (page) Remote SQL Injection Vulnerability
  5639. DreamNews Manager (id) Remote SQL Injection Vulnerability
  5640. gapicms 9.0.2 (dirDepth) Remote File Inclusion Vulnerability
  5641. phpDatingClub (website.php page) Local File Inclusion Vulnerability
  5642. Download Accelerator Plus - DAP 8.x m3u File Buffer Overflow Exploit (c)
  5643. File Store PRO 3.2 Multiple Blind SQL Injection Vulnerabilities
  5644. Facebook Newsroom CMS 0.5.0 Beta 1 Remote File Inclusion Vulnerability
  5645. Wysi Wiki Wyg 1.0 (LFI/XSS/PHPInfo) Remote Vulnerabilities
  5646. Core Image Fun House <= 2.0 Arbitrary Code Execution PoC (OSX)
  5647. Million Pixels 3 (id_cat) Remote SQL Injection Vulnerability
  5648. trixbox 2.6.1 (langChoice) Remote Root Exploit (py)
  5649. reSIProcate 1.3.2 Remote Denial of Service PoC
  5650. Maian Cart 1.1 Insecure Cookie Handling Vulnerability
  5651. Maian Events 2.0 Insecure Cookie Handling Vulnerability
  5652. Maian Gallery 2.0 Insecure Cookie Handling Vulnerability
  5653. Maian Greetings 2.1 Insecure Cookie Handling Vulnerability
  5654. Maian Music 1.0 Insecure Cookie Handling Vulnerability
  5655. fuzzylime cms 3.01 (polladd.php poll) Remote Code Execution Exploit (php)
  5656. fuzzylime cms 3.01 (polladd.php poll) Remote Code Execution Exploit (pl)
  5657. Joomla Component n-forms 1.01 Blind SQL Injection Exploit
  5658. WebCMS Portal Edition (id) Remote SQL Injection Vulnerability
  5659. jSite 1.0 OE (SQL/LFI) Multiple Remote Vulnerabilities
  5660. Avlc Forum (vlc_forum.php id) Remote SQL Injection Vulnerability
  5661. Simple DNS Plus <= 5.0/4.1 Remote Denial of Service Exploit
  5662. fuzzylime cms 3.01 (commrss.php) Remote Code Execution Exploit
  5663. Maian Guestbook <= 3.2 Insecure Cookie Handling Vulnerability
  5664. Maian Links <= 3.1 Insecure Cookie Handling Vulnerability
  5665. Maian Recipe <= 1.2 Insecure Cookie Handling Vulnerability
  5666. Maian Weblog <= 4.0 Insecure Cookie Handling Vulnerability
  5667. Maian Uploader <= 4.0 Insecure Cookie Handling Vulnerability
  5668. Maian Search <= 1.1 Insecure Cookie Handling Vulnerability
  5669. Ultrastats <= 0.2.142 (players-detail.php) Blind SQL Injection Exploit
  5670. MFORUM 0.1a Arbitrary Add-Admin Vulnerability
  5671. ITechBids 7.0 Gold (XSS/SQL) Multiple Remote Vulnerabilities
  5672. Scripteen Free Image Hosting Script 1.2 (cookie) Pass Grabber Exploit
  5673. CodeDB (list.php lang) Local File Inclusion Vulnerability
  5674. Yahoo Messenger 8.1 ActiveX Remote Denial of Service Exploit
  5675. Bilboblog 2.1 Multiple Remote Vulnerabilities
  5676. Pluck 4.5.1 (blogpost) Local File Inclusion Vulnerability (win only)
  5677. Galatolo Web Manager 1.3a <= XSS / Remote SQL Injection Vulnerability
  5678. pSys 0.7.0 Alpha Multiple Remote File Inclusion Vulnerability
  5679. WinRemotePC Full+Lite 2008 r.2server Denial of Service Exploit
  5680. Pragyan CMS 2.6.2 (sourceFolder) Remote File Inclusion Vulnerability
  5681. Comdev Web Blogger <= 4.1.3 (arcmonth) Sql Injection Vulnerability
  5682. php Help Agent <= 1.1 (content) Local File Inclusion Vulnerability
  5683. Galatolo Web Manager 1.3a Insecure Cookie Handling Vulnerability
  5684. PhotoPost vBGallery 2.4.2 Arbitrary File Upload Vulnerability
  5685. Document Imaging SDK 10.95 ActiveX Buffer Overflow PoC
  5686. HockeySTATS Online 2.0 Multiple Remote SQL Injection Vulnerabilities
  5687. PHPizabi 0.848b C1 HFP1 Remote Code Execution Exploit
  5688. Joomla Component DT Register Remote SQL injection Vulnerability
  5689. AlstraSoft Affiliate Network Pro (pgm) Remote SQL Injection Vulnerability
  5690. tplSoccerSite 1.0 Multiple Remote SQL Injection Vulnerabilities
  5691. Bea Weblogic Apache Connector Code Exec / Denial of Service Exploit
  5692. PPMate PPMedia Class ActiveX Control Buffer Overflow PoC
  5693. phpHoo3 <= 5.2.6 (phpHoo3.php viewCat) SQL injection Vulnerability
  5694. AlstraSoft Video Share Enterprise 4.5.1 (UID) SQL Injection Vulnerability
  5695. Debian OpenSSH Remote SELinux Privilege Elevation Exploit (auth)
  5696. AlstraSoft Article Manager Pro 1.6 Blind SQL Injection Exploit
  5697. preCMS v.1 (index.php page) Remote SQL injection Vulnerability
  5698. Artic Issue Tracker 2.0.0 (index.php filter) SQL Injection Vulnerability
  5699. Aprox CMS Engine 5.1.0.4 (index.php page) SQL Injection Vulnerability
  5700. Siteframe (folder.php id) Remote SQL Injection Vulnerability
  5701. Apache mod_jk 1.2.19 Remote Buffer Overflow Exploit (win32)
  5702. Oracle Internet Directory 10.1.4 Remote Preauth DoS Exploit
  5703. PHPFootball 1.6 (show.php) Remote SQL Injection Vulnerability
  5704. IntelliTamper 2.0.7 (html parser) Remote Buffer Overflow PoC
  5705. DigiLeave 1.2 (info_book.asp book_id) Blind SQL Injection Exploit
  5706. HRS Multi (picture_pic_bv.asp key) Blind SQL Injection Exploit
  5707. IntelliTamper 2.07 (map file) Local Arbitrary Code Execution Exploit (pl)
  5708. Interact E-Learning System 2.4.1 (help.php) LFI Vulnerabilities
  5709. MojoClassifieds 2.0 Remote Blind SQL Injection Exploit
  5710. MojoPersonals (mojoClassified.cgi mojo) Blind SQL Injection Exploit
  5711. MojoJobs (mojoJobs.cgi mojo) Blind SQL Injection Exploit
  5712. MojoAuto (mojoAuto.cgi mojo) Blind SQL Injection Exploit
  5713. EZWebAlbum (dlfilename) Remote File Disclosure Vulnerability
  5714. Arctic Issue Tracker 2.0.0 (index.php filter) SQL Injection Exploit
  5715. ShopCartDx 4.30 (pid) Remote SQL Injection Vulnerability
  5716. EZWebAlbum Insecure Cookie Handling Vulnerability
  5717. IntelliTamper 2.0.7 (html parser) Remote Buffer Overflow Exploit
  5718. YouTube Blog 0.1 (RFI/SQL/XSS) Multiple Remote Vulnerabilities
  5719. IntelliTamper 2.07 (server header) Remote Code Execution Exploit
  5720. Pre Survey Poll (default.asp catid) SQL Injection Vulnerability
  5721. minix 3.1.2a tty panic Local Denial of Service Vulnerability
  5722. IntelliTamper 2.0.7 (html parser) Remote Buffer Overflow Exploit (c)
  5723. BIND 9.4.1-9.4.2 Remote DNS Cache Poisoning Flaw Exploit (meta)
  5724. BIND 9.x Remote DNS Cache Poisoning Flaw Exploit (py)
  5725. Microsoft Access (Snapview.ocx 10.0.5529.0) ActiveX Remote Exploit
  5726. Atom PhotoBlog 1.1.5b1 (photoId) Remote SQL Injection Vulnerability
  5727. ibase <= 2.03 (download.php) Remote File Disclosure Vulnerability
  5728. Wordpress Plugin Download Manager 0.2 Arbitrary File Upload Exploit
  5729. Live Music Plus 1.1.0 (id) Remote SQL Injection Vulnerability
  5730. minix 3.1.2a tty panic Remote Denial of Service Vulnerability
  5731. BIND 9.x Remote DNS Cache Poisoning Flaw Exploit (c)
  5732. xrms 1.99.2 (RFI/XSS/IG) Multiple Remote Vulnerabilities
  5733. Camera Life 2.6.2 (id) Remote SQL Injection Vulnerability
  5734. FizzMedia 1.51.2 (comment.php mid) SQL Injection Vulnerability
  5735. phpTest 0.6.3 (picture.php image_id) Remote SQL Injection Vulnerability
  5736. fipsCMS light <= 2.1 (r) Remote SQL Injection Vulnerability
  5737. phpWebNews 0.2 MySQL Edition (SQL) Insecure Cookie Handling Vuln
  5738. IceBB <= 1.0-RC9.2 Blind SQL Injection / Session Hijacking Exploit
  5739. Mobius <= 1.4.4.1 (browse.php id) Remote SQL Injection Vulnerability
  5740. EPShop < 3.0 (pid) Remote SQL Injection Vulnerability
  5741. phpLinkat 0.1 Insecure Cookie Handling / SQL Injection Vulnerability
  5742. TriO <= 2.1 (browse.php id) Remote SQL Injection Vulnerability
  5743. CMScout 2.05 (common.php bit) Local File Inclusion Vulnerability
  5744. Getacoder clone (sb_protype) Remote SQL Injection Vulnerability
  5745. GC Auction Platinum (cate_id) Remote SQL Injection Vulnerability
  5746. SiteAdmin CMS (art) Remote SQL Injection Vulnerability
  5747. Pligg CMS 9.9.0 (story.php id) Remote SQL Injection Vulnerability
  5748. Youtuber Clone (ugroups.php UID) Remote SQL Injection Vulnerability
  5749. TalkBack 2.3.5 (language) Local File Inclusion Vulnerability
  5750. Dokeos E-Learning System 1.8.5 Local File Inclusion Vulnerability
  5751. PixelPost 1.7.1 (language_full) Local File Inclusion Vulnerability
  5752. Velocity web-server 1.0 Directory Traversal File Download Vulnerability
  5753. Trend Micro OfficeScan ObjRemoveCtrl ActiveX Control BOF Exploit
  5754. ATutor <= 1.6.1-pl1 (import.php) Remote File Inclusion Vulnerability
  5755. ViArt Shop <= 3.5 (category_id) Remote SQL Injection Vulnerability
  5756. Cisco IOS 12.3(18) FTP Server Remote Exploit (attached to gdb)
  5757. Minishowcase 09b136 (lang) Local File Inclusion Vulnerability
  5758. CoolPlayer m3u File Local Buffer Overflow Exploit
  5759. e107 Plugin BLOG Engine 2.2 Blind SQL Injection Exploit
  5760. Gregarius <= 0.5.4 rsargs[] Remote SQL Injection Vulnerability
  5761. PHP Hosting Directory 2.0 (admin.php rd) RFI Vulnerability
  5762. HIOX Random Ad 1.3 (hioxRandomAd.php hm) RFI Vulnerability
  5763. HIOX Browser Statistics 2.0 Remote File Inclusion Vulnerability
  5764. PHP Hosting Directory 2.0 Insecure Cookie Handling Vulnerability
  5765. nzFotolog 0.4.1 (action_file) Local File Inclusion Vulnerability
  5766. ZeeReviews (comments.php ItemID) Remote SQL Injection Vulnerability
  5767. HIOX Random Ad 1.3 Arbitrary Add Admin User Exploit
  5768. Article Friendly Pro/Standard (Cat) Remote SQL Injection Vulnerability
  5769. HIOX Browser Statistics 2.0 Arbitrary Add Admin User Exploit
  5770. PozScripts Classified Ads Script (cid) SQL Injection Vulnerability
  5771. TubeGuru Video Sharing Script (UID) SQL Injection Vulnerability
  5772. eNdonesia 8.4 (Calendar Module) Remote SQL Injection Exploit
  5773. Pligg <= 9.9.0 Remote Code Execution Exploit
  5774. Pligg <= 9.9.0 (XSS/LFI/SQL) Multiple Remote Vulnerabilities
  5775. F-PROT antivirus 6.2.1.4252 (malformed archive) Infinite Loop DoS Exploit
  5776. NCTsoft AudFile.dll ActiveX Control Remote Buffer Overflow Exploit
  5777. PHPX 3.5.16 Cookie Poisoning and Login Bypass Vulnerability
  5778. Symphony <= 1.7.01 (non-patched) Remote Code Execution Exploit
  5779. Coppermine Photo Gallery <= 1.4.18 LFI / Remote Code Execution Exploit
  5780. LetterIt 2 (language) Local File Inclusion Vulnerability
  5781. phpMyRealty (location) Remote SQL Injection Vulnerability
  5782. RealVNC Windows Client 4.1.2 Remote DOS Crash PoC
  5783. PHPAuction GPL Enhanced 2.51 (profile.php) SQL Injection Vulnerability
  5784. ABG Blocking Script 1.0a (abg_path) Remote File Inclusion Vulnerability
  5785. E-topbiz Dating 3 PHP Script (mail_id) Remote SQL Injection Vulnerability
  5786. Scripts24 iTGP 1.0.4 (id) Remote SQL Injection Vulnerability
  5787. Scripts24 iPost 1.0.1 (id) Remote SQL Injection Vulnerability
  5788. eStoreAff 0.1 (cid) Remote SQL Injection Vulnerability
  5789. IrfanView <= 3.99 IFF File Local Stack Buffer Overflow Exploit
  5790. GreenCart PHP Shopping Cart (id) Remote SQL Injection Vulnerability
  5791. phsBlog 0.1.1 Multiple Remote SQL Injection Vulnerabilities
  5792. e-Vision CMS <= 2.02 (SQL/Upload/IG) Multiple Remote Vulnerabilities
  5793. K-Links Directory (SQL/XSS) Multiple Remote Vulnerabilities
  5794. E-Store Kit- <= 2 PayPal Edition (pid) SQL Injection Vulnerability
  5795. moziloCMS 1.10.1 (download.php) Arbitrary Download File Exploit
  5796. IntelliTamper 2.07 (imgsrc) Remote Buffer Overflow Exploit
  5797. Xerox Phaser 8400 (reboot) Remote Denial of Service Exploit
  5798. Joomla Component EZ Store Remote Blind SQL Injection Exploit
  5799. syzygyCMS 0.3 (index.php page) Local File Inclusion Vulnerability
  5800. HydraIrc <= 0.3.164 (last) Remote Denial of Service Exploit
  5801. Dayfox Blog 4 Multiple Local File Inclusion Vulnerabilities
  5802. Plogger <= 3.0 Remote SQL Injection Vulnerability
  5803. IGES CMS <= 2.0 (XSS/SQL) Multiple Remote Vulnerabilities
  5804. LiteNews <= 0.1 Insecure Cookie Handling Vulnerability
  5805. LiteNews <= 0.1 (id) Remote SQL Injection Vulnerability
  5806. Multiple Wsn Products (LFI) Code Execution Vulnerability
  5807. LoveCMS 1.6.2 Final Remote Code Execution Exploit
  5808. LoveCMS 1.6.2 Final Update Settings Remote Exploit
  5809. Quate CMS 0.3.4 (LFI/XSS) Multiple Remote Vulnerabilities
  5810. Free Hosting Manager 1.2/2.0 Insecure Cookie Handling Vulnerability
  5811. Discuz! 6.0.1 (searchid) Remote SQL Injection Exploit
  5812. Ppim <= 1.0 (Arbitrary File Delete/XSS) Multiple Vulnerabilities
  5813. Download Accelerator Plus - DAP 8.6 (AniGIF.ocx) Buffer Overflow PoC
  5814. BlazeDVD 5.0 PLF Playlist File Remote Buffer Overflow Exploit
  5815. Sun xVM VirtualBox < 1.6.4 Privilege Escalation Vulnerability PoC
  5816. e107 <= 0.7.11 Arbitrary Variable Overwriting Vulnerability
  5817. Cisco WebEx Meeting Manager (atucfobj.dll) ActiveX Remote BOF Exploit
  5818. Vacation Rental Script 3.0 (id) Remote SQL Injection Vulnerability
  5819. Quicksilver Forums 1.4.1 forums[] Remote SQL Injection Exploit
  5820. txtSQL 2.2 Final (startup.php) Remote File Inclusion Vulnerability
  5821. PHP-Ring Webring System 0.9.1 Insecure Cookie Handling Vulnerability
  5822. psipuss 1.0 Multiple Remote SQL Injection Vulnerabilities
  5823. IntelliTamper 2.07 HTTP Header Remote Code Execution Exploit
  5824. OpenImpro 1.1 (image.php id) SQL Injection Vulnerability
  5825. Apache Tomcat <= 6.0.18 UTF8 Directory Traversal Vulnerability
  5826. ZeeBuddy 2.1 (bannerclick.php adid) SQL Injection Vulnerability
  5827. Ppim <= 1.0 (upload/change password) Multiple Vulnerabilities
  5828. Ovidentia 6.6.5 (item) Remote SQL Injection Vulnerability
  5829. BBlog 0.7.6 (mod) Remote SQL Injection Vulnerability
  5830. Joomla 1.5.x (Token) Remote Admin Change Password Vulnerability
  5831. gelato CMS 0.95 (img) Remote File Disclosure Vulnerability
  5832. BIND 9.5.0-P2 (randomized ports) Remote DNS Cache Poisoning Exploit
  5833. Ventrilo <= 3.0.2 NULL pointer Remote DoS Exploit
  5834. IntelliTamper 2.07/2.08 Beta 4 A HREF Remote Buffer Overflow Exploit
  5835. Ruby <= 1.9 (regex engine) Remote Socket Memory Leak Exploit
  5836. FlashGet 1.9 (FTP PWD Response) Remote BOF Exploit PoC 0day
  5837. Microsoft Visual Studio (Msmask32.ocx) ActiveX Remote BOF PoC
  5838. dotCMS 1.6 (id) Multiple Local File Inclusion Vulnerabilities
  5839. FlashGet 1.9.0.1012 (FTP PWD Response) SEH STACK Overflow Exploit
  5840. ZEEJOBSITE 2.0 (adid) Remote SQL Injection Vulnerability
  5841. DeeEmm CMS (DMCMS) 0.7.4 Multiple Remote Vulnerabilities
  5842. ESET Smart Security 3.0.667.0 Privilege Escalation PoC
  5843. VLC 0.8.6i tta File Parsing Heap Overflow PoC
  5844. EO Video 1.36 Local Heap Overflow DOS / PoC
  5845. XNova 0.8 sp1 (xnova_root_path) Remote File Inclusion Vulnerability
  5846. phpArcadeScript v4 (cat) Remote SQL Injection Vulnerability
  5847. FlashGet 1.9.0.1012 (FTP PWD Response) BOF Exploit (safeseh)
  5848. WS_FTP Home/Professional FTP Client Remote Format String PoC
  5849. PHPBasket (product.php pro_id) SQL Injection Vulnerability
  5850. VidiScript (Avatar) Remote Arbitrary File Upload Vulnerability
  5851. cyberBB 0.6 Multiple Remote SQL Injection Vulnerabilities
  5852. PHP Live Helper <= 2.0.1 Multiple Remote Vulnerabilities
  5853. VMware Workstation (hcmon.sys 6.0.0.45731) Local DoS Vulnerability
  5854. TWiki 4.2.0 (configure) Remote File Disclosure Vulnerability
  5855. SFS Affiliate Directory (id) SQL Injection Vulnerability
  5856. Ad Board (id) Remote SQL Injection Vulnerability
  5857. SunShop <= 4.1.4 (id) Remote SQL Injection Vulnerability
  5858. Banner Management Script (tr.php id) Remote SQL Injection Vulnerability
  5859. Active PHP Bookmarks 1.1.02 Remote SQL Injection Vulnerability
  5860. Anzio Web Print Object <= 3.2.30 ActiveX Buffer Overflow Exploit
  5861. Pars4U Videosharing V1 XSS / Remote Blind SQL Injection Exploit
  5862. phpBazar 2.0.2 (adid) Remote SQL Injection Vulnerability
  5863. webEdition CMS (we_objectID) Blind SQL Injection Exploit
  5864. CustomCMS 4.0 (CCMS) print.php Remote SQL Injection Vulnerability
  5865. PhotoCart <= 3.9 Multiple Remote SQL Injection Vulnerabilities
  5866. BandSite CMS 1.1.4 (Download Backup/XSS/CSRF) Remote Vulnerabilities
  5867. tinyCMS 1.1.2 (templater.php) Local File Inclusion Vulnerability
  5868. EasySite 2.3 Multiple Remote Vulnerabilities
  5869. NoName Script <= 1.1 Multiple Remote Vulnerabilities
  5870. OneNews Beta 2 (XSS/HI/SQL) Multiple Remote Vulnerabilities
  5871. VLC 0.8.6i MMS Protocol Handling Heap Overflow PoC
  5872. 5 Star Review (XSS/SQL) Multiple Remote Vulnerabilities
  5873. MiaCMS <= 4.6.5 Multiple Remote SQL Injection Vulnerabilities
  5874. BtiTracker <= 1.4.7, xbtit <= 2.0.542 SQL Injection Vulnerability
  5875. Matterdaddy Market 1.1 Multiple SQL Injection Vulnerabilities
  5876. Web Directory Script <= 2.0 (name) SQL Injection Vulnerability
  5877. Pluck CMS 4.5.2 Multiple Local File Inclusion Vulnerabilities
  5878. ezContents CMS 2.0.3 Multiple Local File Inclusion Vulnerabilities
  5879. Dana IRC 1.4a Remote Buffer Overflow Exploit
  5880. WebBoard <= 2.0 Arbitrary SQL Question/Anwser Delete Vulnerability
  5881. Belkin wireless G router + ADSL2 modem Auth Bypass Exploit
  5882. GeekLog <= 1.5.0 Remote Arbitrary File Upload Exploit
  5883. Crafty Syntax Live Help <= 2.14.6 (department) SQL Injection Vuln
  5884. z-breaknews 2.0 (single.php) Remote SQL Injection Vulnerability
  5885. Kolifa.net Download Script 1.2 (id) SQL Injection Vulnerability
  5886. Simple PHP Blog (SPHPBlog) <= 0.5.1 Code Execution Exploit
  5887. K-Rate (SQL/XSS) Multiple Remote Vulnerabilities
  5888. CMME 1.12 (LFI/XSS/CSRF/Backup/MkDir) Multiple Vulnerabilities
  5889. Thickbox Gallery v2 (admins.php) Admin Data Disclosure Vulnerability
  5890. iFdate <= 2.0.3 Remote SQL Injection Vulnerability
  5891. MyBulletinBoard (MyBB) <= 1.2.11 private.php SQL Injection Exploit (2)
  5892. Microsoft Visual Studio (Msmask32.ocx) ActiveX Remote BOF Exploit
  5893. Ultra Office ActiveX Control Remote Buffer Overflow Exploit
  5894. Ultra Office ActiveX Control Remote Arbitrary File Corruption Exploit
  5895. phpMyRealty <= 1.0.9 Multiple Remote SQL Injection Vulnerabilities
  5896. YourOwnBux 3.1, 3.2 Beta Remote SQL Injection Vulnerability
  5897. Acoustica Mixcraft <= 4.2 Build 98 (mx4 file) Local BOF Exploit
  5898. Friendly Technologies (fwRemoteCfg.dll) ActiveX Remote BOF Exploit
  5899. Friendly Technologies (fwRemoteCfg.dll) ActiveX Command Exec Exploit
  5900. Invision Power Board <= 2.3.5 Multiple Vulnerabilities Exploit (revised)
  5901. LogMeIn Remote Access Utility ActiveX Memory Corruption DoS
  5902. Najdi.si Toolbar ActiveX Remote Buffer Overflow PoC
  5903. Sun Solaris <= 10 snoop(1M) Utility Remote Exploit
  5904. Acoustica MP3 CD Burner 4.51 Build 147 (asx file) Local BOF Exploit
  5905. Micrsoft Windows GDI (CreateDIBPatternBrushPt) Heap Overflow PoC
  5906. Brim 2.0.0 (SQL/XSS) Multiple Remote Vulnerabilities
  5907. Acoustica Beatcraft 1.02 Build 19 (bcproj file) Local BOF Exploit
  5908. Friendly Technologies Read/Write Registry/Read Files Exploit
  5909. Web Directory Script 1.5.3 (site) SQL Injection Vulnerability
  5910. Words tag script 1.2 (word) Remote SQL Injection Vulnerability
  5911. Postfix <= 2.6-20080814 (symlink) Local Privilege Escalation Exploit
  5912. myPHPNuke < 1.8.8_8rc2 (XSS/SQL) Multiple Remote Vulnerabilities
  5913. WeBid 0.5.4 Multiple Remote Vulnerabilities
  5914. WeBid 0.5.4 (item.php id) Remote SQL Injection Vulnerability
  5915. EasyClassifields 3.0 (go) Remote SQL Injection Vulnerability
  5916. CMSbright (id_rub_page) Remote SQL Injection Vulnerability
  5917. WeBid 0.5.4 (fckeditor) Remote Arbitrary File Upload Exploit
  5918. VMware COM API ActiveX Remote Buffer Overflow PoC
  5919. e107 Plugin BLOG Engine 2.2 (uid) SQL Injection Exploit
  5920. myPHPNuke < 1.8.8_8rc2 (artid) SQL Injection Vulnerability
  5921. Coupon Script 4.0 (id) Remote SQL Injection Vulnerability
  5922. Reciprocal Links Manager 1.1 (site) SQL Injection Vulnerability
  5923. AJ HYIP ACME (comment.php artid) SQL Injection Vulnerability
  5924. AJ HYIP ACME (readarticle.php artid) SQL Injection Vulnerability
  5925. CS-Cart <= 1.3.5 (Auth Bypass) SQL Injection Vulnerability
  5926. Google Chrome Browser 0.2.149.27 malicious link DoS Vulnerability
  5927. Spice Classifieds (cat_path) Remote SQL Injection Vulnerability
  5928. Google Chrome Browser 0.2.149.27 Automatic File Download Exploit
  5929. Moodle <= 1.8.4 Remote Code Execution Exploit
  5930. aspWebAlbum 3.2 (Upload/SQL/XSS) Multiple Remote Vulnerabilities
  5931. TransLucid 1.75 (fckeditor) Remote Arbitrary File Upload Vulnerability
  5932. Living Local Website (listtest.php r) SQL Injection Vulnerability
  5933. ACG-PTP 1.0.6 (adid) Remote SQL Injection Vulnerability
  5934. Qwicsite Pro (SQL/XSS) Multiple Remote Vulnerabilities
  5935. ACG-ScriptShop (cid) Remote SQL Injection Vulnerability
  5936. Google Chrome Browser 0.2.149.27 (1583) Remote Silent Crash PoC
  5937. MicroTik RouterOS <= 3.13 SNMP write (Set request) PoC
  5938. Google Chrome Browser 0.2.149.27 (SaveAs) Remote BOF Exploit
  5939. AWStats Totals (awstatstotals.php sort) Remote Code Execution Exploit
  5940. devalcms 1.4a XSS / Remote Code Execution Exploit
  5941. WebCMS Portal Edition (index.php id) Blind SQL Injection Exploit
  5942. Vastal I-Tech Agent Zone (ann_id) SQL Injection Vulnerability
  5943. Google Chrome Browser 0.2.149.27 A HREF Denial of Service Exploit
  5944. Vastal I-Tech Visa Zone (news_id) SQL Injection Vulnerability
  5945. Vastal I-Tech Toner Cart (id) SQL Injection Vulnerability
  5946. Vastal I-Tech Share Zone (id) SQL Injection Vulnerability
  5947. Vastal I-Tech DVD Zone (cat_id) SQL Injection Vulnerability
  5948. Vastal I-Tech Jobs Zone (news_id) SQL Injection Vulnerability
  5949. Vastal I-Tech MMORPG Zone (game_id) SQL Injection Vulnerability
  5950. Vastal I-Tech Mag Zone (cat_id) SQL Injection Vulnerability
  5951. Vastal I-Tech Freelance Zone (coder_id) SQL Injection Vulnerability
  5952. Vastal I-Tech Cosmetics Zone (cat_id) SQL Injection Vulnerability
  5953. EsFaq 2.0 (idcat) Remote SQL Injection Vulnerability
  5954. Vastal I-Tech Shaadi Zone 1.0.9 (tage) SQL Injection Vulnerability
  5955. Google Chrome Browser 0.2.149.27 Inspect Element DoS Exploit
  5956. CitectSCADA ODBC Server Remote Stack Buffer Overflow Exploit (meta)
  5957. Vastal I-Tech Dating Zone (fage) SQL Injection Vulnerability
  5958. Numark Cue 5.0 rev 2 Local .M3U File Stack Buffer Overflow Exploit
  5959. IntegraMOD 1.4.x (Insecure Directory) Download Database Vulnerability
  5960. Flock Social Web Browser 1.2.5 (loop) Remote Denial of Service Exploit
  5961. Simple Machines Forum <= 1.1.5 Admin Reset Password Exploit (win32)
  5962. MemHT Portal <= 3.9.0 Remote Create Shell Exploit
  5963. Samsung DVR SHR2040 HTTPD Remote Denial of Service DoS PoC
  5964. Masir Camp E-Shop Module <= 3.0 (ordercode) SQL Injection Vuln
  5965. Alstrasoft Forum (cat) Remote SQL Injection Vulnerability
  5966. Wordpress 2.6.1 SQL Column Truncation Vulnerability
  5967. E-Shop Shopping Cart Script (search_results.php) SQL Injection Vuln
  5968. Alstrasoft Forum (catid) Remote SQL Injection Vulnerability
  5969. Stash 1.0.3 Multiple SQL Injection Vulnerabilities
  5970. Hot Links SQL-PHP 3 (report.php) Multiple Vulnerabilities
  5971. Live TV Script (index.php mid) SQL Injection Vulnerability
  5972. Creator CMS 5.0 (sideid) Remote SQL Injection Vulnerability
  5973. Stash 1.0.3 Insecure Cookie Handling Vulnerability
  5974. Microworld Mailscan 5.6.a Password Reveal Exploit
  5975. CMS Buzz (id) Remote SQL Injection Vulnerability
  5976. Availscript Article Script (articles.php) Multiple Vulnerabilities
  5977. Kim Websites 1.0 (fckeditor) Remote Arbitrary File Upload Vulnerability
  5978. Availscript Photo Album (pics.php) Multiple Vulnerabilities
  5979. Availscript Classmate Script (viewprofile.php) SQL Injection Vulnerability
  5980. Zanfi CMS lite 1.2 Multiple Local File Inclusion Vulnerabilities
  5981. Peachtree Accounting 2004 (PAWWeb11.ocx) ActiveX Insecure Method
  5982. Libera CMS <= 1.12 (Cookie) Remote SQL Injection Exploit
  5983. Availscript Jobs Portal Script (jid) SQL Injection Vulnerability (auth)
  5984. Zanfi CMS lite / Jaw Portal free (fckeditor) Arbitrary File Upload Vuln
  5985. aspWebAlbum 3.2 Multiple Remote Vulnerabilities
  5986. Wordpress 2.6.1 (SQL Column Truncation) Admin Takeover Exploit
  5987. phpVID 1.1 (XSS/SQL) Multiple Remote Vulnerabilities
  5988. Zanfi CMS lite / Jaw Portal free (page) SQL Injection Vulnerability
  5989. Adobe Acrobat 9 ActiveX Remote Denial of Service Exploit
  5990. PhpWebGallery 1.3.4 (XSS/LFI) Multiple Vulnerabilities
  5991. Autodealers CMS AutOnline (pageid) SQL Injection Vulnerability
  5992. Sports Clubs Web Panel 0.0.1 (p) Local File Inclusion Vulnerability
  5993. Easy Photo Gallery 2.1 XSS/FD/Bypass/SQL Injection Exploit
  5994. D-iscussion Board 3.01 (topic) Local File Inclusion Vulnerability
  5995. phsBlog 0.2 Bypass SQL Injection Filtering Exploit
  5996. minb 0.1.0 Remote Code Execution Exploit
  5997. Autodealers CMS AutOnline (id) SQL Injection Vulnerability
  5998. Maxthon Browser 2.1.4.443 UNICODE Remote Denial of Service PoC
  5999. Sports Clubs Web Panel 0.0.1 (id) SQL Injection Vulnerabilities
  6000. PhpWebGallery 1.3.4 (cat) Blind SQL Injection Vulnerability
  6001. Easy Photo Gallery 2.1 Arbitrary Add Admin / remove user Vulnerability
  6002. Yourownbux 4.0 (COOKIE) Authentication Bypass Exploit
  6003. Sports Clubs Web Panel 0.0.1 Remote File Upload Vulnerability
  6004. PhpWebGallery 1.3.4 Remote Blind SQL Injection Exploit
  6005. pForum 1.30 (showprofil.php id) Remote SQL Injection Vulnerability
  6006. WebPortal CMS <= 0.7.4 (download.php aid) SQL Injection Exploit
  6007. iBoutique 4.0 (cat) Remote SQL Injection Vulnerability
  6008. SkaLinks 1.5 (register.php) Remote Arbitrary Add Editor Vulnerability
  6009. vbLOGIX Tutorial Script <= 1.0 (cat_id) SQL Injection Vulnerability
  6010. pNews 2.03 (newsid) Remote SQL Injection Vulnerability
  6011. WebPortal CMS <= 0.7.4 (fckeditor) Arbitrary File Upload Vulnerability
  6012. pLink 2.07 (linkto.php id) Remote Blind SQL Injection Exploit
  6013. Sports Clubs Web Panel 0.0.1 Remote Game Delete Exploit
  6014. Talkback 2.3.6 Multiple Local File Inclusion/PHPInfo Disclosure Vulns
  6015. phpSmartCom 0.2 (LFI/SQL) Multiple Remote Vulnerabilities
  6016. FoT Video scripti 1.1b (oyun) Remote SQL Injection Vulnerability
  6017. Windows Media Encoder wmex.dll ActiveX BOF Exploit (MS08-053)
  6018. Linkarity (link.php) Remote SQL Injection Vulnerability
  6019. Free PHP VX Guestbook 1.06 Arbitrary Database Backup Vulnerability
  6020. Free PHP VX Guestbook 1.06 Insecure Cookie Handling Vulnerability
  6021. The Personal FTP Server 6.0f RETR Denial of Service Exploit
  6022. Nokia e90/n82 (s60v3) Remote Denial of Service Vulnerability
  6023. Kasseler CMS 1.1.0/1.2.0 Lite Remote SQL Injection Vulnerabilities
  6024. Cpanel <= 11.x (Fantastico) LFI Vulnerability (sec bypass)
  6025. CzarNews <= 1.20 (Cookie) Remote SQL Injection Exploit
  6026. MS Windows WRITE_ANDX SMB command handling Kernel DoS (meta)
  6027. CzarNews <= 1.20 (Account Hijacking) Remote SQL Injection Vuln
  6028. Pre Real Estate Listings (search.php c) SQL Injection Vulnerability
  6029. Link Bid Script 1.5 Multiple Remote SQL Injection Vulnerabilities
  6030. iScripts EasyIndex (produid) Remote SQL Injection Vulnerability
  6031. Attachmax Dolphin <= 2.1.0 Multiple Remote Vulnerabilities
  6032. Gonafish LinksCaffePRO 4.5 (index.php) SQL Injection Vulnerability
  6033. Hotel reservation System (city.asp city) Blind SQL Injection Vulnerability
  6034. QuickTime 7.5.5 / ITunes 8.0 Remote off by one Crash Exploit
  6035. Postfix < 2.4.9, 2.5.5, 2.6-20080902 (.forward) Local DoS Exploit
  6036. phpRealty 0.3 (INC) Remote File Inclusion Vulnerability
  6037. WonderWare SuiteLink 2.0 Remote Denial of Service Exploit (meta)
  6038. PHP Crawler 0.8 (footer) Remote File Inclusion Vulnerability
  6039. Cisco Router HTTP Administration CSRF Command Execution Exploit
  6040. Cisco Router HTTP Administration CSRF Command Execution Exploit 2
  6041. Technote 7 (shop_this_skin_path) Remote File Inclusion Vulnerability
  6042. X10media Mp3 Search Engine 1.5.5 Remote File Inclusion Vulnerability
  6043. Femitter FTP Server 1.03 (RETR) Remote Denial of Service Exploit PoC
  6044. addalink <= 4 Write Approved Links Remote Vulnerability
  6045. E-Php CMS (article.php es_id) Remote SQL Injection Vulnerability
  6046. addalink <= 4 (category_id) Remote SQL Injection Vulnerability
  6047. ProArcadeScript 1.3 (random) Remote SQL Injection Vulnerability
  6048. CYASK 3.x (collect.php neturl) Local File Disclosure Vulnerability
  6049. Diesel Joke Site (picture_category.php id) SQL Injection Vulnerability
  6050. ProActive CMS (template) Local File Inclusion Vulnerability
  6051. AssetMan v2.5-b SQL Injection using Session Fixation Attack
  6052. NuMedia Soft NMS DVD Burning SDK Activex (NMSDVDX.dll) Exploit
  6053. Pluck 4.5.3 (update.php) Remote File Corruption Exploit
  6054. fhttpd 0.4.2 un64() Remote Denial of Service Exploit
  6055. easyLink 1.1.0 (detail.php) Remote SQL Injection Vulnerability
  6056. Explay CMS <= 2.1 Persistent XSS and CSRF Vulnerability
  6057. DESlock+ <= 3.2.7 Local Kernel Overflow PoC
  6058. DESlock+ <= 3.2.7 Local Kernel Race Condition Denial of Service PoC
  6059. DESlock+ <= 3.2.7 (probe read) Local Kernel Denial of Service PoC
  6060. Advanced Electron Forum <= 1.0.6 Remote Code Execution Vulnerability
  6061. Explay CMS <= 2.1 Insecure Cookie Handling Vulnerability
  6062. MyFWB 1.0 (index.php page) Remote SQL Injection Vulnerability
  6063. Diesel Pay Script (area) Remote SQL Injection Vulnerability
  6064. Plaincart 1.1.2 (p) Remote SQL Injection Vulnerability
  6065. Oceandir <= 2.9 (show_vote.php id) Remote SQL Injection Vulnerability
  6066. jPORTAL 2 (humor.php id) Remote SQL Injection Vulnerability
  6067. Unreal Tournament 3 v1.3 Remote Directory Traversal Vulnerability
  6068. Invision Power Board <= 2.3.5 Remote SQL Injection Exploit
  6069. Basic PHP Events Lister 1.0 Remote SQL Injection Vulnerability
  6070. TWiki <= 4.2.2 (action) Remote Code Execution Vulnerability
  6071. PHPKB 1.5 Professional Multiple Remote SQL Injection Vulnerabilities
  6072. 6rbScript 3.3 (singerid) Remote SQL Injection Vulnerability
  6073. Diesel Job Site (job_id) Blind SQL Injection Vulnerability
  6074. Rianxosencabos CMS 0.9 Arbitrary Add-Admin Vulnerability
  6075. Availscript Jobs Portal Script File Upload Vulnerability (auth)
  6076. DESlock+ 3.2.7 (vdlptokn.sys) Local Denial of Service Exploit
  6077. e107 Plugin Image Gallery 0.9.6.2 (image) SQL Injection Vulnerability
  6078. NetArtMedia Jobs Portal 1.3 Multiple SQL Injection Vulnerabilities
  6079. NetArtMedia Real Estate Portal 1.2 SQL Injection Vulnerability
  6080. PHP iCalendar <= 2.24 (cookie_language) LFI / File Upload Exploit
  6081. 6rbScript 3.3 (section.php name) Local File Inclusion Vulnerability
  6082. Rianxosencabos CMS 0.9 Insecure Cookie Handling Vulnerability
  6083. Availscript Article Script (view.php v) SQL Injection Vulnerability
  6084. WCMS v.1.0b Arbitrary Add Admin Exploit
  6085. WSN Links 2.22/2.23 (vote.php) Remote SQL Injection Vulnerability
  6086. WSN Links 2.20 (comments.php) SQL Injection Vulnerability
  6087. PHP iCalendar <= 2.24 Insecure Cookie Handling Vulnerability
  6088. BuzzyWall <= 1.3.1 (search.php search) SQL Injection Vulnerability
  6089. WCMS v.1.0b (news_detail.asp id) Remote SQL Injection Vulnerability
  6090. WSN Links Free 4.0.34P (comments.php) Blind SQL Injection Exploit
  6091. OpenElec <= v3.01 (form.php obj) Local File Inclusion Vulnerability
  6092. MyBlog <= 0.9.8 Insecure Cookie Handling Vulnerability
  6093. Sagem Routers F@ST Remote CSRF Exploit (dhcp hostname attack)
  6094. basebuilder <= 2.0.1 (main.inc.php) Remote File Inclusion Vulnerability
  6095. Fez 1.3/2.0 RC1 (list.php) Remote SQL Injection Vulnerability
  6096. CJ Ultra Plus <= 1.0.4 Cookie Remote SQL Injection Exploit
  6097. Chilkat XML ActiveX Remote Arbitrary File Creation/Execution Exploit
  6098. OpenRat <= 0.8-beta4 (tpl_dir) Remote File Inclusion Vulnerability
  6099. Sofi WebGui <= 0.6.3 PRE (mod_dir) Remote File Inclusion Vulnerability
  6100. iGaming CMS <= 1.5 Multiple Remote SQL Injection Exploit
  6101. Galmeta Post CMS <= 0.2 Remote Code Execution / Arbitrary File Upload
  6102. JETIK-WEB Software (sayfa.php kat) SQL Injection Vulnerability
  6103. Ol Bookmarks Manager 0.7.5 Local File Inclusion Vulnerability
  6104. WebPortal CMS <= 0.7.4 (code) Remote Code Execution Vulnerability
  6105. Hotscripts Clone (cid) Remote SQL Injection Vulnerability
  6106. Rianxosencabos CMS 0.9 Remote Add Admin Exploit
  6107. Ol Bookmarks Manager 0.7.5 RFI / LFI / SQL Injection Vulnerabilities
  6108. BurnAware NMSDVDXU ActiveX Remote Arbitrary File Creation/Execution
  6109. Jetik Emlak ESA 2.0 Multiple Remote SQL Injection Vulnerabilities
  6110. AJ Auction Pro Platinum Skin #2 (detail.php item_id) SQL Injection Vuln
  6111. emergecolab 1.0 (sitecode) Local File Inclusion Vulnerability
  6112. mailwatch <= 1.0.4 (docs.php doc) Local File Inclusion Vulnerability
  6113. PHPcounter <= 1.3.2 (defs.php l) Local File Inclusion Vulnerability
  6114. Google Chrome Browser Carriage Return Null Object Memory Exhaustion
  6115. Jadu CMS for Government (recruit_details.php) SQL Injection Vuln
  6116. webcp 0.5.7 (filelocation) Remote File Disclosure Vulnerability
  6117. ADN Forum <= 1.0b Insecure Cookie Handling Vulnerability
  6118. barcodegen <= 2.0.0 Local File Inclusion Vulnerability
  6119. Observer 0.3.2.1 Multiple Remote Command Execution Vulnerabilities
  6120. MS Windows Wordpad .doc File Local Denial of Service PoC
  6121. AJ Auction Pro Platinum (seller_id) SQL Injection Vulnerability
  6122. LanSuite 3.3.2 (design) Local File Inclusion Vulnerability
  6123. phpOCS <= 0.1-beta3 (index.php act) Local File Inclusion Vulnerability
  6124. Vikingboard <= 0.2 Beta (task) Local File Inclusion Vulnerability
  6125. K-Lite Mega Codec Pack 3.5.7.0 Local Windows Explorer DoS PoC
  6126. PHP infoBoard v.7 Plus Multiple Remote Vulnerabilities
  6127. Libra PHP File Manager <= 1.18/2.0 Local File Inclusion Exploit
  6128. PHP infoBoard v.7 Plus Insecure Cookie Handling Vulnerability
  6129. Vikingboard <= 0.2 Beta SQL Column Truncation Vulnerability
  6130. ICONICS Vessel / Gauge / Switch 8.02.140 ActiveX BOF Exploit (meta)
  6131. openEngine <= 2.0 beta4 Remote File Inclusion Vulnerability
  6132. Atomic Photo Album 1.1.0pre4 (XSS/SQL) Remote Vulnerabilities
  6133. LanSuite 3.3.2 (fckeditor) Arbitrary File Upload Exploit
  6134. Atomic Photo Album 1.1.0pre4 Blind SQL Injection Exploit
  6135. barcodegen <= 2.0.0 (class_dir) Remote File Inclusion Vulnerability
  6136. Ultimate Webboard 3.00 (Category) SQL Injection Vulnerability
  6137. PromoteWeb MySQL (go.php id) Remote SQL Injection Vulnerability
  6138. 212cafe Board 0.07 (view.php qID) SQL Injection Vulnerability
  6139. Libra PHP File Manager <= 1.18 Insecure Cookie Handling Vulnerability
  6140. Atomic Photo Album 1.1.0pre4 Insecure Cookie Handling Vulnerability
  6141. WinFTP Server 2.3.0 (NLST) Denial of Service Exploit
  6142. Windows Mobile 6.0 Device long name Remote Reboot Exploit
  6143. Esqlanelapse Software Project <= 2.6.2 Insecure Cookie Handling Vuln
  6144. The Gemini Portal <= 4.7 Insecure Cookie Handling Vulnerability
  6145. openEngine 2.0 beta2 Remote File Inclusion Vulnerability
  6146. Crux Gallery <= 1.32 Insecure Cookie Handling Vulnerability
  6147. The Gemini Portal (lang) Remote File Inclusion Vulnerabilities
  6148. MS Windows GDI+ (.ico File) Remote Division By Zero Exploit
  6149. RPG.Board <= 0.0.8Beta2 (showtopic) SQL Injection Vulnerability
  6150. ASPapp KnowledgeBase (catid) Remote SQL Injection Vulnerability
  6151. RPG.Board <= 0.0.8Beta2 Insecure Cookie Handling Vulnerability
  6152. X7 Chat <= 2.0.1A1 (mini.php help_file) Local File Inclusion Vulnerability
  6153. Vbgooglemap Hotspot Edition 1.0.3 Remote SQL Injection Vulnerability
  6154. Camera Life 2.6.2b4 Arbitrary File Upload Vulnerability
  6155. Joovili <= 3.0 Multiple SQL Injection Vulnerabilities
  6156. E-Uploader Pro <= 1.0 Multiple Remote SQL Injection Vulnerabilities
  6157. CoAST 0.95 (sections_file) Remote File Inclusion Vulnerability
  6158. Real Estate Manager (cat_id) Remote SQL injection vulnerability
  6159. Chilkat IMAP ActiveX 7.9 File Execution / IE DoS Exploit
  6160. LnBlog <= 0.9.0 (plugin) Local File Inclusion Vulnerability
  6161. PlugSpace 0.1 (index.php navi) Local File Inclusion Vulnerability
  6162. MyCard 1.0.2 (gallery.php id) Remote SQL Injection Vulnerability
  6163. PowerPortal 2.0.13 (path) Local Directory Traversal Vulnerability
  6164. PHP-Lance 1.52 (show.php catid) Remote SQL Injection Vulnerability
  6165. Yoxel <= 1.23beta (itpm_estimate.php a) Remote Code Execution Vuln
  6166. X7 Chat <= 2.0.1A1 Local File Inclusion Vulnerability (original find)
  6167. ZEELYRICS 2.0 (bannerclick.php adid) SQL Injection Vulnerability
  6168. Google Chrome 0.2.149.30 Window Object Suppressing DoS Exploit
  6169. ParsaWeb CMS (Search) Remote SQL Injection Vulnerability
  6170. PHPcounter <= 1.3.2 (index.php name) Remote SQL Injection Exploit
  6171. Pro Chat Rooms 3.0.3 (guid) SQL Injection Vulnerabilities
  6172. Pilot Group eTraining (news_read.php id) SQL Injection Vulnerability
  6173. Mozilla Firefox 3.0.3 User Interface Null Pointer Dereference Crash
  6174. Opera 9.52 Window Object Suppressing Remote Denial of Service Exploit
  6175. MS Windows Explorer Unspecified .ZIP File Denial of Service Exploit
  6176. BbZL.PhP 0.92 (lien_2) Local Directory Traversal Vulnerability
  6177. Joomla Component imagebrowser <= 0.1.5 RC2 Directory Traversal Vuln
  6178. MS Internet Explorer GDI+ Proof of Concept (MS08-052)
  6179. PHP-Fusion Mod freshlinks (linkid) Remote SQL Injection Vuln
  6180. BbZL.PhP 0.92 Insecure Cookie Handling Vulnerability
  6181. Wireshark 1.0.x Malformed .ncf packet capture Local Denial of Service
  6182. Events Calendar 1.1 Remote File Inclusion Vulnerability
  6183. Arcadem Pro (articlecat) Remote SQL Injection Vulnerability
  6184. Post Comments 3.0 Insecure Cookie Handling Vulnerability
  6185. PG Matchmaking Script Multiple SQL Injection Vulnerabilities
  6186. ArabCMS (rss.php rss) Local File Inclusion Vulnerability
  6187. FAQ Management Script (catid) Remote SQL Injection Vulnerability
  6188. Autodesk DWF Viewer Control / LiveUpdate Module Remote Exploit
  6189. SG Real Estate Portal 2.0 Blind SQL Injection/Local File Inclusion Vulns
  6190. MiNBank 1.5.0 Multiple Remote File Inclusion Vulnerability
  6191. eFront <= 3.5.1 / build 2710 Remote Arbitrary Upload Vulnerability
  6192. SG Real Estate Portal 2.0 Blind SQL Injection Exploit
  6193. SG Real Estate Portal 2.0 Insecure Cookie Handling Vulnerability
  6194. Rianxosencabos CMS 0.9 Remote Blind SQL Injection Vulnerability
  6195. BookMarks Favourites Script (view_group.php id) SQL Injection Vuln
  6196. GdPicture Pro ActiveX (gdpicture4s.ocx) File Overwrite / Exec Exploit
  6197. Pritlog <= 0.4 (filename) Remote File Disclosure Vulnerability
  6198. ADN Forum <= 1.0b Blind SQL Injection Exploit
  6199. MySQL Quick Admin <= 1.5.5 (COOKIE) Local File Inclusion Vulnerability
  6200. BMForum 5.6 (tagname) Remote SQL Injection Vulnerability
  6201. Discussion Forums 2k v3.3 Multiple SQL Injection Vulnerabilities
  6202. Noname CMS 1.0 Multiple SQL Injection Vulnerabilities
  6203. Crux Gallery <= 1.32 (index.php theme) Local File Inclusion Vulnerability
  6204. phpScheduleIt <= 1.2.10 (reserve.php) Remote Code Execution Exploit
  6205. ESET SysInspector - 1.1.1.0 (esiadrv.sys) Proof of Concept Exploit
  6206. RPortal 1.1 (file_op) Remote File Inclusion Vulnerability
  6207. phpscripts Ranking Script Insecure Cookie Handling Vulnerability
  6208. Link Trader (ratelink.php lnkid) Remote SQL Injection Vulnerability
  6209. vxFtpSrv 2.0.3 CWD command Remote Buffer Overflow PoC
  6210. Bux.to Clone Script Insecure Cookie Handling Vulnerability
  6211. OLIB 7 WebView 2.5.1.1 (infile) Local File Inclusion Vulnerability
  6212. mIRC 6.34 Remote Buffer Overflow PoC
  6213. OpenX 2.6 (ac.php bannerid) Remote Blind SQL Injection Exploit
  6214. MS Windows GDI (EMR_COLORMATCHTOTARGETW) Exploit MS08-021
  6215. IP Reg <= 0.4 Remote Blind SQL Injection Exploit
  6216. VBA32 Personal Antivirus 3.12.8.x (malformed archive) DoS Exploit
  6217. Full PHP Emlak Script (arsaprint.php id) SQL Injection Vulnerability
  6218. Serv-U <= 7.3 (stou con:1) Denial of Service Vulnerability (auth)
  6219. Serv-U <= 7.3 Remote FTP File Replacement Vulnerability (auth)
  6220. AdaptCMS Lite <= 1.3 Blind SQL Injection Exploit
  6221. CCMS 3.1 (skin) Multiple Local File Inclusion Vulnerabilities
  6222. Kwalbum <= 2.0.2 Arbitary File Upload Vulnerability
  6223. mIRC 6.34 Remote Buffer Overflow Exploit
  6224. pPIM 1.01 (notes.php id) Local File Inclusion Vulnerability
  6225. AyeView 2.20 (malformed gif image) Local Crash Exploit
  6226. JMweb Multiple (src) Local File Inclusion Vulnerabilities
  6227. FOSS Gallery Admin <= 1.0 Remote Arbitrary Upload Exploit
  6228. MS Windows Vista Access Violation from Limited Account Exploit (BSoD)
  6229. AyeView 2.20 (invalid bitmap header parsing) Crash Exploit
  6230. FastStone Image Viewer 3.6 (malformed bmp image) Crash Exploit
  6231. FOSS Gallery Public <= 1.0 Arbitrary Upload / Information c99 Expoit
  6232. Galerie 3.2 (pic) WBB Lite Addon Blind SQL Injection Exploit
  6233. OpenNMS < 1.5.96 Multiple Remote Vulnerabilities
  6234. geccBBlite 2.0 (leggi.php id) Remote SQL Injection Exploit
  6235. Fastpublish CMS 1.9999 (LFI/SQL) Multiple Remote Vulnerabilities
  6236. phpAbook <= 0.8.8b (COOKIE) Local File Inclusion Vulnerability
  6237. FOSS Gallery Public <= 1.0 Arbitrary File Upload Vulnerabilities
  6238. PHP-Fusion Mod manuals (manual) Remote SQL Injection Vulnerability
  6239. PHP-Fusion Mod raidtracker_panel (INFO_RAID_ID) SQL Injection
  6240. PHP-Fusion Mod recept (kat_id) SQL Injection Vulnerability
  6241. PHP-Fusion Mod triscoop_race_system (raceid) SQL Injection Vuln
  6242. asiCMS alpha 0.208 Multiple Remote File Inclusion Vulnerabilities
  6243. Hammer Software MetaGauge 1.0.0.17 Directory Traversal Vulnerability
  6244. Yerba SACphp <= 6.3 (mod) Local File Inclusion Exploit
  6245. Konqueror 3.5.9 (font color) Remote Crash Vulnerability
  6246. Skype extension for Firefox BETA 2.2.0.95 Clipboard Writing Vulnerability
  6247. Yerba SACphp <= 6.3 Multiple Remote Vulnerabilities
  6248. Joomla Component com_hotspots (w) Remote SQL Injection Vulnerability
  6249. YourOwnBux 4.0 (COOKIE) Remote SQL Injection Vulnerability
  6250. PHP Realtor 1.5 (view_cat.php v_cat) Remote SQL Injection Vulnerability
  6251. PHP Auto Dealer 2.7 (view_cat.php v_cat) SQL Injection Vulnerability
  6252. PHP Autos 2.9.1 (searchresults.php catid) SQL Injection Vulnerability
  6253. Built2Go PHP RealEstate 1.5 (event_detail.php) SQL Injection Vuln
  6254. TorrentTrader Classic <= 1.04 Blind SQL Injection Vulnerability
  6255. Microsoft PicturePusher ActiveX Cross Site File Upload Attack PoC
  6256. DFF PHP Framework API (Data Feed File) RFI Vulnerabilities
  6257. HispaH textlinksads (index.php) Remote SQL Injection Vulnerability
  6258. AdMan 1.1.20070907 (campaignId) SQL Injection Vulnerability
  6259. WebBiscuits Modules Controller <= 1.1 (RFI/RFD) Remote Vulnerabilities
  6260. Konqueror 3.5.9 (color/bgcolor) Multiple Remote Crash Vulnerabilities
  6261. MS Windows 2003 Token Kidnapping Local Exploit PoC
  6262. Kusaba <= 1.0.4 Remote Code Execution Exploit
  6263. Gforge <= 4.5.19 Multiple Remote SQL Injection Vulnerabilities
  6264. Gforge <= 4.6 rc1 (skill_edit) SQL Injection Vulnerability
  6265. Joomla Component Joomtracker 1.01 Remote SQL injection Vulnerability
  6266. Camera Life 2.6.2b4 (SQL/XSS) Multiple Remote Vulnerabilities
  6267. Kusaba <= 1.0.4 Remote Code Execution Exploit #2
  6268. IranMC Arad Center (news.php id) SQL Injection Vulnerability
  6269. ScriptsEz Mini Hosting Panel (members.php) LFI Vulnerability
  6270. Stash 1.0.3 (SQL) User Credentials Disclosure Exploit
  6271. ScriptsEz Easy Image Downloader Local File Download Vulnerability
  6272. MS Windows GDI+ Proof of Concept (MS08-052) #2
  6273. WinFTP 2.3.0 (PASV mode) Remote Denial of Service Exploit
  6274. Konqueror 3.5.9 (load) Remote Crash Vulnerability
  6275. NoticeWare E-mail Server 5.1.2.2 (POP3) Pre-Auth DoS Exploit
  6276. Ayco Okul Portali (linkid) SQL Injection Vulnerability (tr)
  6277. Easynet4u Forum Host (forum.php) SQL Injection Vulnerability
  6278. Easynet4u faq Host (faq.php faq) Remote SQL Injection Vulnerability
  6279. Joomla Component Ignite Gallery 0.8.3 SQL Injection Vulnerability
  6280. Joomla Component mad4joomla SQL Injection Vulnerability
  6281. MunzurSoft Wep Portal W3 (kat) SQL Injection Vulnerability
  6282. Nokia Mini Map Browser (array sort) Silent Crash Vulnerability
  6283. Easynet4u Link Host (cat_id) SQL Injection Vulnerability
  6284. SlimCMS <= 1.0.0 (redirect.php) Privilege Escalation Exploit
  6285. Joomla Component ownbiblio 1.5.3 (catid) SQL Injection Vulnerability
  6286. Absolute Poll Manager XE 4.1 (xlacomments.asp) SQL Injection Vuln
  6287. MS Windows InternalOpenColorProfile Heap Overflow PoC (MS08-046)
  6288. mini-pub 0.3 (LFD/CE) Multiple Remote Vulnerabilities
  6289. mini-pub 0.3 Local Directory Traversal / File Disclosure Vulnerabilities
  6290. Globsy <= 1.0 Remote File Rewriting Exploit
  6291. Real Estate Scripts 2008 (index.php cat) SQL Injection Vulnerability
  6292. LokiCMS <= 0.3.4 (index.php page) Arbitrary Check File Exploit
  6293. GuildFTPd 0.999.8.11/0.999.14 Heap Corruption PoC/DoS Exploit
  6294. NewLife Blogger <= 3.0 Insecure Cookie Handling / SQL Injection Vuln
  6295. My PHP Indexer 1.0 (index.php) Local File Download Vulnerability
  6296. XM Easy Personal FTP Server 5.6.0 Remote Denial of Service Exploit
  6297. RaidenFTPD 2.4 build 3620 Remote Denial of Service Exploit
  6298. LokiCMS 0.3.4 writeconfig() Remote Command Execution Exploit
  6299. LokiCMS 0.3.4 (admin.php) Create Local File Inclusion Exploit
  6300. ParsBlogger (links.asp id) Remote SQL Injection Vulnerability
  6301. IndexScript 3.0 (sug_cat.php parent_id) SQL Injection Vulnerability
  6302. WP Comment Remix 1.4.3 Remote SQL Injection Exploit
  6303. XOOPS Module xhresim (index.php no) Remote SQL Injection Vuln
  6304. Nuked-klaN <= 1.7.7 / <= SP4.4 Multiple Vulnerabilities Exploit
  6305. Telecom Italia Alice Pirelli routers Backdoor from internal LAN/WAN
  6306. SezHoo 0.1 (IP) Remote File Inclusion Vulnerability
  6307. Eserv 3.x FTP Server (ABOR) Remote Stack Overflow PoC
  6308. Titan FTP server 6.26 build 630 Remote Denial of Service Exploit
  6309. My PHP Dating (success_story.php id) SQL Injection Vulnerability
  6310. PhpWebGallery <= 1.7.2 Session Hijacking / Code Execution Exploit
  6311. VLC 0.9.2 Media Player XSPF Memory Corruption Vulnerability
  6312. MS Windows XP/2003 AFD.sys Privilege Escalation Exploit (K-plugin)
  6313. AstroSPACES (id) Remote SQL Injection Vulnerability
  6314. myStats (hits.php) Multiple Remote Vulnerabilities Exploit
  6315. myEvent 1.6 (viewevent.php) Remote SQL Injection Vulnerability
  6316. Hummingbird <= 13.0 ActiveX Remote Buffer Overflow PoC
  6317. CafeEngine Multiple Remote SQL Injection Vulnerabilities
  6318. Mosaic Commerce (category.php cid) SQL Injection Vulnerability
  6319. Mic_blog 0.0.3 (SQL Injection/Privilege Escalation) Remote Exploit
  6320. IP Reg <= 0.4 Multiple Remote SQL Injection Vulnerabilities
  6321. PokerMax Poker League Insecure Cookie Handling Vulnerability
  6322. Kure 0.6.3 (index.php post,doc) Local File Inclusion Vulnerability
  6323. Mantis Bug Tracker <= 1.1.3 Remote Code Execution Exploit
  6324. iGaming CMS 2.0 Alpha 1 (search.php) Remote SQL Injection Exploit
  6325. PHP Easy Downloader 1.5 (file) File Disclosure Vulnerability
  6326. Calendars for the Web 4.02 Admin Auth Bypass Vulnerability
  6327. Post Affiliate Pro 2.0 (index.php md) Local File Inclusion Vulnerability
  6328. Hummingbird Deployment Wizard 2008 ActiveX Command Execution
  6329. Hummingbird Deployment Wizard 2008 Registry Values Creation/Change
  6330. Solaris 9 PortBind XDR-DECODE taddr2uaddr() Remote DoS Exploit
  6331. Hummingbird Deployment Wizard 2008 ActiveX File Execution(2)
  6332. Wordpress Plugin st_newsletter (stnl_iframe.php) SQL Injection Vuln
  6333. XOOPS Module GesGaleri (kategorino) Remote SQL Injection Exploit
  6334. phpFastNews 1.0.0 Insecure Cookie Handling Vulnerability
  6335. zeeproperty (adid) Remote SQL Injection Vulnerability
  6336. Meeting Room Booking System (MRBS) < 1.4 SQL Injection Exploit
  6337. miniBloggie 1.0 (del.php) Remote Blind SQL Injection Exploit
  6338. Nuke ET <= 3.4 (fckeditor) Remote Arbitrary File Upload Exploit
  6339. PHP Easy Downloader <= 1.5 Remote File Creation Exploit
  6340. Fast Click SQL 1.1.7 Lite (init.php) Remote File Inclusion Vulnerability
  6341. Solaris 9 [UltraSPARC] sadmind Remote Root Exploit
  6342. BitTorrent 6.0.3 .torrent File Stack Buffer Overflow Exploit
  6343. yappa-ng <= 2.3.3-beta0 (album) Local File Inclusion Vulnerability
  6344. Vivvo CMS <= 3.4 Multiple Vulnerabilities Destroyer Exploit
  6345. WBB Plugin rGallery 1.09 (itemID) Blind SQL Injection Exploit
  6346. e107 <= 0.7.13 (usersettings.php) Blind SQL Injection Exploit
  6347. Joomla Component ds-syndicate (feed_id) SQL Injection Vulnerability
  6348. Dart Communications PowerTCP FTP module Remote BOF Exploit
  6349. XOOPS Module makale Remote SQL Injection Vulnerability
  6350. Limbo CMS (Private Messaging Component) SQL Injection Vulnerability
  6351. LightBlog 9.8 (GET,POST,COOKIE) Multiple LFI Vulnerabilities
  6352. VLC Media Player TY File Stack Based Buffer Overflow Exploit
  6353. ShopMaker 1.0 (product.php id) Remote SQL Injection Vulnerability
  6354. freeSSHd 1.2.1 sftp rename Remote Buffer Overflow PoC (auth)
  6355. Opera <= 9.60 Stored Cross Site Scripting Vulnerability
  6356. Joomla Component Daily Message 1.0.3 (id) SQL Injection Vuln
  6357. Iamma Simple Gallery 1.0/2.0 Arbitrary File Upload Vulnerability
  6358. GoodTech SSH (SSH_FXP_OPEN) Remote Buffer Overflow Exploit
  6359. LibSPF2 < 1.2.8 DNS TXT Record Parsing Bug Heap Overflow PoC
  6360. phpcrs <= 2.06 (importFunction) Local File Inclusion Vulnerability
  6361. LoudBlog <= 0.8.0a (ajax.php) SQL Injection Vulnerability (auth)
  6362. Joomla Component ionFiles 4.4.2 File Disclosure Vulnerability
  6363. DorsaCms (ShowPage.aspx) Remote SQL Injection Vulnerability
  6364. YDC (kdlist.php cat) Remote SQL Injection Vulnerability
  6365. freeSSHd 1.2.1 sftp realpath Remote Buffer Overflow PoC (auth)
  6366. Opera 9.52/9.60 Stored Cross Site Scripting Code Exec PoC
  6367. CSPartner 1.0 (Delete All Users/SQL Injection) Remote Exploit
  6368. SilverSHielD 1.0.2.34 (opendir) Denial of Service Exploit
  6369. txtshop 1.0b (language) Local File Inclusion Vulnerability (win only)
  6370. Joomla Component RWCards 3.0.11 Local File Inclusion Vulnerability
  6371. aflog 1.01 Multiple Insecure Cookie Handling Vulnerabilies
  6372. MindDezign Photo Gallery 2.2 (index.php id) SQL Injection Vulnerability
  6373. MindDezign Photo Gallery 2.2 Arbitrary Add Admin Exploit
  6374. miniPortail <= 2.2 (XSS/LFI) Remote Vulnerabilities
  6375. WebSVN <= 2.0 (XSS/FH/CE) Multiple Remote Vulnerabilities
  6376. SiteEngine 5.x Multiple Remote Vulnerabilities
  6377. MS Windows Server Service Code Execution PoC (MS08-067)
  6378. VLC 0.9.4 .TY File Buffer Overflow Exploit (SEH)
  6379. Joomla Component Archaic Binary Gallery 0.2 Directory Traversal Vuln
  6380. Joomla Component Kbase 1.0 Remote SQL Injection Vulnerability
  6381. db Software Laboratory VImpX (VImpX.ocx) Multiple Vulnerabilities
  6382. Aj RSS Reader (EditUrl.php url) SQL Injection Vulnerability
  6383. NEPT Image Uploader 1.0 Arbitrary Shell Upload Vulnerability
  6384. TUGzip 3.00 archiver .ZIP File Local Buffer Overflow Exploit
  6385. KVIrc 3.4.0 Virgo Remote Format String Exploit PoC
  6386. PHPdaily (SQL/XSS/LFD) Multiple Remote Vulnerabilities
  6387. vicFTP 5.0 (LIST) Remote Denial of Service Exploit
  6388. BuzzyWall 1.3.1 (download id) Remote File Disclosure Vulnerability
  6389. Tlnews 2.2 Insecure Cookie Handling Vulnerability
  6390. Kasra CMS (index.php) Multiple SQL Injection Vulnerabilities
  6391. PumpKIN TFTP Server 2.7.2.0 Denial of Service Exploit (meta)
  6392. PozScripts Classified Auctions (gotourl.php id) SQL Injection Vuln
  6393. PowerTCP FTP module Multiple Technique Exploit (SEH/HeapSpray)
  6394. MS Windows Server Service Code Execution Exploit (MS08-067) (Univ)
  6395. WordPress Media Holder (mediaHolder.php id) SQL Injection Vuln
  6396. SFS Ez Forum (forum.php id) SQL Injection Vulnerability
  6397. MyForum 1.3 (lecture.php id) Remote SQL Injection Exploit
  6398. Ads Pro (dhtml.pl page) Remote Command Execution Exploit
  6399. MyForum 1.3 (padmin) Local File Inclusion Vulnerability
  6400. Persia BME E-Catalogue Remote SQL Injection Vulnerability
  6401. TlAds v1 Remote Insecure Cookie Handling Vulnerability
  6402. e107 Plugin alternate_profiles (id) SQL Injection Vulnerability
  6403. MyKtools 2.4 (langage) Local File Inclusion Vulnerability
  6404. Linux Kernel < 2.6.22 ftruncate()/open() Local Exploit
  6405. e107 Plugin EasyShop (category_id) Blind SQL Injection Exploit
  6406. Questcms (XSS/Directory Traversal/SQL) Multiple Remote Vulnerabilities
  6407. Aiocp 1.4 (poll_id) Remote SQL Injection Vulnerability
  6408. MyKtools 2.4 Arbitrary Database Backup Vulnerability
  6409. e107 Plugin BLOG Engine 2.1.4 Remote SQL Injection Vulnerability
  6410. MyForum 1.3 Insecure Cookie Handling Vulnerability
  6411. PersianBB (iranian_music.php id) Remote SQL Injection Vulnerability
  6412. Agares ThemeSiteScript 1.0 (loadadminpage) RFI Vulnerability
  6413. TlGuestBook 1.2 Insecure Cookie Handling Vulnerability
  6414. H2O-CMS <= 3.4 Remote Command Execution Exploit (mq = off)
  6415. H2O-CMS <= 3.4 Insecure Cookie Handling Vulnerability
  6416. PacketTrap TFTPD 2.2.5459.0 Remote Denial of Service Exploit
  6417. Sepal SPBOARD 4.5 (board.cgi) Remote Command Exec Vulnerability
  6418. e107 Plugin fm pro v1 (FD/Upload/DT) Multiple Remote Vulnerabilities
  6419. 7Shop <= 1.1 Remote Arbitrary File Upload Exploit
  6420. Wordpress Plugin e-Commerce <= 3.4 Arbitrary File Upload Exploit
  6421. Mambo Component SimpleBoard <= 1.0.1 Arbitrary File Upload Exploit
  6422. WebCards <= 1.3 Remote SQL Injection Vulnerability
  6423. MW6 Aztec ActiveX (Aztec.dll) Remote Insecure Method Exploit
  6424. MW6 Barcode ActiveX (Barcode.dll) Insecure Method Exploit
  6425. MW6 DataMatrix ActiveX (DataMatrix.dll) Insecure Method Exploit
  6426. MW6 PDF417 ActiveX (MW6PDF417.dll) Remote Insecure Method Exploit
  6427. Harlandscripts Pro Traffic One (mypage.php) SQL Injection Vulnerability
  6428. Visagesoft eXPert PDF ViewerX (VSPDFViewerX.ocx) File Overwrite
  6429. Venalsur on-line Booking Centre (OfertaID) XSS/SQL Injection Vulns
  6430. Pro Traffic One (poll_results.php id) Remote SQL Injection Vulnerability
  6431. DjVu ActiveX Control 3.0 ImageURL Property Overflow Exploit
  6432. MyPHP Forum <= 3.0 Edit Topics/Blind SQL Injection Vulnerabilities
  6433. Opera 9.61 opera:historysearch Code Execution Exploit PoC
  6434. Absolute File Send 1.0 Remote Cookie Handling Vulnerability
  6435. Absolute Podcast 1.0 Remote Insecure Cookie Handling Vulnerability
  6436. Absolute Poll Manager XE 4.1 Cookie Handling Vulnerability
  6437. e107 Plugin lyrics_menu (lyrics_song.php l_id) SQL Injection Vulnerability
  6438. Tribiq CMS 5.0.9a (beta) Insecure Cookie Handling Vulnerability
  6439. Cybershade CMS 0.2b Remote File Inclusion Vulnerability
  6440. Tribiq CMS 5.0.10a Local File Inclusion Vulnerability (win)
  6441. Absolute Content Rotator 6.0 Insecure Cookie Handling Vulnerability
  6442. Absolute Banner Manager Insecure Cookie Handling Vulnerability
  6443. Absolute Form Processor 4.0 Insecure Cookie Handling Vulnerability
  6444. Absolute Live Support 5.1 Insecure Cookie Handling Vulnerability
  6445. Absolute Control Panel XE 1.5 Insecure Cookie Handling Vulnerability
  6446. SFS EZ Gaming Directory (directory.php id) SQL Injection Vulnerability
  6447. SFS EZ Adult Directory (directory.php id) SQL Injection Vulnerability
  6448. Logz podcast CMS 1.3.1 (add_url.php art) SQL Injection Vulnerability
  6449. cpanel 11.x XSS / Local File Inclusion Vulnerability
  6450. U-Mail Webmail 4.91 (edit.php) Arbitrary File Write Vulnerability
  6451. A-Link WL54AP3 and WL54AP2 CSRF+XSS Vulnerability
  6452. Absolute News Manager 5.1 Insecure Cookie Handling Vulnerability
  6453. Absolute News Feed 1.0 Remote Insecure Cookie Handling Vulnerability
  6454. Absolute FAQ Manager 6.0 Insecure Cookie Handling Vulnerability
  6455. SFS EZ Hotscripts-like Site (cid) Remote SQL Injection Vulnerability
  6456. Absolute Newsletter 6.1 Insecure Cookie Handling Vulnerability
  6457. SFS EZ Hosting Directory (cat_id) Remote SQL Injection Vulnerability
  6458. SFS EZ Gaming Directory (cat_id) Remote SQL Injection Vulnerability
  6459. SFS EZ Home Business Directory (cat_id) SQL Injection Vulnerability
  6460. SFS EZ Link Directory (cat_id) Remote SQL Injection Vulnerability
  6461. Adult Banner Exchange Website (targetid) SQL Injection Vulnerability
  6462. SFS EZ BIZ PRO (track.php id) Remote SQL Injection Vulnerability
  6463. SFS EZ Affiliate (cat_id) Remote SQL Injection Vulnerability
  6464. Article Publisher PRO 1.5 (SQL Injection) Auth Bypass Vulnerability
  6465. SFS EZ Webring (cat) Remote SQL Injection Vulnerability
  6466. SFS EZ Hot or Not (phid) Remote SQL Injection Vulnerability
  6467. SFS EZ Software (id) Remote SQL Injection Vulnerability
  6468. ModernBill <= 4.4.x XSS / Remote File Inclusion Vulnerability
  6469. Article Publisher PRO (userid) Remote SQL Injection Exploit
  6470. SFS EZ Auction (viewfaqs.php cat) Blind SQL Injection Vulnerability
  6471. SFS EZ Career (content.php topic) SQL Injection Vulnerability
  6472. SFS EZ Top Sites (topsite.php ts) Remote SQL Injection Vulnerability
  6473. GE Fanuc Real Time Information Portal 2.6 writeFile() API Exploit (meta)
  6474. SFS EZ Webstore (where) Remote SQL Injection Vulnerability
  6475. SFS EZ Pub Site (directory.php cat) SQL Injection Vulnerability
  6476. SFS EZ Gaming Cheats (id) Remote SQL Injection vulnerability
  6477. Bloggie Lite 0.0.2 Beta SQL Injection by Insecure Cookie Handling
  6478. FTP Now 2.6 Server Response Remote Crash PoC
  6479. AJ ARTICLE (featured_article.php mode) SQL injection Vulnerability
  6480. Joomla Component Flash Tree Gallery 1.0 RFI Vulnerability
  6481. Article Publisher PRO 1.5 Insecure Cookie Handling Vulnerability
  6482. GO4I.NET ASP Forum 1.0 (forum.asp iFor) SQL Injection Vulnerability
  6483. YourFreeWorld Programs Rating (details.php id) SQL Injection Vuln
  6484. AJ ARTICLE (SQL Injection) Remote Auth Bypass Vulnerability
  6485. Micro CMS <= 0.3.5 Remote (Add/Delete/Password Change) Exploit
  6486. Shahrood (ndetail.php id) Blind SQL Injection Vulnerability
  6487. YourFreeWorld Downline Builder (id) Remote SQL Injection Vulnerability
  6488. YourFreeWorld Banner Management (id) SQL Injection Vulnerability
  6489. YourFreeWorld Blog Blaster (id) Remote SQL Injection Vulnerability
  6490. YourFreeWorld Autoresponder Hosting (id) SQL Injection Vulnerability
  6491. YourFreeWorld Forced Matrix Script (id) SQL Injection Vulnerability
  6492. YourFreeWorld Short Url & Url Tracker (id) SQL Injection Vuln
  6493. YourFreeWorld Viral Marketing (id) SQL Injection Vulnerability
  6494. YourFreeWorld Scrolling Text Ads (id) SQL Injection Vulnerability
  6495. YourFreeWorld Reminder Service (id) SQL Injection Vulnerability
  6496. YourFreeWorld Classifieds Blaster (id) SQL Injection Vulnerability
  6497. YourFreeWorld Classifieds (category) Remote SQL Injection Vulnerability
  6498. Downline Goldmine Builder (tr.php id) Remote SQL Injection Vulnerability
  6499. Downline Goldmine Category Addon (id) SQL Injection Vulnerability
  6500. YourFreeWorld Classifieds Hosting (id) SQL Injection Vulnerability
  6501. YourFreeWorld URL Rotator (id) Remote SQL Injection Vulnerability
  6502. Downline Goldmine paidversion (tr.php id) SQL Injection Vulnerability
  6503. Downline Goldmine newdownlinebuilder (tr.php id) SQL Injection Vuln
  6504. YourFreeWorld Shopping Cart (index.php c) Blind SQL Injection Vuln
  6505. Maran PHP Shop (prod.php cat) SQL Injection Vulnerability
  6506. Maran PHP Shop (admin.php) Insecure Cookie Handling Vulnerability
  6507. Joovili 3.1.4 Insecure Cookie Handling Vulnerability
  6508. Apartment Search Script (RFU/XSS) Multiple Remote Vulnerabilities
  6509. NetRisk <= 2.0 (XSS/SQL Injection) Remote Vulnerabilities
  6510. Maran PHP Shop (prodshow.php) SQL Injection Vulnerability
  6511. 1st News (products.php id) Remote SQL Injection Vulnerability
  6512. deV!Lz Clanportal [DZCP] <= 1.4.9.6 Blind SQL Injection Exploit
  6513. BosDev BosClassifieds (cat_id) SQL Injection Vulnerability
  6514. Chilkat Crypt Activex Arbitrary File Creation/Execution PoC
  6515. Acc Real Estate 4.0 Insecure Cookie Handling Vulnerability
  6516. Acc Statistics 1.1Insecure Cookie Handling Vulnerability
  6517. Acc PHP eMail 1.1 Insecure Cookie Handling Vulnerability
  6518. MatPo Link 1.2b (view.php id) Remote SQL Injection Vulnerability
  6519. Acc Autos 4.0 Insecure Cookie Handling Vulnerability
  6520. Apoll 0.7b (SQL Injection) Remote Auth Bypass Vulnerability
  6521. MatPo Link 1.2b (Blind SQL Injection/XSS) Multiple Vulnerabilities
  6522. pppBlog <= 0.3.11 (randompic.php) File Disclosure Vulnerability
  6523. TBmnetCMS 1.0 (index.php content) Local File Inclusion Vulnerability
  6524. WEBBDOMAIN WebShop 1.02 (SQL/XSS) Multiple Vulnerabilities
  6525. Joomla Component VirtueMart Google Base 1.1 RFI Vulnerability
  6526. Joomla Component ongumatimesheet20 4b RFI Vulnerability
  6527. WEBBDOMAIN Post Card <= 1.02 (catid) SQL Injection Vulnerability
  6528. Vibro-CMS Multiple Remote SQL Injection Vulnerabilities
  6529. nicLOR Puglia Landscape (id) Local File Inclusion Vulnerability
  6530. Joomla Component ProDesk 1.0/1.2 Local File Inclusion Vulnerability
  6531. Vibro-School-CMS (nID) Remote SQL injection Vulnerability
  6532. CMS-School 2005 (showarticle.php) Remote SQL injection Vulnerability
  6533. WEBBDOMAIN Petition 1.02/2.0/3.0 (SQL Injection) Auth Bypass Vuln
  6534. WEBBDOMAIN Polls 1.01 (SQL Injection) Auth Bypass Vulnerability
  6535. WEBBDOMAIN Quiz <= 1.02 (Auth Bypass) SQL Injection Vulnerability
  6536. WEBBDOMAIN Webshop <= 1.02 (SQL Injection) Auth Bypass Vuln
  6537. Simple Document Management System 1.1.4 SQL Injection Auth Bypass
  6538. Tours Manager v1 (cityview.php cityid) SQL Injection Vulnerability
  6539. WEBBDOMAIN Post Card <= 1.02 (SQL Injection) Auth Bypass Vuln
  6540. nicLOR Sito includefile Local File Inclusion Vulnerabilities
  6541. TR News <= 2.1 (login.php) Remote Login Bypass Exploit
  6542. wotw <= 5.0 Local/Remote File Inclusion Vulnerability
  6543. Simple Machines Forum (SMF) 1.1.6 Code Execution Exploit
  6544. Adobe Reader util.printf() JavaScript Function Stack Overflow Exploit
  6545. phpBB Mod Small ShoutBox 1.4 Remote Edit/Delete Messages Vuln
  6546. PHPX 3.5.16 (news_id) Remote SQL Injection Exploit
  6547. Pre Podcast Portal (Tour.php id) SQL Injection Vulnerability
  6548. Pre Shopping Mall Insecure Cookie Handling Vulnerability
  6549. Pre Multi-Vendor Shopping Malls Multiple Remote Vulnerabilities
  6550. Pre Classified Listings Insecure Cookie Handling Vulnerability
  6551. DFLabs PTK <= 1.0 Local Command Execution Vulnerability
  6552. Joomla Component Dada Mail Manager 2.6 RFI Vulnerability
  6553. PHP Auto Listings (moreinfo.php pg) SQL Injection Vulnerability
  6554. Pre Simple CMS (Auth Bypass) SQL Injection Vulnerability
  6555. PHP JOBWEBSITE PRO (Auth Bypass) SQL Injection Vulnerability
  6556. Adobe Reader util.printf() JavaScript Function Stack Overflow Exploit #2
  6557. HarlandScripts drinks (recid) Remote SQL Injection Velnerability
  6558. Pre Real Estate Listings (Auth Bypass) SQL Injection Vulnerability
  6559. Mole Group Airline Ticket Script SQL Injection Vulnerability
  6560. Mole Group Taxi Calc Dist Script (Auth Bypass) SQL Injection Vuln
  6561. Simple Machines Forum <= 1.1.6 (LFI) Code Execution Exploit
  6562. hMAilServer 4.4.2 (PHPWebAdmin) File Inclusion Vulnerabilities
  6563. DevelopItEasy Events Calendar 1.2 Multiple SQL Injection Vulnerabilities
  6564. DevelopItEasy News And Article System 1.4 SQL Injection Vulns
  6565. DevelopItEasy Membership System 1.3 (Auth Bypass) SQL Injection
  6566. DevelopItEasy Photo Gallery 1.2 SQL Injection Vulnerabilities
  6567. Pre ADS Portal <= 2.0 (Auth Bypass/XSS) Multiple Vulnerabilities
  6568. NICE FAQ Script (Auth Bypass) SQL Injection Vulnerability
  6569. Arab Portal 2.1 Remote File Disclosure Vulnerability (win only)
  6570. MySQL Quick Admin 1.5.5 Local File Inclusion Vulnerability
  6571. SoftComplex PHP Image Gallery 1.0 (Auth Bypass) SQL Injection Vuln
  6572. LoveCMS 1.6.2 Final Arbitrary File Delete Vulnerability
  6573. DeltaScripts PHP Classifieds <= 7.5 (Auth Bypass) SQL Injection Vuln
  6574. DeltaScripts PHP Links <= 1.3 (Auth Bypass) SQL Injection Vuln
  6575. DeltaScripts PHP Shop 1.0 (Auth Bypass) SQL Injection Vulnerability
  6576. SoftComplex PHP Image Gallery (ctg) SQL Injection Vulnerability
  6577. Prozilla Software Directory (XSS/SQL) Multiple Vulnerabilities
  6578. turnkeyforms Entertainment Portal 2.0 Insecure Cookie Handling Vuln
  6579. turnkeyforms Business Survey Pro 1.0 (id) SQL Injection Vuln
  6580. Mole Group Pizza (manufacturers_id) Script SQL Injection Vuln
  6581. e-Vision CMS <= 2.0.2 Multiple Local File Inclusion Exploit
  6582. U&M Software Signup 1.1 Auth Bypass Vulnerability
  6583. U&M Software JustBookIt 1.0 Auth Bypass Vulnerability
  6584. U&M Software Event Lister 1.0 Auth Bypass Vulnerability
  6585. turnkeyforms Local Classifieds (XSS/SQL) Multiple Vulnerabilities
  6586. Joomla Component Clickheat 1.0.1 Multiple RFI Vulnerabilities
  6587. Joomla Component Recly!Competitions 1.0.0 Multiple RFI Vulnerabilities
  6588. Joomla Component Feederator 1.0.5 Multiple RFI Vulnerabilities
  6589. E-topbiz Online Store 1 (Auth Bypass) SQL Injection Vuln
  6590. PHP Auto Listings Script (Auth Bypass) SQL Injection Vuln
  6591. Mole Group Rental Script (Auth Bypass) SQL Injection Vuln
  6592. MyioSoft Ajax Portal 3.0 (Auth Bypass) SQL Injection Vulnerability
  6593. MyioSoft EasyBookMarker (Auth Bypass) SQL Injection Vulnerability
  6594. MyioSoft EasyCalendar (Auth Bypass) Remote SQL Injection Vulnerability
  6595. DeltaScripts PHP Classifieds <= 7.5 SQL Injection Vulnerability
  6596. E-topbiz Online Store 1 (cat_id) SQL Injection Vulnerability
  6597. Mini Web Calendar 1.2 (File Disclosure/XSS) Multiple Vulnerabilities
  6598. E-topbiz Number Links 1 (id) Remote SQL Injection Vulnerability
  6599. VLC Media Player < 0.9.6 .RT Stack Buffer Overflow Exploit
  6600. Domain Seller Pro 1.5 (id) Remote SQL Injection Vulnerability
  6601. Myiosoft EasyBookMarker v4 (Parent) SQL Injection Vulnerability
  6602. Anti-Keylogger Elite 3.3.0 (AKEProtect.sys) Privilege Escalation Exploit
  6603. SpeedStream 5200 Authentication Bypass Config Download Vulnerability
  6604. GE Proficy Real Time Information Portal Credentials Leak Sniffer (meta)
  6605. MemHT Portal <= 4.0 Remote Code Execution Exploit
  6606. zeeproperty 1.0 (Upload/XSS) Multiple Remote Vulnerabilities
  6607. Enthusiast 3.1.4 (show_joined.php path) Remote File Inclusion Vuln
  6608. 2WIRE DSL Router (xslt) Denial of Service Vulnerability
  6609. V3 Chat Profiles/Dating Script 3.0.2 (Auth Bypass) SQL Injection Vuln
  6610. ZEEJOBSITE 2.0 Remote File Upload Vulnerability
  6611. V3 Chat - Profiles/Dating Script 3.0.2 Insecure Cookie Handling Vuln
  6612. Mambo Component n-form (form_id) Blind SQL Injection Exploit
  6613. Cyberfolio <= 7.12.2 (css.php theme) Local File Inclusion Vulnerability
  6614. Zeeways Shaadi Clone 2.0 Auth Bypass Vulnerability
  6615. DigiAffiliate <= 1.4 (Auth Bypass) SQL Injection Vulnerability
  6616. Mole Group Airline Ticket Script (Auth Bypass) SQL Injection Vuln
  6617. V3 Chat Live Support 3.0.4 Insecure Cookie Handling Vulnerability
  6618. Zeeways PHOTOVIDEOTUBE 1.1 Auth Bypass Vulnerability
  6619. ExoPHPDesk 1.2 Final (Auth Bypass) SQL Injection Vulnerability
  6620. ZEEMATRI 3.0 (bannerclick.php adid) SQL Injection Vulnerability
  6621. X10media Mp3 Search Engine <= 1.6 Remote File Disclosure Vulnerability
  6622. Openfire Server <= 3.6.0a (Auth Bypass/SQL/XSS) Multiple Vulnerabilities
  6623. Collabtive 0.4.8 (XSS/Auth Bypass/Upload) Multiple Vulnerabilities
  6624. OTManager CMS 2.4 (Tipo) Remote File Inclusion Vulnerability
  6625. Joomla Component JooBlog 0.1.1 (PostID) SQL Injection Vulnerability
  6626. FREEsimplePHPguestbook (guestbook.php) Remote Code Execution Vulnerability
  6627. Fresh Email Script 1.0 Multiple Remote Vulnerabilities
  6628. AJ ARTICLE Remote Authentication Bypass Vulnerability
  6629. PHPStore Car Dealers Remote File Upload Vulnerability
  6630. PHPStore PHP Job Search Script Remote File Upload Vulnerability
  6631. PHPStore Complete Classifieds Script File Upload Vulnerability
  6632. PHPStore Real Estate Remote File Upload Vulnerability
  6633. AJSquare Free Polling Script (DB) Multiple Vulnerabilities
  6634. AJ Auction Authentication Bypass Vulnerability
  6635. smcFanControl 2.1.2 Multiple Buffer Overflow Vulnerabilities PoC (OSX)
  6636. Aj Classifieds Authentication Bypass Vulnerability
  6637. ooVoo 1.7.1.35 (URL Protocol) Remote Unicode Buffer Overflow PoC
  6638. Linux Kernel < 2.4.36.9/2.6.27.5 Unix Sockets Local Kernel Panic Exploit
  6639. Joomla Component com_books (book_id) SQL Injection Vulnerability
  6640. Joomla Component Contact Info 1.0 SQL Injection Vulnerability
  6641. Pre Real Estate Listings File Upload Vulnerability
  6642. Joomla/Mambo com_catalogproduction (id) SQL Injection Vulnerability
  6643. Joomla Component Simple RSS Reader 1.0 RFI Vulnerability
  6644. Joomla Component com_marketplace 1.2.1 (catid) SQL Injection Vuln
  6645. PozScripts Business Directory Script (cid) Remote SQL Injection Vuln
  6646. Castle Rock Computing SNMPc < 7.1.1 (Community) Remote BOF PoC
  6647. Net-SNMP <= 5.1.4/5.2.4/5.4.1 Perl Module Buffer Overflow PoC
  6648. AlstraSoft SendIt Pro Remote File Upload Vulnerability
  6649. AlstraSoft Article Manager Pro (Auth Bypass) SQL Injection Vuln
  6650. AlstraSoft Web Host Directory (Auth Bypass) SQL Injection Vuln
  6651. MS Windows Server Service Code Execution Exploit (MS08-067)
  6652. Quick Poll Script (code.php id) Remote SQL Injection Vulnerability
  6653. turnkeyforms Local Classifieds Auth Bypass Vulnerability
  6654. turnkeyforms Web Hosting Directory Multiple Vulnerabilities
  6655. Pi3Web <= 2.0.3 (ISAPI) Remote Denial of Service Exploit
  6656. ScriptsFeed (SF) Real Estate Classifieds Software File Upload Vuln
  6657. ScriptsFeed (SF) Auto Classifieds Software Remote File Upload Vuln
  6658. ScriptsFeed (SF) Recipes Listing Portal Remote File Upload Vulnerability
  6659. BandSite CMS 1.1.4 Insecure Cookie Handling Vulnerability
  6660. MemHT Portal 4.0.1 SQL Injection Code Execution Exploit
  6661. AlstraSoft Web Host Directory 1.2 Multiple Vulnerabilities
  6662. GS Real Estate Portal US/International Module Multiple Vulnerabilities
  6663. turnkeyforms Text Link Sales Auth Bypass Vulnerability
  6664. Discuz! 6.x/7.x Remote Code Execution Exploit
  6665. Bankoi Webhost Panel 1.20 (Auth Bypass) SQL Injection Vulnerability
  6666. SlimCMS <= 1.0.0 (edit.php) Remote SQL Injection Exploit
  6667. GS Real Estate Portal Multiple SQL Injection Vulnerability
  6668. X7 Chat 2.0.5 (Auth Bypass) SQL Injection Vulnerability
  6669. turnkeyforms Text Link Sales (id) XSS/SQL Injection Vulnerability
  6670. SmbRelay3 NTLM Replay Attack Tool/Exploit (MS08-068)
  6671. VeryPDF PDFView OCX ActiveX OpenPDF Heap Overflow PoC
  6672. ClipShare Pro 2006-2007 (chid) SQL Injection Vulnerability
  6673. Sudo <= 1.6.9p18 (Defaults setenv) Local Privilege Escalation Exploit
  6674. Minigal b13 (index.php list) Remote File Disclosure Exploit
  6675. yahoo answers (id) Remote SQL Injection Vulnerability
  6676. MS Windows Server Service Code Execution Exploit (MS08-067) (2k/2k3)
  6677. FloSites Blog Multiple Remote SQL Injection Vulnerabilities
  6678. phpstore Wholesale (track.php?id) SQL Injection Vulnerability
  6679. Opera 9.62 file:// Local Heap Overflow Exploit
  6680. mxCamArchive 2.2 Bypass Config Download Vulnerability
  6681. OpenASP <= 3.0 Blind SQL Injection Vulnerability
  6682. E-topbiz AdManager 4 (group) Blind SQL Injection Vulnerability
  6683. FREEze Greetings 1.0 Remote Password Retrieve Exploit
  6684. Q-Shop 3.0 Remote XSS/SQL Injection Vulnerabilities
  6685. Chilkat Socket activex 2.3.1.1 Remote Arbitrary File Creation Exploit
  6686. phpfan 3.3.4 (init.php includepath) Remote File Inclusion Vulnerability
  6687. Jadu Galaxies (categoryID) Blind SQL Injection Vulnerability
  6688. Exodus 0.10 (uri handler) Arbitrary Parameter Injection Vulnerability
  6689. Simple Customer 1.2 (Auth Bypass) SQL Injection Vulnerability
  6690. SaturnCMS (view) Blind SQL Injection Vulnerability
  6691. Ultrastats 0.2.144/0.3.11 (index.php serverid) SQL Injection Vulnerability
  6692. VideoScript <= 4.0.1.50 Admin Change Password Exploit
  6693. CUPS 1.3.7 CSRF (add rss subscription) Remote Crash Exploit
  6694. No-IP DUC <= 2.1.7 Remote Code Execution Exploit
  6695. Musicbox 2.3.8 (viewalbums.php artistId) SQL Injection Vulnerability
  6696. Pluck CMS 4.5.3 (g_pcltar_lib_dir) Local File Inclusion Vulnerability
  6697. Free Directory Script 1.1.1 (API_HOME_DIR) RFI Vulnerability
  6698. E-topbiz Link Back Checker 1 Insecure Cookie Handling Vulnerability
  6699. Alex News-Engine 1.5.1 Remote Arbitrary File Upload Vulnerability
  6700. Alex Article-Engine 1.3.0 (fckeditor) Arbitrary File Upload Vulnerability
  6701. PunBB (Private Messaging System 1.2.x) Multiple LFI Exploit
  6702. MyTopix <= 1.3.0 (notes send) Remote SQL Injection Exploit
  6703. MauryCMS <= 0.53.2 Remote Shell Upload Exploit
  6704. RevSense (Auth bypass) Remote SQL Injection Vulnerability
  6705. Pre Job Board (Auth Bypass) Remote SQL Injection Vulnerability
  6706. wPortfolio <= 0.3 Remote Arbitrary File Upload Exploit
  6707. AskPert (Auth bypass) Remote SQL Injection Vulnerability
  6708. Exodus 0.10 (uri handler) Arbitrary Parameter Injection Exploit
  6709. PunBB Mod PunPortal 0.1 Local File Inclusion Exploit
  6710. wPortfolio <= 0.3 Admin Password Changing Exploit
  6711. PHP 5.2.6 (error_log) safe_mode Bypass Vulnerability
  6712. NatterChat 1.1 (Auth Bypass) Remote SQL Injection Vulnerability
  6713. PHP-Fusion 7.00.1 (messages.php) Remote SQL Injection Exploit
  6714. vBulletin 3.7.3 Visitor Message XSS/XSRF + worm Exploit
  6715. Natterchat 1.12 (Auth Bypass) Remote SQL Injection Vulnerability
  6716. ToursManager (tourview.php tourid) Blind SQL Injection Vulnerability
  6717. Oracle Database Vault ptrace(2) Privilege Escalation Exploit
  6718. BitDefender (module pdf.xmd) Infinite Loop Denial of Service PoC
  6719. NatterChat 1.1 Remote Admin Bypass Vulnerability
  6720. VCalendar (VCalendar.mdb) Remote Database Disclosure Vulnerability
  6721. KVIrc 3.4.2 Shiny (uri handler) Remote Command Execution Exploit
  6722. Joomla Component Thyme 1.0 (event) SQL Injection Vulnerability
  6723. verlihub <= 0.9.8d-RC2 Remote Command Execution Vulnerability
  6724. e107 Plugin ZoGo-Shop 1.15.4 (product) SQL Injection Vulnerability
  6725. Discuz! Remote Reset User Password Exploit
  6726. Vlog System 1.1 (blog.php user) Remote SQL Injection Vulnerability
  6727. getaphpsite Real Estate Remote File Upload Vulnerability
  6728. getaphpsite Auto Dealers Remote File Upload Vulnerability
  6729. Ez Ringtone Manager Multiple Remote File Disclosure Vulnerabilities
  6730. LoveCMS 1.6.2 Final (Simple Forum 3.1d) Change Admin Password Exploit
  6731. Prozilla Hosting Index (id) Remote SQL Injection Vulnerability
  6732. Microsoft XML Core Services DTD Cross-Domain Scripting PoC MS08-069
  6733. Goople Cms 1.7 Remote File Upload Vulnerability
  6734. NetArtMedia Cars Portal 2.0 (image.php id) SQL Injection Vulnerability
  6735. NetArtMedia Blog System (image.php id) SQL Injection Vulnerability
  6736. PG Real Estate (Auth Bypass) SQL Injection Vulnerability
  6737. PG Roomate Finder Solution (Auth Bypass) SQL Injection Vulnerability
  6738. PG Job Site (poll_view_id) Blind SQL Injection Vulnerability
  6739. MODx CMS <= 0.9.6.2 (RFI/XSS) Multiple Remote Vulnerabilities
  6740. Goople Cms 1.7 Insecure Cookie Handling Vulnerability
  6741. PHP Classifieds Script Remote Database Disclosure Vulnerability
  6742. Nero ShowTime 5.0.15.0 m3u Playlist File Remote Buffer Overflow PoC
  6743. NetArtMedia Real Estate Portal 1.2 (ad_id) SQL Injection Vuln
  6744. W3C Amaya 10.1 Web Browser (URL Bar) Remote Stack Overflow PoC
  6745. Goople Cms 1.7 Arbitrary Code Execution Vulnerability
  6746. VideoScript 3.0 <= 4.0.1.50 Official Shell Injection Exploit
  6747. VideoScript 3.0 <= 4.1.5.55 Unofficial Shell Injection Exploit
  6748. W3C Amaya 10.1 Web Browser (id) Remote Stack Overflow PoC
  6749. FTPzik (XSS/LFI) Multiple Remote Vulnerabilities
  6750. Bandwebsite 1.5 (SQL/XSS) Multiple Remote Vulnerabilities
  6751. WebStudio CMS (index.php pageid) Blind SQL Injection Vulnerability
  6752. Quicksilver Forums <= 1.4.2 RCE Exploit (windows only)
  6753. Nitrotech 0.0.3a (RFI/SQL) Multiple Remote Vulnerabilities
  6754. Total Video Player (vcen.dll) Remote off by one Crash Exploit
  6755. Siemens C450IP/C475IP Remote Denial of Service Vulnerability
  6756. Pie Web M{a,e}sher 0.5.3 Multiple Remote File Inclusion Vulnerability
  6757. WebStudio eHotel (pageid) Blind SQL Injection Vulnerability
  6758. WebStudio eCatalogue (pageid) Blind SQL Injection Vulnerability
  6759. FAQ Manager 1.2 (categorie.php cat_id) SQL Injection Vulnerability
  6760. Pie Web M{a,e}sher Mod Rss 0.1 Remote File Inclusion Vulnerability
  6761. Google Chrome Browser MetaCharacter URI Obfuscation Vulnerability
  6762. Chipmunk Topsites (Auth Bypass/XSS) Multiple Remote Vulnerabilities
  6763. Clean CMS 1.5 (Blind SQL Injection/XSS) Multiple Remote Vulnerabilities
  6764. FAQ Manager 1.2 (config_path) Remote File Inclusion Vulnerability
  6765. Clean CMS 1.5 (full_txt.php id) Blind SQL Injection Exploit
  6766. fuzzylime cms 3.03 (track.php p) Local File Inclusion Vulnerability
  6767. SimpleBlog 3.0 (simpleBlog.mdb) Database Disclosure Vulnerability
  6768. LoveCMS 1.6.2 Final (Download Manager 1.0) File Upload Exploit
  6769. VideoGirls BiZ (view_snaps.php type) Blind SQL Injection Vulnerability
  6770. Jamit Job Board 3.x (show_emp) Blind SQL Injection Vulnerability
  6771. WebStudio CMS (pageid) Remote Blind SQL Injection Vuln (mil mixup)
  6772. CMS Ortus <= 1.13 Remote SQL Injection Vulnerability
  6773. Post Affiliate Pro v.3 (umprof_status) Blind SQL Injection Vulnerability
  6774. ParsBlogger (blog.asp wr) Remote SQL Injection Vulnerability
  6775. Star Articles 6.0 Remote Blind SQL Injection Vulnerability
  6776. TxtBlog (index.php m) Local File Inclusion Vulnerability
  6777. Web Calendar System 3.12/3.30 Multiple Remote Vulnerabilities
  6778. Star Articles 6.0 Remote Blind SQL Injection exploit
  6779. Ocean12 Contact Manager Pro (SQL/XSS/DDV) Multiple Vulnerabilities
  6780. Ocean12 Membership Manager Pro Database Disclosure Vulnerability
  6781. Ocean12 Poll Manager Pro Database Disclosure Vulnerability
  6782. Ocean12 Calendar Manager Gold Database Disclosure Vulnerability
  6783. Family Project 2.x (Auth Bypass) SQL Injection Vulnerability
  6784. i.Scribe SMTP Client <= 2.00b (wscanf) Remote Format String PoC
  6785. RakhiSoftware Shopping Cart (subcategory_id) SQL Injection Vulnerability
  6786. Star Articles 6.0 Remote File Upload Vulnerability
  6787. Web Calendar 4.1 (Auth Bypass) SQL Injection Vulnerability
  6788. Booking Centre 2.01 (HotelID) Remote SQL Injection Vulnerability
  6789. Ocean12 Membership Manager Pro (Auth Bypass) SQL Injection Vuln
  6790. PageTree CMS 0.0.2 BETA 0001 Remote File Inclusion Vulnerability
  6791. Turnkey Arcade Script (id) Remote SQL Injection Vulnerability
  6792. BaSiC-CMS (index.php r) Remote SQL Injection Vulnerability
  6793. Ocean12 FAQ Manager Pro Database Disclosure Vulnerability
  6794. Comersus ASP Shopping Cart (DD/XSS) Multiple Remote Vulnerabilities
  6795. BaSiC-CMS (acm2000.mdb) Remote Database Disclosure Vulnerability
  6796. Basic PHP CMS (index.php id) Blind SQL Injection Vulnerability
  6797. Microsoft Office Communicator (SIP) Remote Denial of Service Exploit
  6798. Booking Centre 2.01 (Auth Bypass) SQL Injection Vulnerability
  6799. Apache Tomcat runtime.getRuntime().exec() Privilege Escalation (win)
  6800. Web Calendar System <= 3.40 (XSS/SQL) Multiple Remote Vulnerabilities
  6801. All Club CMS <= 0.0.2 Remote DB Config Retrieve Exploit
  6802. SailPlanner 0.3a (Auth Bypass) SQL Injection Vulnerability
  6803. Bluo CMS 1.2 (index.php id) Blind SQL Injection Vulnerability
  6804. CMS little (index.php term) Remote SQL Injection Exploit
  6805. ReVou Twitter Clone (Auth Bypass) SQL Injection Vulnerability
  6806. Ocean12 FAQ Manager Pro (ID) Blind SQL Injection Vulnerabillity
  6807. Active Force Matrix v2 (Auth Bypass) Remote SQL Injection Vulnerability
  6808. ASPReferral 5.3 (AccountID) Blind SQL Injection Vulnerability
  6809. ActiveVotes 2.2 (Auth Bypass) Remote SQL Injection Vulnerability
  6810. Active Test 2.1 (Auth Bypass) Remote SQL Injection Vulnerability
  6811. Active Websurvey 9.1 (Auth Bypass) Remote SQL Injection Vulnerability
  6812. Active Membership v 2 (Auth Bypass) Remote SQL Injection Vulnerability
  6813. eWebquiz v 8 (Auth Bypass) Remote SQL Injection Vulnerability
  6814. Active Newsletter 4.3 (Auth Bypass) Remote SQL Injection Vulnerability
  6815. Active Web Mail v 4 (Auth Bypass) Remote SQL Injection Vulnerability
  6816. Active Trade 2 (Auth Bypass) Remote SQL Injection Vulnerability
  6817. Active Price Comparison 4 (Auth Bypass) SQL Injection Vulnerability
  6818. PHP TV Portal 2.0 (index.php mid) SQL Injection Vulnerability
  6819. CMS Made Simple 1.4.1 Local File Inclusion Vulnerability
  6820. OraMon 2.0.1 Remote Config File Disclosure Vulnerability
  6821. ActiveVotes 2.2 (AccountID) Blind SQL Injection Vulnerability
  6822. Active Web Mail v 4 Blind SQL Injection Vulnerability
  6823. Active Price Comparison v4 (ProductID) Blind SQL Injection Vulnerability
  6824. Active Bids 3.5 (ItemID) Blind SQL Injection Vulnerability
  6825. OpenForum 0.66 Beta Remote Reset Admin Password Exploit
  6826. ASPThai.NET Forum 8.5 Remote Database Disclosure Vulnerability
  6827. Active Web Helpdesk v 2 (Auth Bypass) SQL Injection Vulnerability
  6828. Lito Lite CMS (cate.php cid) Remote SQL Injection Exploit
  6829. Active Test 2.1 (QuizID) Blind SQL Injection Vulnerability
  6830. Itunes 8.0.2.20/Quicktime 7.5.5 (.mov File) Multiple Off By Overflow PoC
  6831. Cain & Abel 4.9.23 (rdp file) Buffer Overflow PoC
  6832. Active Web Helpdesk v 2 (CategoryID) Blind SQL Injection Vulnerability
  6833. Active Photo Gallery 6.2 (Auth Bypass) SQL Injection Vulnerability
  6834. Active Price Comparison v 4 (ProductID) Blind SQL Injection Vulnerability
  6835. Active Time Billing 3.2 (Auth Bypass) SQL Injection Vulnerability
  6836. Active Business Directory v 2 Remote blind SQL Injection Vulnerability
  6837. Quick Tree View .NET 3.1 (qtv.mdb) Database Disclosure Vulnerability
  6838. KTP Computer Customer Database CMS Local File Inclusion Vulnerability
  6839. KTP Computer Customer Database CMS Blind SQL Injection Vulnerability
  6840. Minimal Ablog 0.4 (SQL/FU/Bypass) Multiple Remote Vulnerabilities
  6841. Electronics Workbench (EWB File) Local Stack Overflow PoC
  6842. cpCommerce 1.2.6 (URL Rewrite) Input variable overwrite / Auth bypass
  6843. Cain & Abel <= v4.9.24 .RDP Stack Overflow Exploit
  6844. Broadcast Machine 0.1 Multiple Remote File Inclusion Vulnerabilities
  6845. z1exchange 1.0 (edit.php site) Remote SQL Injection Vulnerability
  6846. Andy's PHP Knowledgebase 0.92.9 Arbitrary File Upload Vulnerability
  6847. Debian GNU/Linux (symlink attack in login) Arbitrary File Ownership PoC
  6848. Maxum Rumpus 6.0 Multiple Remote Buffer Overflow Vulnerabilities
  6849. E.Z. Poll v.2 (Auth Bypass) Remote SQL Injection Vulnerability
  6850. ASPPortal 3.2.5 (ASPPortal.mdb) Database Disclosure Vulnreability
  6851. bcoos 1.0.13 (viewcat.php cid) Remote SQL Injection Exploit
  6852. PacPoll 4.0 (poll.mdb/poll97.mdb) Database Disclosure Vulnerability
  6853. Ocean12 Mailing List Manager Gold (DD/SQL/XSS) Vulnerabilities
  6854. CMS MAXSITE Component Guestbook Remote Command Execution Exploit
  6855. SunByte e-Flower (id) Remote SQL Injection Vulnerability
  6856. Rapid Classified 3.1 (cldb.mdb) Database Disclosure Vulnerability
  6857. Codefixer MailingListPro (MailingList.mdb) Database Disclosure Vuln
  6858. Gallery MX 2.0.0 (pics_pre.asp ID) Blind SQL Injection Vulnerability
  6859. Calendar MX Professional 2.0.0 Blind SQL Injection Vulnerability
  6860. Check New 4.52 (findoffice.php search) Remote SQL Injection Exploit
  6861. Cain & Abel 4.9.23 (rdp file) Buffer overflow Exploit
  6862. ClamAV < 0.94.2 (JPEG Parsing) Recursive Stack Overflow PoC
  6863. Joomla Component com_jmovies 1.1 (id) SQL Injection Exploit
  6864. ASP User Engine .NET Remote Database Disclosure Vulnerability
  6865. Rae Media Contact MS (Auth Bypass) SQL Injection Vulnerability
  6866. RadAsm <= 2.2.1.5 (.RAP File) WindowCallProcA Pointer Hijack Exploit
  6867. Multi SEO phpBB 1.1.0 (pfad) Remote File Inclusion Vulnerability
  6868. ccTiddly 1.7.4 (cct_base) Multiple Remote File Inclusion Vulnerabilities
  6869. Wbstreet v.1.0 (SQL/DD) Multiple Remote Vulnerabilities
  6870. User Engine Lite ASP (users.mdb) Database Disclosure Vulnerability
  6871. Template Creature (SQL/DD) Multiple Remote Vulnerabilities
  6872. Easy News Content Management (News.mdb) Database Disclosure Vuln
  6873. lcxbbportal 0.1 Alpha 2 Remote File Inclusion Vulnerability
  6874. My Simple Forum 3.0 (index.php action) Local File Inclusion Vulnerability
  6875. Joomla Component mydyngallery 1.4.2 (directory) SQL Injection Vuln
  6876. Gravity GTD <= 0.4.5 (rpc.php objectname) LFI/RCE Vulnerability
  6877. BNCwi <= 1.04 Local File Inclusion Vulnerability
  6878. Multiple Membership Script 2.5 (id) SQL Injection Vulnerability
  6879. PEiD <= 0.92 Malformed PE File Universal Buffer Overflow Exploit
  6880. Merlix Educate Servert (Bypass/DD) Multiple Remote Vulnerabilities
  6881. RankEm (rankup.asp siteID) Remote SQL Injection Vulnerability
  6882. RankEm (auth bypass) Remote SQL Injection Vulnerability
  6883. NightFall Personal Diary 1.0 (XSS/DD) Multiple Remote Vulnerabilities
  6884. Merlix Teamworx Server (DD/Bypass) Multiple Remote Vulns
  6885. Cold BBS (cforum.mdb) Remote Database Disclosure Vulnerability
  6886. Tizag Countdown Creator .v.3 Insecure Upload Vulnerability
  6887. NULL FTP Server 1.1.0.7 SITE Parameters Command Injection Vuln
  6888. ASP AutoDealer (SQL/DD) Multiple Remote Vulnerabilities
  6889. ASP PORTAL Multiple Remote SQL Injection Vulnerabilities
  6890. Visagesoft eXPert PDF EditorX (VSPDFEditorX.ocx) Insecure Method
  6891. ASPTicker 1.0 (news.mdb) Remote Database Disclosure Vulnerability
  6892. ASP AutoDealer Remote Database Disclosure Vulnerability
  6893. ASP PORTAL (xportal.mdb) Remote Database Disclosure Vulnerability
  6894. DesignWorks Professional 4.3.1 Local .CCT File Stack BOF PoC
  6895. phpPgAdmin <= 4.2.1 (_language) Local File Inclusion Vulnerability
  6896. IPNPro3 <= 1.44 Admin Password Changing Exploit
  6897. DL PayCart <= 1.34 Admin Password Changing Exploit
  6898. Bonza Cart <= 1.10 Admin Password Changing Exploit
  6899. PayPal eStore Admin Password Changing Exploit
  6900. Product Sale Framework 0.1b (forum_topic_id) SQL Injection Vulnerability
  6901. w3blabor CMS 3.0.5 Arbitrary File Upload & LFI Exploit
  6902. NatterChat 1.12 (natterchat112.mdb) Database Disclosure Vulnerability
  6903. Professional Download Assistant 0.1 Database Disclosure Vulnerability
  6904. Ikon AdManager 2.1 Remote Database Disclosure Vulnerability
  6905. ASPManage Banners (RFU/DD) Multiple Remote Vulnerabilities
  6906. Mini Blog 1.0.1 (index.php) Multiple Local File Inclusion Vulnerabilities
  6907. Mini-CMS 1.0.1 (index.php) Multiple Local File Inclusion Vulnerabilities
  6908. QMail Mailing List Manager 1.2 Database Disclosure Vulnerability
  6909. PHPmyGallery Gold 1.51 (index.php) Directory Traversal Vulnerability
  6910. ASP Talk (SQL/CSS) Multiple Remote Vulnerabilities
  6911. MG2 0.5.1 (filename) Remote Code Execution Vulnerability
  6912. XOOPS 2.3.1 Multiple Local File Inclusion Vulnerabilities
  6913. SIU Guarani Multiple Remote Vulnerabilities
  6914. phpMyAdmin 3.1.0 (XSRF) SQL Injection Vulnerability
  6915. Simple Directory Listing 2 Cross Site File Upload Vulnerability
  6916. XAMPP 1.6.8 (XSRF) Change Administrative Password Exploit
  6917. Secure Downloads v2.0.0r for vBulletin SQL Injection Vulnerability
  6918. phpBB 3 (Mod Tag Board <= 4) Remote Blind SQL Injection Exploit
  6919. Neostrada Livebox Router Remote Network Down PoC Exploit
  6920. WebCAF <= 1.4 (LFI/RCE) Multiple Remote Vulnerabilities
  6921. DD-WRT v24-sp1 (XSRF) Cross Site Reference Forgery Exploit
  6922. Professional Download Assistant 0.1 (Auth Bypass) SQL Injection Vuln
  6923. Poll Pro 2.0 (Auth Bypass) Remote SQL Injection Vulnerability
  6924. PHPmyGallery 1.0beta2 (RFI/LFI) Multiple Remote Vulnerabilities
  6925. PHP safe_mode bypass via proc_open() and custom environment
  6926. Peel Shopping 3.1 (index.php rubid) SQL Injection Vulnerability
  6927. Netref 4.0 Multiple Remote SQL Injection Vulnerabilities
  6928. ProQuiz 1.0 (Auth Bypass) SQL Injection Vulnerability
  6929. PostEcards (SQL/DD) Multiple Remote Vulnerabilities
  6930. PHPmyGallery 1.5beta (common-tpl-vars.php) LFI/RFI Vulnerabilities
  6931. PHP Multiple Newsletters 2.7 (LFI/XSS) Multiple Vulnerabilities
  6932. Vinagre < 2.24.2 show_error() Remote Format String PoC
  6933. EasyMail ActiveX (emmailstore.dll 6.5.0.3) Buffer Overflow Exploit
  6934. MS Internet Explorer XML Parsing Remote Buffer Overflow Exploit 0day
  6935. HTMPL 1.11 (htmpl_admin.cgi help) Command Execution Vulnerability
  6936. Linux Kernel <= 2.6.27.8 ATMSVC Local Denial of Service Exploit
  6937. eZ Publish < 3.9.5/3.10.1/4.0.1 Privilege Escalation Exploit
  6938. Webmaster Marketplace (member.php u) SQL Injection Vulnerability
  6939. Living Local 1.1 (XSS-RFU) Multiple Remote Vulnerabilities
  6940. Pro Chat Rooms 3.0.2 (XSS/CSRF) Multiple Vulnerabilities
  6941. MS Internet Explorer XML Parsing Buffer Overflow Exploit (vista) 0day
  6942. Butterfly Organizer 2.0.1 (view.php id) SQL Injection Vulnerability
  6943. CF SHOPKART 5.2.2 (SQL/DD) Multiple Remote Vulnerabilities
  6944. CF_Calendar (calendarevent.cfm) Remote SQL Injection Exploit
  6945. CF_Auction (forummessage) Blind SQL Injection Vulnerability
  6946. CFMBLOG (index.cfm categorynbr) Blind SQL Injection Vulnerability
  6947. CF_Forum Blind SQL Injection Vulnerability
  6948. phpAddEdit 1.3 (editform) Local File Inclusion Vulnerability
  6949. PhpAddEdit 1.3 (Cookie) Login Bypass Vulnerability
  6950. evCal Events Calendar Database Disclosure Vulnerability
  6951. MyCal Personal Events Calendar (mycal.mdb) Database Disclosure Vuln
  6952. eZ Publish 3.9.0/3.9.5/3.10.1 Command Execution Exploit (admin req)
  6953. Feed Cms 1.07.03.19b (lang) Local File Inclusion Vulnerability
  6954. Affiliate Software Java 4.0 (Auth Bypass) SQL Injection Vulnerability
  6955. Ad Management Java (Auth Bypass) SQL Injection Vulnerability
  6956. Banner Exchange Java (Auth Bypass) SQL Injection Vulnerability
  6957. PHP Support Tickets 2.2 Remote File Upload Vulnerability
  6958. The Net Guys ASPired2Poll Remote Database Disclosure Vulnerability
  6959. The Net Guys ASPired2Protect Database Disclosure Vulnerability
  6960. ASP-CMS 1.0 (index.asp cha) SQL Injection Vulnerability
  6961. SUMON <= 0.7.0 (chg.php host) Command Execution Vulnerability
  6962. MS Visual Basic ActiveX Controls mscomct2.ocx Buffer Overflow PoC
  6963. Xpoze 4.10 (home.html menu) Blind SQL Injection Vulnerability
  6964. Social Groupie (group_index.php id) Remote SQL Injection Vulnerability
  6965. Wysi Wiki Wyg 1.0 Remote Password Retrieve Exploit
  6966. Social Groupie (create_album.php) Remote File Upload Vulnerability
  6967. The Net Guys ASPired2Blog (SQL/DD) Multiple Remote Vulnerabilities
  6968. Moodle 1.9.3 Remote Code Execution Vulnerability
  6969. VP-ASP Shopping Cart 6.50 Database Disclosure Vulnerability
  6970. Umer Inc Songs Portal Script (id) SQL Injection Vulnerability
  6971. ColdFusion Scripts Red_Reservations Database Disclosure Vulnerability
  6972. Joomla Live Chat (SQL/Proxy) Multiple Remote Vulnerabilities
  6973. TmaxSoft JEUS Alternate Data Streams File Disclosure Vulnerability
  6974. FlexPHPNews 0.0.6 & PRO (Auth Bypass) SQL Injection Vulnerability
  6975. Simple Text-File Login script 1.0.6 (DD/RFI) Multiple Vulnerabilities
  6976. Discussion Web v4 Remote Database Disclosure Vulnerability
  6977. ASPired2Quote (quote.mdb) Remote Database Disclosure Vulnerability
  6978. ASP-DEV Internal E-Mail System (Auth Bypass) SQL Injection Vuln
  6979. AutositePHP 2.0.3 (LFI/CSRF/Edit File) Multiple Remote Vulnerabilities
  6980. iyzi Forum 1.0b3 (iyziforum.mdb) Database Disclosure Vulnerability
  6981. CodeAvalanche FreeForum (CAForum.mdb) Database Disclosure Vulnerability
  6982. PHP Weather 2.2.2 (LFI/XSS) Multiple Remote Vulnerabilities
  6983. ProSysInfo TFTP server TFTPDWIN <= 0.4.2 Univ. Remote BOF Exploit
  6984. FLDS 1.2a (redir.php id) Remote SQL Injection Vulnerability
  6985. Linux Kernel 2.6.27.7-generic - 2.6.18 - 2.6.24-1 Local DoS Exploit
  6986. The Rat Cms Alpha 2 (download.php) Remote Vulnerability
  6987. Availscript Article Script Remote File Upload Vulnerability
  6988. Availscript Classmate Script Remote File Upload Vulnerability
  6989. Mediatheka 4.2 (index.php lang) Local File Inclusion Vulnerability
  6990. CFAGCMS v1 Remote File Inclusion Vulnerabilities
  6991. EvansFTP (EvansFTP.ocx) Remote Buffer Overflow PoC
  6992. Flatnux html/javascript Injection Cookie Grabber Exploit
  6993. ASPSiteWare Home Builder 1.0/2.0 SQL Injection Vulnerability
  6994. ASPSiteWare Automotive Dealer V1/V2 SQL Injection Vulnerability
  6995. ASPSiteWare RealtyListing V1/V2 SQL Injection Vulnerabilities
  6996. IsWeb CMS 3.0 (SQL/XSS) Multiple Remote Vulnerabilities
  6997. Forest Blog 1.3.2 (blog.mdb) Remote Database Disclosure Vulnerability
  6998. Amaya Web Browser 10.0.1/10.1-pre5 (html tag) Buffer Overflow PoC
  6999. CodeAvalanche Directory (CADirectory.mdb) Database Disclosure Vuln
  7000. CodeAvalanche FreeForAll (CAFFAPage.mdb) Database Disclosure Vuln
  7001. CodeAvalanche FreeWallpaper Remote Database Disclosure Vulnerability
  7002. CodeAvalanche Articles (CAArticles.mdb) Database Disclosure Vuln
  7003. CodeAvalanche RateMySite (CARateMySite.mdb) Database Disclosure
  7004. eZ Publish < 3.9.5/3.10.1/4.0.1 (token) Privilege Escalation Exploit
  7005. FLDS 1.2a (lpro.php id) Remote SQL Injection Vulnerability
  7006. BabbleBoard 1.1.6 (username) CSRF/Cookie Grabber Exploit
  7007. Mediatheka <= 4.2 Remote Blind SQL Injection Exploit
  7008. MS Internet Explorer XML Parsing Buffer Overflow Exploit (allinone)
  7009. The Rat Cms Alpha 2 (Auth Bypass) SQL Injection Vulnerability
  7010. XOOPS Module Amevents (print.php id) SQL Injection Vulnerability
  7011. CadeNix (cid) Remote SQL Injection Vulnerability
  7012. WorkSimple 1.2.1 RFI / Sensitive Data Disclosure Vulnerabilities
  7013. Aperto Blog 0.1.1 Local File Inclusion / SQL Injection Vulnerabilities
  7014. CFAGCMS v1 (right.php title) SQL Injection Vulnerability
  7015. Click&BaneX Multiple Remote SQL Injection Vulnerabilities
  7016. ClickAndEmaiL (SQL/XSS) Multiple Remote Vulnerabilities
  7017. Click&Rank (SQL/XSS) Multiple Remote Vulnerabilities
  7018. FaScript FaUpload (download.php) SQL Injection Vulnerability
  7019. Web Wiz Guestbook 8.21 (WWGguestbook.mdb) DD Vulnerability
  7020. FLDS 1.2a report.php (linkida) Remote SQL Injection Exploit
  7021. Aiyoota! CMS - Blind SQL Injection Exploit
  7022. Nukedit 4.9.8 Remote Database Disclosure Vulnerability
  7023. Realtek Sound Manager (rtlrack.exe v. 1.15.0.0) PlayList BOF Exploit
  7024. Liberum Help Desk 0.97.3 (SQL/DD) Remote Vulnerabilities
  7025. Zelta E Store (RFU/BYPASS/R-SQL/B-SQL) Multiple Vulnerabilities
  7026. Gnews Publisher .NET (authors.asp authorID) SQL Injection Vulnerability
  7027. Barracuda Spam Firewall v3.5.11.020, Model 600 SQL Injection Vuln
  7028. RSMScript 1.21 XSS/Insecure Cookie Handling Vulnerabilities
  7029. BP Blog 6.0/7.0/8.0/9.0 Remote Database Disclosure Vulnerability
  7030. K&S Shopsysteme Arbitrary Remote File Upload Vulnerability
  7031. Microsoft SQL Server sp_replwritetovarbin() Heap Overflow Exploit
  7032. r.cms v2 Multiple SQL Injection Vulnerabilities
  7033. PHP python extension safe_mode Bypass Local Vulnerability
  7034. Joomla Component Tech Article 1.x (item) SQL Injection Vulnerability
  7035. Phoenician Casino FlashAX ActiveX Remote Code Execution Exploit
  7036. TinyMCE 2.0.1 (index.php menuID) Remote SQL Injection Vulnerability
  7037. Lizardware CMS <= 0.6.0 Blind SQL Injection Exploit
  7038. QuickerSite Easy CMS (QuickerSite.mdb) Database Disclosure Vulnerability
  7039. Mini File Host 1.x Arbitrary PHP File Upload Vulnerability
  7040. 2532|Gigs 1.2.2 Stable Multiple Remote Vulnerabilities
  7041. 2532|Gigs 1.2.2 Stable Remote Login Bypass Vulnerability
  7042. 2532|Gigs 1.2.2 Stable Remote Command Execution Exploit
  7043. Calendar Script 1.1 Insecure Cookie Handling Vulnerability
  7044. I-Rater Basic (messages.php) Remote SQL Injection Vulnerability
  7045. Phpclanwebsite <= 1.23.3 Fix Pack #5 Multiple Remote Vulnerabilities
  7046. ESET Smart Security <= 3.0.672 (epfw.sys) Privilege Escalation Exploit
  7047. Injader CMS 2.1.1 (id) Remote SQL Injection Vulnerability
  7048. Gobbl CMS 1.0 Insecure Cookie Handling Vulnerability
  7049. MyPHPsite (index.php mod) Local File Inclusion Vulnerability
  7050. Avahi < 0.6.24 (mDNS Daemon) Remote Denial of Service Exploit
  7051. webcamXP 5.3.2.375 Remote File Disclosure Vulnerability
  7052. MyPBS (index.php seasonID) Remote SQL Injection Exploit
  7053. ReVou Twitter Clone Admin Password Changing Exploit
  7054. Online Keyword Research Tool (download.php) File Disclosure Vuln
  7055. Extract Website (download.php filename) File Disclosure Vulnerability
  7056. myPHPscripts Login Session 2.0 XSS/Database Disclosure Vulns
  7057. FreeLyrics 1.0 (source.php p) Remote File Disclosure Vulnerability
  7058. OneOrZero helpdesk 1.6.*. Remote Shell Upload Exploit
  7059. Constructr CMS <= 3.02.5 Stable Multiple Remote Vulnerabilities
  7060. Userlocator 3.0 (y) Remote Blind SQL Injection Exploit
  7061. ReVou Twitter Clone Arbitrary File Upload Vulnerability
  7062. chicomas <= 2.0.4 (DB Backup/DD/XSS) Multiple Vulnerabilities
  7063. PowerStrip < = 3.84 (pstrip.sys) Privilege Escalation Exploit
  7064. Emefa Guestbook 3.0 Remote Database Disclosure Vulnerability
  7065. Linksys Wireless ADSL Router (WAG54G V.2) httpd DoS Exploit
  7066. CoolPlayer 2.19 (Skin File) Local Buffer Overflow Exploit
  7067. BLOG 1.55B (image_upload.php) Arbitrary File Upload Vulnerability
  7068. Joomla Component com_hbssearch 1.0 Blind SQL Injection Vuln
  7069. Joomla Component com_tophotelmodule 1.0 Blind SQL Injection Vuln
  7070. PHPg 1.6 (XSS/PD/DoS) Multiple Remote Vulnerabilities
  7071. RSS Simple News (news.php pid) Remote SQL Injection Exploit
  7072. Text Lines Rearrange Script (filename) File Disclosure Vulnerability
  7073. Wordpress Plugin Page Flip Image Gallery <= 0.2.2 Remote FD Vuln
  7074. Pligg 9.9.5b (check_url.php url) Upload Shell/SQL Injection Exploit
  7075. YourPlace <= 1.0.2 Multiple Remote Vulnerabilities + RCE Exploit
  7076. Joomla Component Volunteer 2.0 (job_id) SQL Injection Vulnerability
  7077. CoolPlayer 2.19 (Skin File) Local Buffer Overflow Exploit (py)
  7078. SolarCMS 0.53.8 (Forum) Remote Cookies Disclosure Exploit
  7079. RoundCube Webmail <= 0.2-3 beta Code Execution Vulnerability
  7080. CUPS < 1.3.8-4 (pstopdf filter) Privilege Escalation Exploit
  7081. Calendar Script 1.1 (Auth Bypass) SQL Injection Vulnerability
  7082. REDPEACH CMS (zv) Remote SQL Injection Vulnerability
  7083. RoundCube Webmail <= 0.2b Remote Code Execution Exploit
  7084. Mozilla Firefox 3.0.5 location.hash Remote Crash Exploit
  7085. Psi Jabber Client (8010/tcp) Remote Denial of Service Exploit (win/lin)
  7086. PGP Desktop 9.0.6 (PGPwded.sys) Local Denial of Service Exploit
  7087. PHPmotion <= 2.1 CSRF Vulnerability
  7088. phpLD 3.3 (page.php name) Blind SQL Injection Vulnerability
  7089. CMS NetCat 3.12 (password_recovery.php) Blind SQL Injection Exploit
  7090. CMS NetCat <= 3.12 Multiple Remote Vulnerabilities
  7091. phpGreetCards XSS/Arbitrary File Upload Vulnerability
  7092. phpAdBoard (php uploads) Arbitrary File Upload Vulnerability
  7093. phpEmployment (php upload) Arbitrary File Upload Vulnerability
  7094. Getleft 1.2 Remote Buffer Overflow Proof of Concept
  7095. StormBoard 1.0.1 (thread.php id) SQL Injection Vulnerability
  7096. Google Chrome Browser (ChromeHTML://) Remote Parameter Injection
  7097. Joomla Component com_lowcosthotels (id) Blind SQL Injection Vuln
  7098. Joomla Component com_allhotels (id) Blind SQL Injection Vulnerability
  7099. doop CMS <= 1.4.0b (CSRF/Upload Shell) Multiple Remote Vulnerabilities
  7100. ILIAS <= 3.7.4 (ref_id) Blind SQL Injection Vulnerability
  7101. BulletProof FTP Client 2.63 Local Heap Overflow PoC
  7102. Joomla Component Ice Gallery 0.5b2 (catid) Blind SQL Injection Vuln
  7103. Joomla Component Live Ticker 1.0 (tid) Blind SQL Injection Vuln
  7104. Joomla Component mdigg 2.2.8 (category) SQL Injection Vuln
  7105. Joomla Component 5starhotels (id) SQL Injection Exploit
  7106. PHP-Fusion <= 7.0.2 Remote Blind SQL Injection Exploit
  7107. Acoustica Mixcraft <= 4.2 Universal Stack Overflow Exploit (SEH)
  7108. SAWStudio 3.9i (prf File) Local Buffer Overflow PoC
  7109. ClaSS <= 0.8.60 (export.php ftype) Local File Inclusion Vulnerability
  7110. BloofoxCMS 0.3.4 (lang) Local File Inclusion Vulnerability
  7111. FreeBSD 6x/7 protosw kernel Local Privledge Escalation Exploit
  7112. IntelliTamper 2.07/2.08 (MAP File) Local SEH Overwrite Exploit
  7113. MS Internet Explorer XML Parsing Buffer Overflow Exploit
  7114. Amaya Web Browser <= 11.0.1 Remote Buffer Overflow Exploit (vista)
  7115. MS Windows Media Player 1.sh index.html index.html.working milw0rm.tar.bz2 milw0rm-wi.jpg platforms rport sploitlist.txt (.WAV) Remote Crash PoC
  7116. Miniweb 2.0 (Auth Bypass) SQL Injection Vulnerability
  7117. Joomla Component PAX Gallery 0.1 Blind SQL Injection Vulnerability
  7118. BulletProof FTP Client (.bps File) Local Stack Overflow PoC
  7119. Hex Workshop 5.1.4 (Color Mapping File) Local Buffer Overflow PoC
  7120. DeluxeBB <= 1.2 Remote Blind SQL Injection Exploit
  7121. Chilkat FTP ActiveX (SaveLastError) Insecure Method Exploit
  7122. FubarForum 1.6 Arbitrary Admin Bypass Vulnerability
  7123. AlstraSoft Web Email Script Enterprise (id) SQL Injection Vuln
  7124. OwenPoll 1.0 Insecure Cookie Handling Vulnerability
  7125. PHP-Fusion Mod TI (id) Remote SQL Injection Vulnerability
  7126. ForumApp 3.3 Remote Database Disclosure Vulnerability
  7127. Flexphplink Pro Arbitrary File Upload Exploit
  7128. Silentum LoginSys 1.0.0 Insecure Cookie Handling vulnerability
  7129. webClassifieds 2005 (Auth Bypass) SQL Injection Vulnerability
  7130. eDNews v2 (lg) Local File Inclusion Vulnerability
  7131. eDContainer v2.22 (lg) Local File Inclusion Vulnerability
  7132. TaskDriver <= 1.3 Remote Change Admin Password Exploit
  7133. FubarForum 1.6 Admin Bypass Change User Password Vulnerability
  7134. Ultimate PHP Board <= 2.2.1 (log inj) Privilege Escalation Exploit
  7135. IntelliTamper 2.07/2.08 (ProxyLogin) Local Stack Overflow Exploit
  7136. Sepcity Shopping Mall (shpdetails.asp ID) SQL Injection Vulnerability
  7137. Sepcity Lawyer Portal (deptdisplay.asp ID) SQL Injection Vulnerability
  7138. CMS NetCat 3.0/3.12 Blind SQL Injection Exploit
  7139. Joomla Component com_na_content 1.0 Blind SQL Injection Vulnerability
  7140. Sepcity Classified (classdis.asp ID) SQL Injection Vulnerability
  7141. FlexPHPDirectory 0.0.1 (Auth Bypass) SQL Injection Vulnerability
  7142. Flexphpsite 0.0.1 (Auth Bypass) SQL Injection Vulnerability
  7143. Flexphplink 0.0.x (Auth Bypass) SQL Injection Vulnerability
  7144. SasCam WebCam Server 2.6.5 ActiveX Remote BOF Exploit
  7145. Linux Kernel < 2.6.26.4 SCTP Kernel Memory Disclosure Exploit
  7146. eDNews v2 (eDNews_view.php newsid) SQL Injection Vulnerability
  7147. ThePortal 2.2 Arbitrary Remote File Upload Exploit
  7148. PHPAlumni (Acomment.php id) SQL Injection Vulnerability
  7149. Flexcustomer 0.0.6 Admin Login Bypass / Possible PHP code writing
  7150. Megacubo 5.0.7 (mega://) Remote eval() Injection Exploit
  7151. Flexphpic 0.0.x (Auth Bypass) SQL Injection Vulnerability
  7152. CMScout 2.06 SQL Injection/Local File Inclusion Vulnerabilities
  7153. Mole Group Vacation Estate Listing Script (editid1) Blind SQL Injection
  7154. Pixel8 Web Photo Album 3.0 Remote SQL Injection Vulnerability
  7155. ViArt Shopping Cart 3.5 Multiple Remote Vulnerabilities
  7156. DDL-Speed Script (acp/backup) Admin Backup Bypass Vulnerability
  7157. Megacubo 5.0.7 (mega://) Remote File Download and Execute Exploit
  7158. 2Capsule (sticker.php id) Remote SQL Injection Vulnerability
  7159. Nokia S60 SMS/MMS (Curse of Silence) Denial of Service Vulnerability
  7160. EggBlog 3.1.10 Change Admin Pass CSRF Vulnerability
  7161. Audacity 1.6.2 (.gro File) Local Buffer Overflow PoC
  7162. ASPThai.Net Webboard 6.0 (bview.asp) SQL Injection Vulnerability
  7163. PHPFootball <= 1.6 (filter.php) Remote Hash Disclosure Exploit
  7164. Elecard MPEG Player 5.5 (.m3u File) Stack Buffer Overflow PoC
  7165. Memberkit 1.0 Remote PHP File Upload Vulnerability
  7166. phpScribe 0.9 (user.cfg) Remote Config Disclosure Vulnerability
  7167. w3blabor CMS <= 3.3.0 (Admin Bypass) SQL Injection Vulnerability
  7168. PowerNews 2.5.4 (news.php newsid) SQL Injection Vulnerability
  7169. PowerClan 1.14a (Auth Bypass) SQL Injection Vulnerability
  7170. Konqueror 4.1 XSS / Remote Crash Vulnerabilities
  7171. Built2Go PHP Link Portal 1.95.1 Remote File Upload Vulnerability
  7172. Built2Go PHP Rate My Photo 1.46.4 Remote File Upload Vulnerability
  7173. PHP <= 5.2.8 gd library - imageRotate() Information Leak Vulnerability
  7174. VMware <= 2.5.1 (Vmware-authd) Remote Denial of Service Exploit
  7175. phpSkelSite 1.4 (RFI/LFI/XSS) Multiple Remote Vulnerabilities
  7176. Destiny Media Player 1.61 (.m3u File) Local Buffer Overflow PoC
  7177. Lito Lite CMS Multiple Cross Site Scripting / Blind SQL Injection Exploit
  7178. Destiny Media Player 1.61 (.m3u File) Local Stack Overflow Exploit
  7179. Destiny Media Player 1.61 (lst File) Local Buffer overflow PoC
  7180. Webspell 4 (Auth Bypass) SQL Injection Vulnerability
  7181. Destiny Media Player 1.61 (lst File) Local Buffer Overflow Exploit
  7182. Destiny Media Player 1.61 (lst File) Local Buffer Overflow Exploit #2
  7183. Destiny Media Player 1.61 (lst File) Local Buffer Overflow Exploit #3
  7184. webSPELL <= 4.01.02 (id) Remote Edit Topics Vulnerability
  7185. PNphpBB2 <= 1.2i (ModName) Multiple Local File Inclusion Exploit
  7186. WSN Guest 1.23 (search) Remote SQL Injection Vulnerability
  7187. PhpMesFilms 1.0 (index.php id) Remote SQL Injection Vulnerability
  7188. Destiny Media Player 1.61 (lst File) Local Buffer Overflow Exploit #4
  7189. Destiny Media Player 1.61 (lst File) Local Buffer Overflow Exploit #5
  7190. plxAutoReminder 3.7 (id) Remote SQL Injection Vulnerability
  7191. The Rat CMS Alpha 2 (viewarticle.php id) Blind SQL Injection Exploit
  7192. Ayemsis Emlak Pro (acc.mdb) Database Disclosure Vulnerability
  7193. Ayemsis Emlak Pro (Auth Bypass) SQL Injection Vulnerability
  7194. Joomla Component simple_review 1.x SQL Injection Vulnerability
  7195. Cybershade CMS 0.2b (index.php) Remote File Inclusion Exploit
  7196. Joomla com_na_newsdescription (newsid) SQL Injection Exploit
  7197. Joomla com_phocadocumentation (id) Remote SQL Injection Exploit
  7198. VUPlayer 2.49 (.wax File) Local Buffer Overflow Exploit
  7199. PHPAuctionSystem (XSS/SQL) Multiple Remote Vulnerabilities
  7200. Safari (Arguments) Array Integer Overflow PoC (New Heap Spray)
  7201. PHPAuctionSystem Insecure Cookie Handling Vulnerability
  7202. Oracle 10g SYS.LT.REMOVEWORKSPACE SQL Injection Exploit
  7203. Oracle 10g SYS.LT.MERGEWORKSPACE SQL Injection Exploit
  7204. Oracle 10g SYS.LT.COMPRESSWORKSPACETREE SQL Injection Exploit
  7205. PHPAuctionSystem Multiple Remote File Inclusion Vulnerabilities
  7206. RiotPix <= 0.61 (forumid) Blind SQL Injection Exploit
  7207. ezPack 4.2b2 (XSS/SQL) Multiple Remote Vulnerabilities
  7208. Debian GNU/Linux XTERM (DECRQSS/comments) Weakness Vulnerability
  7209. RiotPix <= 0.61 (Auth Bypass) SQL Injection Vulnerability
  7210. Goople <= 1.8.2 (frontpage.php) Blind SQL Injection Exploit
  7211. Rosoft Media Player 4.2.1 Local Buffer Overflow Exploit
  7212. SeaMonkey <= 1.1.14 (marquee) Denial of Service Exploit
  7213. ItCMS <= 2.1a (Auth Bypass) SQL Injection Vulnerability
  7214. playSMS 0.9.3 Multiple Remote/Local File Inclusion Vulnerabilities
  7215. Cain & Abel 4.9.25 (Cisco IOS-MD5) Local Buffer Overflow Exploit
  7216. BlogHelper (common_db.inc) Remote Config File Disclosure Vulnerability
  7217. PollHelper (poll.inc) Remote Config File Disclosure Vulnerability
  7218. Joomla <= 1.5.8 (xstandard editor) Local Directory Traversal Vulnerability
  7219. CoolPlayer BUILD 219 (PlaylistSkin) Buffer Overflow Exploit
  7220. Perception LiteServe 2.0.1 (user) Remote Buffer Overflow PoC
  7221. Audacity 1.6.2 (.aup File) Remote off by one Crash Exploit
  7222. VUPlayer <= 2.49 .PLS Universal Buffer Overflow Exploit
  7223. WinAmp GEN_MSN Plugin Heap Buffer Overflow PoC
  7224. PHP-Fusion Mod Members CV (job) 1.0 SQL Injection Vulnerability
  7225. PHP-Fusion Mod E-Cart 1.3 (items.php CA) SQL Injection Vulnerability
  7226. QuoteBook (poll.inc) Remote Config File Disclosure Vulnerability
  7227. CuteNews <= 1.4.6 (ip ban) XSS/Command Execution Exploit (adm req.)
  7228. Samba < 3.0.20 Remote Heap Overflow Exploit (oldie but goodie)
  7229. GOM Player 2.0.12.3375 (.ASX File) Stack Overflow Exploit
  7230. PHP-Fusion Mod vArcade 1.8 (comment_id) SQL Injection Vulnerability
  7231. Pizzis CMS <= 1.5.1 (visualizza.php idvar) Blind SQL Injection Exploit
  7232. XOOPS 2.3.2 (mydirname) Remote PHP Code Execution Exploit
  7233. Anope IRC Services With bs_fantasy_ext <= 1.2.0-RC1 mIRC script
  7234. IntelliTamper (2.07/2.08) Language Catalog SEH Overflow Exploit
  7235. MP3 TrackMaker 1.5 (.mp3 File) Local Heap Overflow PoC
  7236. VUPlayer 2.49 .ASX File (HREF) Local Buffer Overflow PoC
  7237. MS Internet Explorer JavaScript screen[ ] Denial of Service Exploit
  7238. Fast FAQs System (Auth Bypass) SQL Injection Vulnerability
  7239. Netgear WG102 Leaks SNMP write password with read access
  7240. VUPlayer 2.49 .ASX File (HREF) Local Buffer Overflow Exploit
  7241. VUPlayer 2.49 .ASX File (HREF) Local Buffer Overflow Exploit
  7242. VUPlayer 2.49 .ASX File (HREF) Universal Buffer Overflow Exploit
  7243. Joomla com_xevidmegahd (catid) Remote SQL Injection Exploit
  7244. Joomla com_jashowcase (catid) Remote SQL Injection Exploit
  7245. Joomla com_newsflash (id) Remote SQL Injection Vulnerability
  7246. Fast Guest Book (Auth Bypass) SQL Injection Vulnerability
  7247. MS Windows (.CHM File) Denial of Service (html compiled)
  7248. Browse3D 3.5 (.sfs File) Local Buffer Overflow PoC
  7249. DZcms v.3.1 (products.php pcat) Remote SQL Injection Vulnerability
  7250. Seo4SMF for SMF forums Multiple Vulnerabilities
  7251. phpMDJ <= 1.0.3 (id_animateur) Blind SQL Injection Exploit
  7252. XOOPS Module tadbook2 (open_book.php book_sn) SQL Injection Vuln
  7253. BKWorks ProPHP 0.50b1 (Auth Bypass) SQL Injection Vulnerability
  7254. Microsoft HTML Workshop <= 4.74 Universal Buffer Overflow Exploit
  7255. Weight Loss Recipe Book 3.1 (Auth Bypass) SQL Injection Vuln
  7256. PHP-Fusion Mod the_kroax (comment_id) SQL Injection Vulnerability
  7257. Social Engine (browse_classifieds.php s) SQL Injection Vulnerability
  7258. fttss <= 2.0 Remote Command Execution Vulnerability
  7259. Silentum Uploader 1.4.0 Remote File Deletion Exploit
  7260. Photobase 1.2 (language) Local File Inclusion Vulnerability
  7261. Joomla Component Portfol (vcatid) SQL Injection Vulnerability
  7262. Simple Machines Forum - Destroyer 0.1
  7263. Comersus Shopping Cart <= v6 Remote User Pass Exploit
  7264. Triologic Media Player 7 (.m3u) Local Heap Buffer Overflow PoC
  7265. Wordpress plugin WP-Forum 1.7.8 Remote SQL Injection Vulnerability
  7266. ExcelOCX ActiveX 3.2 (Download File) Insecure Method Exploit
  7267. PWP Wiki Processor 1-5-1 Remote File Upload Vulnerability
  7268. dMx READY ( 25 Products ) Remote Database Disclosure Vulnerability
  7269. Winamp <= 5.541 (mp3/aiff) Multiple Denial of Service Exploits
  7270. Realtor 747 (define.php INC_DIR) Remote File Inclusion Vulnerability
  7271. Virtual GuestBook 2.1 Remote Database Disclosure Vulnerability
  7272. VUPlayer 2.49 .ASX File (Universal) Local Buffer Overflow Exploit
  7273. Joomla Component com_gigcal (gigcal_gigs_id) SQL Injection Vuln
  7274. Word Viewer OCX 3.2 ActiveX (Save) Remote File Overwrite Exploit
  7275. Office Viewer ActiveX Control 3.0.1 (Save) Remote File Overwrite Exploit
  7276. Office Viewer ActiveX Control 3.0.1 Remote File Execution Exploit
  7277. PowerPoint Viewer OCX 3.1 Remote File Overwrite Exploit
  7278. dBpowerAMP Audio Player 2 .PLS File Local Buffer Overflow PoC
  7279. DMXReady News Manager <= 1.1 Arbitrary Category Change Vuln
  7280. HSPell 1.1 (cilla.cgi) Remote Command Execution Exploit
  7281. DMXReady Account List Manager <= 1.1 Contents Change Vulnerability
  7282. PowerPoint Viewer OCX 3.1 Remote File Execution Exploit
  7283. Nofeel FTP Server 3.6 (CWD) Remote Memory Consumption Exploit
  7284. Word Viewer OCX 3.2 Remote File Execution exploit
  7285. Dark Age CMS <= v0.2c Beta (Auth Bypass) SQL Injection Vulnerability
  7286. Syzygy CMS <= 0.3 (Auth Bypass) SQL Injection Vulnerability
  7287. TeamSpeak <= 2.0.23.17 Remote File Disclosure Vulnerability
  7288. Netvolution CMS 1.0 (XSS/SQL) Multiple Remote Vulnerabilities
  7289. EDraw Office Viewer 5.4 HttpDownloadFile() Insecure Method Vuln
  7290. Excel Viewer OCX 3.2 Remote File Execution Exploit
  7291. DMXReady Blog Manager <= 1.1 Remote File Delete Vulnerability
  7292. OTSTurntables 1.00.027 (.ofl) Local Stack Overflow Exploit
  7293. DMXReady Catalog Manager <= 1.1 Remote Contents Change Vuln
  7294. DMXReady Classified Listings Manager <= 1.1 SQL Injection Vulnerability
  7295. DMXReady Contact Us Manager <= 1.1 Remote Contents Change Vuln
  7296. DMXReady Document Library Manager <= 1.1 Contents Change Vuln
  7297. DMXReady Faqs Manager <= 1.1 Remote Contents Change Vulnerability
  7298. DMXReady Job Listing <= 1.1 Remote Contents Change Vulnerability
  7299. DMXReady Links Manager <= 1.1 Remote Contents Change Vulnerability
  7300. DMXReady Member Directory Manager <= 1.1 SQL Injection Vulnerability
  7301. DMXReady Members Area Manager <= 1.2 SQL Injection Vulnerability
  7302. Joomla Component Camelcitydb2 2.2 SQL Injection Vulnerabilities
  7303. Cisco VLAN Trunking Protocol Denial of Service Exploit
  7304. Joomla Component Fantasytournament SQL Injection Vulnerabilities
  7305. phpList <= 2.10.8 Local File Inclusion Vulnerability
  7306. AAA EasyGrid ActiveX 3.51 Remote File Overwrite Exploit
  7307. phosheezy 2.0 Remote Command Execution Exploit
  7308. Oracle Secure Backup 10g exec_qr() Command Injection Vulnerability
  7309. DMXReady PayPal Store Manager <= 1.1 Contents Change Vulnerability
  7310. DMXReady Photo Gallery Manager <= 1.1 Contents Change Vulnerability
  7311. DMXReady Registration Manager <= 1.1 Contents Change Vulnerability
  7312. Oracle TimesTen Remote Format String PoC
  7313. Php Photo Album 0.8b (index.php preview) Local File Inclusion Vulnerability
  7314. DMXReady Secure Document Library <= 1.1 Remote SQL Injection Vuln
  7315. DMXReady BillboardManager <= 1.1 Contents Change Vulnerability
  7316. DMXReady SDK <= 1.1 Remote File Download Vulnerability
  7317. NetSurf Web Browser 1.2 Multiple Remote Vulnerabilities
  7318. DMXReady Billboard Manager <= 1.1 Remote File Upload Vulnerability
  7319. GNUBoard 4.31.03 (08.12.29) Local File Inclusion Vulnerability
  7320. Joomla com_Eventing 1.6.x Blind SQL Injection Exploit
  7321. Ciansoft PDFBuilderX 2.2 ActiveX Arbitrary File Overwrite Exploit
  7322. Joomla Component RD-Autos 1.5.5 (id) SQL Injection Vulnerability
  7323. MKPortal <= 1.2.1 () Multiple Remote Vulnerabilities
  7324. Blue Eye CMS <= 1.0.0 (clanek) Blind SQL Injection Exploit
  7325. Free Bible Search PHP Script (readbible.php) SQL Injection Vulnerability
  7326. Novell Netware 6.5 (ICEbrowser) Remote System DoS Exploit
  7327. eFAQ (Auth Bypass) SQL Injection Vulnerability
  7328. eReservations (Auth Bypass) SQL Injection Vulnerability
  7329. The Walking Club (Auth Bypass) SQL Injection Vulnerability
  7330. Ping IP (Auth Bypass) SQL Injection Vulnerability
  7331. MetaProducts MetaTreeX V 1.5.100 ActiveX File Overwrite Exploit
  7332. RankEm (DD/XSS/CM) Multiple Remote Vulnerabilities
  7333. BlogIt! (SQL/DD/XSS) Multiple Remote Vulnerabilities
  7334. ASP ActionCalendar v.1.3 (Auth Bypass) SQL Injection Vulnerability
  7335. Aj Classifieds - Real Estate v3 Remote Shell Upload Vulnerability
  7336. Aj Classifieds - Personals v3 Remote Shell Upload Vulnerability
  7337. Aj Classifieds - For Sale v3 Remote Shell Upload Vulnerability
  7338. MPlayer 1.0rc2 TwinVQ Stack Buffer Overflow PoC
  7339. Simple PHP Newsletter 1.5 (olang) Local File Inclusion Vulnerabilities
  7340. BibCiter 1.4 Multiple SQL Injection Vulnerabilities
  7341. Joomla Component Gigcal 1.x (id) SQL Injection Vulnerability
  7342. DS-IPN.NET Digital Sales IPN Database Disclosure Vulnerability
  7343. Click&Email (Auth Bypass) SQL Injection Vulnerability
  7344. SCMS v1 (index.php p) Local File Inclusion Vulnerability
  7345. ESPG (Enhanced Simple PHP Gallery) 1.72 File Disclosure Vulnerability
  7346. Fhimage 1.2.1 Remote Index Change Exploit
  7347. Fhimage 1.2.1 Remote Command Execution Exploit (mq = off)
  7348. D-Bus Daemon < 1.2.4 (libdbus) Denial of Service Exploit
  7349. QNX 6.4.0 bitflipped elf binary (id) Kernel Panic Exploit
  7350. Joomla com_pccookbook (recipe_id) Blind SQL Injection Exploit
  7351. SmartVmd ActiveX v 1.1 Remote File Overwrite Exploit
  7352. SmartVmd ActiveX v 1.1 Remote File Deletion Exploit
  7353. Joomla Component com_news SQL Injection Vulnerability
  7354. Gallery Kys 1.0 Admin Password Disclosure / Permanent XSS Vulns
  7355. RCBlog v1.03 Authentication Bypass Vulnerability
  7356. Ninja Blog 4.8 Remote Information Disclosure Vulnerability
  7357. PHPAds 2.0 Multiple Remote Vulnerabilities
  7358. Joomla com_waticketsystem Blind SQL Injection Exploit
  7359. Ninja Blog 4.8 (CSRF/HTML Injection) Vulnerability
  7360. Max.Blog 1.0.6 Arbitrary Delete Post Exploit
  7361. AJ Auction Pro OOPD 2.3 (id) SQL Injection Vulnerability
  7362. LinPHA Photo Gallery 2.0 Remote Command Execution Exploit
  7363. Dodo's Quiz Script 1.1 (dodosquiz.php) Local File Inclusion Vulnerability
  7364. Total Video Player 1.31 (DefaultSkin.ini) Local Stack Overflow Exploit
  7365. Joomla Com BazaarBuilder Shopping Cart v.5.0 SQL Injection Exploit
  7366. Mambo Component SOBI2 RC 2.8.2 (bid) SQL Injection Vulnerability
  7367. Firefox 3.0.5 Status Bar Obfuscation / Clickjacking
  7368. Browser3D 3.5 (.sfs File) Local Stack Overflow Exploit (c)
  7369. Sad Raven's Click Counter 1.0 passwd.dat Disclosure Exploit
  7370. AXIS 70U Network Document Server Privilege Escalation/XSS
  7371. Joomla com_pcchess (game_id) Blind SQL Injection Exploit
  7372. Joomla Component beamospetition 1.0.12 SQL Injection / XSS
  7373. Browser3D 3.5 (.sfs File) Local Stack Overflow Exploit
  7374. OwnRS Blog 1.2 (autor.php) SQL Injection Vulnerability
  7375. asp-project 1.0 Insecure Cookie Method Vulnerability
  7376. Pardal CMS <= 0.2.0 Blind SQL Injection Exploit
  7377. FTPShell Server 4.3 (licence key) Remote Buffer Overflow PoC
  7378. EleCard MPEG PLAYER (.m3u file) Local Stack Overflow Exploit
  7379. MediaMonkey 3.0.6 (.m3u file) Local Buffer Overflow PoC
  7380. PostgreSQL 8.2/8.3/8.4 UDF for Command Execution
  7381. MySQL 4/5/6 UDF for Command Execution
  7382. Merak Media Player 3.2 m3u file Local Buffer Overflow PoC
  7383. Siemens ADSL SL2-141 CSRF Exploit
  7384. MemHT Portal <= 4.0.1 (avatar) Remote Code Execution Exploit
  7385. Mambo com_sim v0.8 Blind SQL Injection Exploit
  7386. Web-Calendar Lite 1.0 (Auth Bypass) SQL Injection Vulnerability
  7387. Flax Article Manager 1.1 (cat_id) SQL Injection Vulnerability
  7388. OpenGoo 1.1 (script_class) Local File Inclusion Vulnerability
  7389. EPOLL SYSTEM 3.1 (password.dat) Disclosure Exploit
  7390. SunOS Release 5.11 Version snv_101b Remote IPV6 Crash Exploit
  7391. Simple Machines Forum <= 1.1.7 XSRF/XSS/Package Upload Vuln
  7392. ITLPoll 2.7 Stable2 (index.php id) Blind SQL Injection Exploit
  7393. FlexCell Grid Control 5.6.9 Remote File Overwrite Exploit
  7394. MW6 Barcode ActiveX (Barcode.dll) Reamote Heap Overflow PoC
  7395. NCTVideoStudio ActiveX DLLs 1.6 Insecure Method File Creation Exploit
  7396. E-ShopSystem Auth Bypass / SQL Injection Multiple Vulnerabilities
  7397. Script Toko Online 5.01 (shop_display_products.php) SQL Injection Vuln
  7398. SHOP-INET v4 (show_cat2.php grid) SQL Injection Vulnerability
  7399. WinFTP 2.3.0 (LIST) Remote Buffer Overflow Exploit (post-auth)
  7400. PHP-CMS 1 (username) Blind SQL Injection Exploit
  7401. Wazzum Dating Software (userid) SQL Injection Vulnerability
  7402. Groone's GLink Organizer (index.php cat) SQL Injection Vulnerability
  7403. SiteXS <= 0.1.1 (type) Local File Inclusion Exploit
  7404. ClickAuction (Auth Bypass) Remote SQL Injection Vulnerability
  7405. Joomla com_flashmagazinedeluxe (mag_id) SQL Injection Vulnerability
  7406. NCTVideoStudio ActiveX DLLs Version 1.6 Remote Heap Overflow PoC
  7407. OpenX 2.6.3 (MAX_type) Local File Inclusion Vulnerability
  7408. Flax Article Manager 1.1 Remote PHP Script Upload Vulnerability
  7409. Max.Blog <= 1.0.6 (show_post.php) SQL Injection Vulnerability
  7410. Pixie CMS 1.0 Multiple Local File Inclusion Vulnerabilities
  7411. Zinf Audio Player 2.2.1 (PLS File) Stack Overflow PoC
  7412. Zinf Audio Player 2.2.1 (PLS File) Local Buffer Overflow Exploit (univ)
  7413. Zinf Audio Player 2.2.1 (M3U FILE) Local Heap Overflow PoC
  7414. Zinf Audio Player 2.2.1 (gqmpeg File) Buffer Overflow PoC
  7415. Community CMS <= 0.4 (/index.php id) Blind SQL Injection Exploit
  7416. GameScript 4.6 (XSS/SQL/LFI) Multiple Remote Vulnerabilities
  7417. Chipmunk Blog (Auth Bypass) Add Admin Exploit
  7418. Gazelle CMS (template) Local File Inclusion Vulnerability
  7419. Lore 1.5.6 (article.php) Blind SQL Injection Exploit
  7420. phplist 2.10.x (RCE by environ inclusion) Local File Inclusion Exploit
  7421. Max.Blog <= 1.0.6 (submit_post.php) SQL Injection Vulnerability
  7422. Max.Blog <= 1.0.6 (offline_auth.php) Offline Authentication Bypass
  7423. Social Engine (category_id) SQL Injection Vulnerability
  7424. SmartSiteCMS 1.0 (articles.php var) Blind SQL Injection Exploit
  7425. Amaya Web Editor XML and HTML parser Vulnerabilities
  7426. Google Chrome 1.0.154.43 ClickJacking Vulnerability (2009-01-23)
  7427. Thomson mp3PRO Player/Encoder (M3U File) Crash PoC
  7428. Personal Site Manager <= 0.3 Remote Command Execution Exploit
  7429. Amaya Web Editor <= 11.0 Remote Buffer Overflow PoC
  7430. Star Articles 6.0 (admin.manage) Remote Contents Change Vulnerability
  7431. Coppermine Photo Gallery 1.4.19 Remote PHP File Upload Vulnerability
  7432. WOW - Web On Windows ActiveX Control 2 Remote Code Execution
  7433. GLPI v 0.71.3 Multiple Remote SQL Injection VUlnerabilities
  7434. Internet Explorer 7 ClickJacking Vulnerability (2009-01-23)
  7435. WFTPD Explorer Pro 1.0 Remote Heap Overflow Exploit
  7436. Motorola Wimax modem CPEi300 (FD/XSS) Multiple Vulnerabilities
  7437. NetArtMedia Car Portal 1.0 (Auth Bypass) SQL Injection Vulnerability
  7438. PLE CMS 1.0 beta 4.2 (login.php school) Blind SQL Injection Exploit
  7439. ManageEngine Firewall Analyzer 5 XSRF/XSS Vulnerability
  7440. Profense Web Application Firewall 2.6.2 XSRF/XSS Vulnerabilities
  7441. D-Link VoIP Phone Adapter XSS/XSRF Remote Firmware Overwrite
  7442. Zoom VoIP Phone Adapater ATA1+1 1.2.5 XSRF Exploit
  7443. Pligg 9.9.5 XSRF Protection Bypass and Captcha Bypass
  7444. Total Video Player 1.3.7 (.m3u) Local Buffer Overflow Exploit
  7445. SalesCart (Auth Bypass) SQL Injection Vulnerability
  7446. ReVou Twitter Clone (XSS/SQL) Multiple Remote Vulnerabilities
  7447. Amaya Web Editor 11 Remote SEH Overwrite Exploit
  7448. GNUBoard 4.31.04 (09.01.30) Multiple Local/Remote Vulnerabilities
  7449. Synactis All_IN_THE_BOX ActiveX v3 Null byte File Overwrite Vuln
  7450. GOM Player 2.0.12 (.PLS) Universal Buffer Overflow Exploit
  7451. BPAutoSales 1.0.1 (XSS/SQL) Multiple Remote Vulnerabilities
  7452. Orca 2.0.2 (Topic) Remote XSS Vulnerability
  7453. SkaLinks 1.5 (Auth Bypass) SQL Injection Vulnerability
  7454. eVision CMS <= 2.0 (field) SQL Injection Vulnerability
  7455. Spider Player 2.3.9.5 (asx File) off by one Crash Exploit
  7456. Google Chrome 1.0.154.46 (ChromeHTML://) Parameter Injection PoC
  7457. SMA-DB 0.3.12 (RFI/XSS) Multiple Remote Vulnerabilities
  7458. Flatnux 2009-01-27 (Job fields) XSS/Iframe Injection PoC
  7459. AJA Portal 1.2 Local File Inclusion Vulnerabilities (win)
  7460. WholeHogSoftware Ware Support (Auth Bypass) SQL Injection Vuln
  7461. WholeHogSoftware Password Protect (Auth Bypass) SQL Injection Vuln
  7462. Elecard AVC HD PLAYER (m3u/xpl file) Local Stack Overflow PoC
  7463. RealVNC 4.1.2 (vncviewer.exe) RFB Protocol Remote Code Execution PoC
  7464. phpBLASTER 1.0 RC1 (blaster_user) Blind SQL Injection Exploit
  7465. CMS Mini <= 0.2.2 Remote Command Execution Exploit
  7466. sourdough 0.3.5 Remote File Inclusion Vulnerability
  7467. eVision CMS 2.0 Remote Code Execution Exploit
  7468. phpslash <= 0.8.1.1 Remote Code Execution Exploit
  7469. OpenHelpDesk 1.0.100 eval() Code Execution Exploit (meta)
  7470. CMS from Scratch <= 1.9.1 (fckeditor) Remote File Upload Exploit
  7471. WholeHogSoftware Ware Support Insecure Cookie Handling Vulnerability
  7472. WholeHogSoftware Password Protect Insecure Cookie Handling Vuln
  7473. ClickCart 6.0 (Auth Bypass) Remote SQL Injection Vulnerability
  7474. Groone GLinks 2.1 Remote File Inclusion Vulnerability
  7475. Groone's Guestbook 2.0 Remote File Inclusion Vulnerability
  7476. Online Grades 3.2.4 (Auth Bypass) SQL Injection Vulnerability
  7477. Free Download Manager <= 3.0 Build 844 .torrent BOF Exploit
  7478. Euphonics Audio Player v1.0 (.pls) Local Buffer Overflow Exploit
  7479. Simple Machines Forums (BBCode) Cookie Stealing Vulnerability
  7480. AJA Modules Rapidshare 1.0.0 Remote Shell Upload Vulnerability
  7481. WEBalbum 2.4b (photo.php id) Blind SQL Injection Exploit
  7482. Hex Workshop v6 (ColorMap files .cmap) Invalid Memory Reference PoC
  7483. MyDesing Sayac 2.0 (Auth Bypass) SQL Injection Vulnerability
  7484. 4Site CMS <= 2.6 Multiple Remote SQL Injection Vulnerabilities
  7485. Technote 7.2 Remote File Inclusion Vulnerability
  7486. NaviCopa webserver 3.0.1 (BOF/SD) Multiple Remote Vulnerabilities
  7487. TxtBlog 1.0 Alpha Remote Command Execution Exploit
  7488. DreamPics Photo/Video Gallery Blind SQL Injection Exploit
  7489. Flatnux 2009-01-27 Remote File Inclusion Vulnerability
  7490. Openfiler 2.3 (Auth Bypass) Remote Password Change Exploit
  7491. Euphonics Audio Player 1.0 (.pls) Universal Local Buffer Overflow Exploit
  7492. Euphonics Audio Player 1.0 (.pls) Local Buffer Overflow Exploit (xp/sp3)
  7493. BlazeVideo HDTV Player <= 3.5 PLF Playlist File Remote Overflow Exploit
  7494. Jaws 0.8.8 Multiple Local File Inclusion Vulnerabilities
  7495. Syntax Desktop 2.7 (synTarget) Local File Inclusion Vulnerability
  7496. rgboard v4 5p1 (07.07.27) Multiple Remote Vulnerabilities
  7497. GRBoard 1.8 Multiple Remote File Inclusion Vulnerabilities
  7498. PHPbbBook 1.3 (bbcode.php l) Local File Inclusion Exploit
  7499. Power System Of Article Management (DD/XSS) Vulnerabilities
  7500. Team 1.x (DD/XSS) Multiple Remote Vulnerabilities
  7501. YapBB <= 1.2 (forumID) Blind SQL Injection Exploit
  7502. Novell GroupWise <= 8.0 Malformed RCPT command Off-by-one Exploit
  7503. Free Download Manager 2.5/3.0 (Authorization) Stack BOF PoC
  7504. GR Blog 1.1.4 (Upload/Bypass) Multiple Remote Vulnerabilities
  7505. Amaya Web Browser 11 (bdo tag) Remote Stack Overflow Exploit (xp)
  7506. Amaya Web Browser 11 (bdo tag) Remote Stack Overflow Exploit (vista)
  7507. UltraVNC/TightVNC Multiple VNC Clients Multiple Integer Overflow PoC
  7508. GR Note 0.94 beta (Auth Bypass) Remote Database Backup Vulnerability
  7509. ClearBudget 0.6.1 Insecure Cookie Handling / LFI Vulnerabilities
  7510. Kipper 2.01 (XSS/LFI/DD) Multiple Vulnerabilities
  7511. dBpowerAMP Audio Player 2 .PLS File Local Buffer Overflow Exploit
  7512. FeedMon 2.7.0.0 outline Tag Buffer Overflow Exploit PoC
  7513. ClearBudget 0.6.1 (Misspelled htaccess) Insecure DD Vulnerability
  7514. txtBB <= 1.0 RC3 HTML/JS Injection - Add Admin Privileges Exploit
  7515. WikkiTikkiTavi 1.11 Remote PHP File Upload Vulnerability
  7516. Simple PHP News 1.0 Remote Command Execution Exploit
  7517. ZeroBoard4 pl8 (07.12.17) Multiple Remote Vulnerabilities
  7518. Mailist 3.0 Insecure Backup/Local File Inclusion Vulnerabilities
  7519. CafeEngine (index.php catid) Remote SQL Injection Vulnerability
  7520. 1024 CMS <= 1.4.4 Remote Command Execution with RFI (c99) Exploit
  7521. SilverNews 2.04 (Auth Bypass/LFI/RCE) Multiple Vulnerabilities
  7522. phpYabs 0.1.2 (Azione) Remote File Inclusion Vulnerability
  7523. Traidnt UP Version 1.0 Remote File Upload Vulnerability
  7524. IF-CMS <= 2.0 (frame.php id) Blind SQL Injection Exploit
  7525. Netgear embedded Linux for the SSL312 router DOS Vulnerability
  7526. w3bcms <= v3.5.0 Multiple Remote Vulnerabilities Exploit
  7527. FeedDemon <=2.7 OPML Outline Tag Buffer Overflow Exploit
  7528. BusinessSpace <= 1.2 (id) Remote SQL Injection Vulnerability
  7529. A Better Member-Based ASP Photo Gallery (entry) SQL Injection Vuln
  7530. Nokia N95-8 (JPG File) Remote Crash PoC
  7531. PHP Director <= 0.21 Remote Command Execution Exploit
  7532. Hedgehog-CMS <= 1.21 Remote Command Execution Exploit
  7533. AdaptCMS Lite 1.4 (XSS/RFI) Multiple Remote Vulnerabilities
  7534. SnippetMaster Webpage Editor 2,2,2 (RFI/XSS) Multiple Vulnerabilities
  7535. FlexCMS (catId) Remote SQL Injection Vulnerability
  7536. ZeroBoardXE 1.1.5 (09.01.22) XSS Vulnerability
  7537. Yet Another NOCC <= 0.1.0 Local File Inclusion Vulnerability
  7538. Squid < 3.1 5 HTTP Version Number Parsing Denial of Service Exploit
  7539. 3Com OfficeConnect Wireless Cable/DSL Router Authentication Bypass
  7540. ZeroShell <= 1.0beta11 Remote Code Execution Vulnerability
  7541. TightVNC Authentication Failure Integer Overflow PoC
  7542. webframe 0.76 Multiple File Inclusion Vulnerabilities
  7543. WB News 2.1.1 config[installdir] Remote File Inclusion Vulnerability
  7544. Gaeste 1.6 (gastbuch.php) Remote File Disclosure Vulnerability
  7545. Hedgehog-CMS 1.21 (LFI) Remote Command Execution Exploit
  7546. Thyme <= 1.3 (export_to) Local File Inclusion Vulnerability
  7547. Papoo CMS 3.x (pfadhier) Local File Inclusion Vulnerability
  7548. q-news 2.0 Remote Command Execution Exploit
  7549. Potato News 1.0.0 (user) Local File Inclusion Vulnerability
  7550. AuthPhp 1.0 (Auth Bypass) SQL Injection Vulnerability
  7551. Mynews 0_10 (Auth Bypass) SQL Injection Vulnerability
  7552. BlueBird Pre-Release (Auth Bypass) SQL Injection Vulnerability
  7553. Fluorine CMS 0.1 rc 1 FD / SQL Injection Command Execution Exploit
  7554. ProFTPd with mod_mysql Authentication Bypass Vulnerability
  7555. TYPO3 < 4.0.12/4.1.10/4.2.6 (jumpUrl) Remote File Disclosure Exploit
  7556. SkaDate Online 7 Remote Shell Upload Vulnerability
  7557. Graugon Gallery 1.0 (XSS/SQL/Cookie Bypass) Remote Vulnerabilities
  7558. GeoVision Digital Video Surveillance System (geohttpserver) DT Vuln
  7559. Dacio's CMS 1.08 (XSS/SQL/DD) Multiple Remote Vulnerabilities
  7560. Bloggeruniverse v2Beta (editcomments.php id) SQL Injection Exploit
  7561. Den Dating 9.01(searchmatch.php) SQL Injection Vulnerability
  7562. InselPhoto 1.1 (query) Remote SQL Injection Exploit
  7563. PHP Krazy Image Host Script 1.01 (viewer.php id) SQL Injection Vuln
  7564. Free Joke Script 1.0 Auth Bypass / SQL Injection Vulnerability
  7565. Baran CMS 1.0 Arbitrary ASP File Upload/DB/SQL/XSS/CM Vulns
  7566. IdeaCart 0.02 (LFI/SQL) Multiple Remote Vulnerabilities
  7567. Vlinks 1.1.6 (id) Remote SQL Injection Vulnerability
  7568. Nokia N95-8 browser (setAttributeNode) Method Crash Exploit
  7569. ea-gBook 0.1 Remote Command Execution with RFI (c99) Exploit
  7570. BlogWrite 0.91 Remote FD / SQL Injection Exploit
  7571. CmsFaethon 2.2.0 (info.php item) SQL Command Injection Exploit
  7572. FreeBSD 7.0-RELEASE Telnet Daemon Local Privilege Escalation Exploit
  7573. InselPhoto 1.1 Persistent XSS Vulnerability
  7574. TPTEST <= 3.1.7 Stack Buffer Overflow PoC
  7575. GeoVision LiveX_v8200 ActiveX (LIVEX_~1.OCX) File Corruption PoC
  7576. Falt4 CMS RC4 (fckeditor) Arbitrary File Upload Exploit
  7577. simplePMS CMS 0.1.3a LFI / Remote Command Execution Exploit
  7578. PowerMovieList 0.14b (SQL/XSS) Multiple Remote Vulnerabilities
  7579. NovaBoard 1.0.0 Multiple Remote Vulnerabilities
  7580. MemHT Portal <= 4.0.1 (pvtmsg) Delete All Private Messages Exploit
  7581. SAS Hotel Management System (myhotel_info.asp) SQL Injection Vuln
  7582. YACS CMS 8.11 update_trailer.php Remote File Inclusion Vulnerability
  7583. Enomaly ECP / Enomalism < 2.2.1 Multiple Local Vulnerabilities
  7584. RavenNuke 2.3.0 Multiple Remote Vulnerabilities
  7585. Grestul 1.x Auth Bypass by Cookie SQL Injection Vulnerability
  7586. SAS Hotel Management System Remote Shell Upload Vulnerability
  7587. S-Cms 1.1 Stable Insecure Cookie Handling / Mass Page Delete Vulns
  7588. pHNews Alpha 1 (header.php mod) SQL Injection Vulnerability
  7589. pHNews Alpha 1 (genbackup.php) Database Disclosure Vulnerability
  7590. Oracle 10g MDSYS.SDO_TOPO_DROP_FTBL SQL Injection Exploit (meta)
  7591. Firepack (admin/ref.php) Remote Code Execution Exploit
  7592. smNews 1.0 Auth Bypass/Column Truncation Vulnerabilities
  7593. MS Internet Explorer 7 Memory Corruption PoC (MS09-002)
  7594. MS Internet Explorer 7 Memory Corruption Exploit (MS09-002) (xp sp2)
  7595. MS Internet Explorer 7 Memory Corruption Exploit (MS09-002) (py)
  7596. MS Internet Explorer 7 Memory Corruption PoC (MS09-002) (win2k3sp2)
  7597. phpBB 3 (autopost bot mod <= 0.1.3) Remote File Include Vulnerability
  7598. Got All Media 7.0.0.3 (t00t) Remote Denial of Service Exploit
  7599. i-dreams Mailer 1.2 Final (admin.dat) File Disclosure Vulnerability
  7600. i-dreams GB 5.4 Final (admin.dat) File Disclosure Vulnerability
  7601. i-dreams GB Server (admin.dat) File Disclosure Vulnerability
  7602. Osmodia Bulletin Board 1.x (admin.txt) File Disclosure Vulnerability
  7603. Graugon Forum v1 (id) SQL Command Injection Exploit
  7604. Multiple PDF Readers JBIG2 Local Buffer Overflow PoC
  7605. Mozilla Firefox 3.0.6 (BODY onload) Remote Crash Exploit
  7606. zFeeder 1.6 (admin.php) No Authentication Vulnerability
  7607. pPIM 1.01 (notes.php id) Remote Command Execution Exploit
  7608. Free Arcade Script 1.0 LFI Command Execution Exploit
  7609. Pyrophobia 2.1.3.1 LFI Command Execution Exploit
  7610. Optus/Huawei E960 HSDPA Router SMS XSS Attack
  7611. MLdonkey <= 2.9.7 HTTP DOUBLE SLASH Arbitrary File Disclosure Vuln
  7612. taifajobs <= 1.0 (jobid) Remote SQL Injection Vulnerability
  7613. Adobe Acrobat Reader JBIG2 Local Buffer Overflow PoC #2 0day
  7614. MDPro Module My_eGallery (pid) Remote SQL Injection Exploit
  7615. XGuestBook 2.0 (Auth Bypass) SQL Injection Vulnerability
  7616. Counter Strike Source ManiAdminPlugin 1.x Remote Buffer Overflow PoC
  7617. Qwerty CMS (id) Remote SQL Injection Vulnerability
  7618. pPIM 1.0 Multiple Remote Vulnerabilities
  7619. Netgear WGR614v9 Wireless Router Get Request Denial of Service Vuln
  7620. PenPal 2.0 (Auth Bypass) Remote SQL Injection Vulnerability
  7621. Apple MACOS X xnu <= 1228.x Local Kernel Memory Disclosure Exploit
  7622. SkyPortal Classifieds System 0.12 Contents Change Vulnerability
  7623. SkyPortal Picture Manager 0.11 Contents Change Vulnerability
  7624. SkyPortal WebLinks 0.12 Contents Change Vulnerability
  7625. Golabi CMS Remote File Inclusion Vulnerability
  7626. DesignerfreeSolutions Newsletter Manager Pro Auth Bypass Vuln
  7627. Coppermine Photo Gallery <= 1.4.20 (BBCode IMG) Privilege Escalation
  7628. Coppermine Photo Gallery <= 1.4.20 (IMG) Privilege Escalation Exploit
  7629. BannerManager 0.81 (Auth Bypass) SQL Injection Vulnerability
  7630. POP Peeper 3.4.0.0 UIDL Remote Buffer Overflow Exploit (SEH)
  7631. Orbit <= 2.8.4 Long Hostname Remote Buffer Overflow Exploit
  7632. SkyPortal Downloads Manager v1.1 Remote Contents Change Vuln
  7633. Hex Workshop v6 (.HEX File) Local Code Execution Exploit
  7634. Irokez BLog 0.7.3.2 (XSS/RFI/BSQL) Multiple Remote Vulnerabilities
  7635. Demium CMS 0.2.1B Multiple Vulnerabilities and Exploit
  7636. HTC Touch vCard over IP Denial of Service Exploit
  7637. Merak Media PLayer 3.2 m3u File Local Buffer Overflow Exploit (SEH)
  7638. BlogMan 0.45 Multiple Remote Vulnerabilities
  7639. EZ-Blog 1b Delete All Posts / SQL Injection Vulnerabilities
  7640. Novell eDirectory iMonitor (Accept-Language) Request BOF PoC
  7641. Document Library 1.0.1 Arbitrary Change Admin Vulnerability
  7642. Digital Interchange Calendar 5.7.13 Contents Change Vulnerability
  7643. Access2asp imageLibrary Arbitrary ASP Shell Upload Vulnerability
  7644. Graugon PHP Article Publisher 1.0 (SQL/CH) Multiple Remote Vulns
  7645. Joomla com_digistore (pid) Blind SQL Injection Exploit
  7646. Media Commands (M3U,M3l,TXT,LRC Files) Local Heap Overflow PoC
  7647. Joomla/Mambo Component eXtplorer Code Execution Vulnerability
  7648. Media Commands (m3u File) Local SEH Overwrite Exploit
  7649. VUplayer 2.49 .CUE File Local Buffer Overflow Exploit
  7650. RitsBlog 0.4.2 (AB/XSS) Multiple Remote Vulnerabilities
  7651. Zabbix 1.6.2 Frontend Multiple Vulnerabilities
  7652. BlindBlog 1.3.1 (SQL/AB/LFI) Multiple Remote Vulnerabilities
  7653. EFS Easy Chat Server Authentication Request BOF Exploit (SEH)
  7654. Sopcast SopCore Control (sopocx.ocx) Command Execution Exploit
  7655. Imera ImeraIEPlugin ActiveX Control Remote Code Execution Exploit
  7656. ghostscripter Amazon Shop (XSS/DT/RFI) Multiple Vulnerabilities
  7657. Yaws < 1.80 (multiple headers) Remote Denial of Service Exploit
  7658. EFS Easy Chat Server (XSRF) Change Admin Pass Vulnerability
  7659. NovaBoard <= 1.0.1 (message) Persistent XSS Vulnerability
  7660. Jogjacamp JProfile Gold (id_news) Remote SQL Injection Vulnerability
  7661. MS Internet Explorer 7 Memory Corruption Exploit (MS09-002) (fast)
  7662. EFS Easy Chat Server Authentication Request Buffer Overflow Exploit (pl)
  7663. Easy File Sharing Web Server 4.8 File Disclosure Vulnerability
  7664. Easy Web Password 1.2 Local Heap Memory Consumption PoC
  7665. Winamp <= 5.541 Skin Universal Buffer Overflow Exploit
  7666. Media Commands .m3l File Local Buffer Overflow Exploit
  7667. SupportSoft DNA Editor Module (dnaedit.dll) Code Execution Exploit
  7668. CelerBB 0.0.2 Multiple Remote Vulnerabilities
  7669. Media Commands (m3u File) Universal SEH Overwrite Exploit
  7670. Multiple Vendors libc:fts_*() Local Denial of Service Exploit
  7671. Joomla com_ijoomla_archive Blind SQL Injection Exploit
  7672. Blue Eye CMS <= 1.0.0 Remote Cookie SQL Injection Vulnerability
  7673. Wili-CMS 0.4.0 (RFI/LFI/AB) Multiple Remote Vulnerabilities
  7674. isiAJAX v1 (praises.php id) Remote SQL Injection Vulnerability
  7675. OneOrZero Helpdesk <= 1.6.5.7 Local File Inclusion Vulnerability
  7676. nForum 1.5 Multiple Remote SQL Injection Vulnerabilities
  7677. Nokia Multimedia Player 1.0 (playlist) Universal SEH Overwrite Exploit
  7678. CMS S.Builder <= 3.7 Remote File Inclusion Vulnerability
  7679. Belkin BullDog Plus UPS-Service Buffer Overflow Exploit
  7680. Realtek Sound Manager 1.15.0.0 PlayList SEH Overwrite Exploit
  7681. mks_vir 9b < 1.2.0.0b297 (mksmonen.sys) Privilege Escalation Exploit
  7682. EO Video v1.36 PlayList SEH Overwrite Exploit
  7683. RadASM 2.2.1.5 (.RAP File) Local Stack Overflow Exploit
  7684. MediaCoder 0.6.2.4275 (m3u File) Universal Stack Overflow Exploit
  7685. MediaCoder 0.6.2.4275 Universal Buffer Overflow Exploit (SEH)
  7686. eZip Wizard 3.0 Local Stack Buffer Overflow PoC (SEH)
  7687. PHP Director <= 0.21 (sql into outfile) eval() Injection Exploit
  7688. PHPRecipeBook 2.24 (base_id) Remote SQL Injection Vulnerability
  7689. Woltlab Burning Board 3.0.x Multiple Remote Vulnerabilities
  7690. CS-Cart 2.0.0 Beta 3 (product_id) SQL Injection Vulnerability
  7691. phpCommunity 2.1.8 (SQL/DT/XSS) Multiple Vulnerabilities
  7692. PHP-Fusion Mod Book Panel (bookid) SQL Injection Vulnerability
  7693. Addonics NAS Adapter Post-Auth Denial of Service Exploit
  7694. CMS WEBjump! Multiple SQL Injection Vulnerabilities
  7695. VUPlayer <= 2.49 .cue File Universal Buffer Overflow Exploit
  7696. IBM Director <= 5.20.3su2 CIM Server Remote DoS Vulnerability
  7697. NextApp Echo < 2.1.1 XML Injection Vulnerability
  7698. RainbowPlayer 0.91 (playlist) Universal SEH Overwrite Exploit
  7699. PHP-Fusion Mod Book Panel (course_id) SQL Injection Vulnerability
  7700. WeBid <= 0.7.3 RC9 Multiple Remote File Inclusion Vulnerabilities
  7701. Wordpress MU < 2.7 'HOST' HTTP Header XSS Vulnerability
  7702. Joomla Djice Shoutbox 1.0 Permanent XSS Vulnerability
  7703. RoomPHPlanning <= 1.6 (userform.php) Create Admin User Exploit
  7704. GuildFTPd FTP Server 0.999.14 Remote Delete Files Exploit
  7705. Foxit Reader 3.0 (<= Build 1301) PDF Buffer Overflow Exploit (Univ.)
  7706. Traidnt up 2.0 (Cookie) Add Extension By Pass Exploit
  7707. POP Peeper 3.4.0.0 Date Remote Buffer Overflow Exploit
  7708. PhpMySport 1.4 (XSS/SQL) Multiple Remote Vulnerabilities
  7709. JDKChat 1.5 Remote Integer Overflow PoC
  7710. GeoVision LiveAudio ActiveX Remote Freed-Memory Access Exploit
  7711. YAP 1.1.1 (index.php page) Local File Inclusion Vulnerability
  7712. Morovia Barcode ActiveX 3.6.2 (MrvBarCd.dll) Insecure Method Exploit
  7713. Kim Websites 1.0 (Auth Bypass) SQL Injection Vulnerability
  7714. UBB.threads 5.5.1 (message) Remote SQL Injection Vulnerability
  7715. Serv-U 7.4.0.1 (MKD) Create Arbitrary Directories Exploit
  7716. Serv-U 7.4.0.1 (SMNT) Denial of Service Exploit (post auth)
  7717. VLC 0.9.8a Web UI (input) Remote Denial of Service Exploit
  7718. Rosoft Media Player 4.2.1 Local Buffer Overflow Exploit (multi target)
  7719. PPLive <= 1.9.21 (/LoadModule) URI Handlers Argument Injection Vuln
  7720. Beerwin's PHPLinkAdmin 1.0 RFI/SQL Injection Vulnerabilities
  7721. YAP 1.1.1 Blind SQL Injection/SQL Injection Vulnerabilities
  7722. Mozilla Firefox 3.0.7 OnbeforeUnLoad DesignMode Dereference Crash
  7723. phpComasy 0.9.1 (entry_id) SQL Injection Vulnerability
  7724. WinAsm Studio 5.1.5.0 Local Heap Overflow PoC
  7725. Gretech GOM Encoder 1.0.0.11 (Subtitle File) Buffer Overflow PoC
  7726. PHPRunner 4.2 (SearchOption) Blind SQL Injection Vulnerability
  7727. Talkative IRC 0.4.4.16 Remote Stack Overflow Exploit (SEH)
  7728. GDL 4.x (node) Remote SQL Injection Vulnerability
  7729. Wordpress Plugin fMoblog 2.1 (id) SQL Injection Vulnerability
  7730. Mega File Hosting Script 1.2 (cross.php url) RFI Vulnerability
  7731. CDex 1.70b2 (.ogg) Local Buffer Overflow Exploit (xp/ sp3)
  7732. Chasys Media Player 1.1 (.pls) Local Buffer Overflow PoC (SEH)
  7733. Chasys Media Player 1.1 (.pls) Local Stack overflow Exploit
  7734. Chasys Media Player 1.1 (.pls) Stack Overflow Exploit #2
  7735. Chasys Media Player 1.1 (.m3u) Stack Overflow Exploit
  7736. Icarus 2.0 (.PGN File) Local Stack Overflow Exploit (SEH)
  7737. Facil-CMS 0.1RC2 Multiple Remote Vulnerabilities
  7738. Advanced Image Hosting (AIH) 2.3 (gal) Blind SQL Injection Vuln
  7739. Pivot 1.40.6 Remote Arbitrary File Deletion Vulnerability
  7740. DeluxeBB <= 1.3 (qorder) Remote SQL Injection Vulnerability
  7741. ModSecurity < 2.5.9 Remote Denial of Service Vulnerability
  7742. Chasys Media Player 1.1 .cue File Stack Overflow Exploit
  7743. Bloginator v1a (Cookie Bypass/SQL) Multiple Remote Vulnerabilities
  7744. Bloginator v1a SQL Command Injection via Cookie Bypass Exploit
  7745. SW-HTTPD Server 0.x Remote Denial of Service Exploit
  7746. Chasys Media Player (.lst playlist) Local Buffer Overflow Exploit
  7747. Hannon Hill Cascade Server Command Execution Vulnerability (post auth)
  7748. POP Peeper 3.4.0.0 (From) Remote Buffer Overflow Exploit (SEH)
  7749. BS.Player <= 2.34 Build 980 (.bsl) Local Buffer Overflow Exploit (SEH)
  7750. CloneCD/DVD (ElbyCDIO.sys < 6.0.3.2) Local Privilege Escalation Exploit
  7751. BS.Player 2.34 (.bsl) Universal SEH Overwrite Exploit
  7752. Pixie CMS (XSS/SQL) Multiple Remote Vulnerabilities
  7753. Racer 0.5.3b5 Remote Stack Buffer Overflow Exploit
  7754. WBB3 rGallery 1.2.3 (UserGallery) Blind SQL Injection Exploit
  7755. SuperNews 1.5 (valor.php noticia) SQL Injection Vulnerability
  7756. Sysax Multi Server 4.3 Remote Arbitrary Delete Files Exploit
  7757. Orbit Downloader 2.8.7 Arbitrary File Deletion Vulnerability
  7758. X-BLC 0.2.0 (get_read.php section) SQL Injection Vulnerability
  7759. FreeBSD 7.x (Dumping Environment) Local Kernel Panic Exploit
  7760. Gigaset SE461 WiMAX router Remote Denial of Service Vulns
  7761. FreeBSD 7.0/7.1 (ktimer) Local Kernel Root Exploit
  7762. Mac OS X xnu <= 1228.3.13 (zip-notify) Remote Kernel Overflow PoC
  7763. Mac OS X xnu <= 1228.3.13 (macfsstat) Local Kernel Memory Leak/DoS
  7764. Mac OS X xnu <= 1228.3.13 (profil) Kernel Memory Leak/DoS PoC
  7765. Mac OS X xnu <=1228.x (vfssysctl) Local Kernel DoS PoC
  7766. Mac OS X xnu <= 1228.x (hfs-fcntl) Local Kernel Root Exploit
  7767. Zinf Audio Player 2.2.1 (.pls) Universal Seh Overwrite Exploit
  7768. PHPizabi v0.848b C1 HFP1-3 Remote Command Execution Exploit
  7769. Rittal CMC-TC Processing Unit II Multiple Vulnerabilities
  7770. eXeScope 6.50 Local Buffer Overflow Exploit
  7771. Pluck CMS 4.6.1 (module_pages_site.php post) LFI Exploit
  7772. Codice CMS 2 Remote SQL Command Execution Exploit
  7773. Telnet-Ftp Service Server v1.x Multiple Vulnerabilities (post auth)
  7774. POP Peeper 3.4.0.0 .eml file Universal SEH Overwrite Exploit
  7775. POP Peeper 3.4.0.0 .html file Universal SEH Overwrite Exploit
  7776. Syzygy CMS 0.3 LFI/SQL Command Injection Exploit
  7777. Free Arcade Script 1.0 Auth Bypass (SQL) / Upload Shell Vulnerabilities
  7778. Jinzora Media Jukebox <= 2.8 (name) Local File Inclusion Vulnerability
  7779. PHPizabi v0.848b C1 HFP1 Remote Privilege Escalation Vulnerability
  7780. Adobe Acrobat Reader JBIG2 Universal Exploit Bind Shell port 5500
  7781. Microsoft GdiPlus EMF GpFont.SetData Integer Overflow PoC
  7782. SurfMyTV Script 1.0 (view.php id) SQL Injection Vulnerability
  7783. Femitter FTP Server 1.x Multiple Vulnerabilities (post auth)
  7784. IncrediMail 5.86 (XSS) Script Execution Exploit
  7785. Mozilla Firefox XSL Parsing Remote Memory Corruption PoC 0day
  7786. PHPizabi v0.848b C1 HFP1-3 Remote Arbitrary File Upload Exploit
  7787. WeBid 0.7.3 RC9 (upldgallery.php) Remote File Upload Vulnerability
  7788. PhotoStand 1.2.0 Remote Command Execution Exploit
  7789. blogplus 1.0 Multiple Local File Inclusion Vulnerabilities
  7790. Acute Control Panel 1.0.0 (SQL/RFI) Multiple Remote Vulnerabilities
  7791. Simply Classified 0.2 (category_id) SQL Injection Vulnerability
  7792. Free PHP Petition Signing Script (Auth Bypass) SQL Injection Vuln
  7793. XM Easy Personal FTP Server <= 5.7.0 (NLST) DoS Exploit
  7794. FreeSSHd 1.2.1 (rename) Remote Buffer Overflow Exploit (SEH)
  7795. Arcadwy Arcade Script (username) Static XSS Vulnerability
  7796. Moodle < 1.6.9/1.7.7/1.8.9/1.9.5 File Disclosure Vulnerability
  7797. My Simple Forum 7.1 (LFI) Remote Command Execution Exploit
  7798. Abee Chm Maker 1.9.5 (CMP File) Stack overflow Exploit
  7799. PowerCHM 5.7 (hhp File) Stack Overflow poC
  7800. PowerCHM 5.7 (hhp) Local Buffer Overflow Exploit
  7801. glFusion <= 1.1.2 COM_applyFilter()/order SQL Injection Exploit
  7802. pam-krb5 < 3.13 Local Privilege Escalation Exploit
  7803. Arcadwy Arcade Script (Auth Bypass) Insecure Cookie Handling Vuln
  7804. iWare CMS 5.0.4 Multiple Remote SQL Injection Vulnerabilities
  7805. Firefox 3.0.x (XML Parser) Memory Corruption / DoS PoC
  7806. Diskos CMS Manager (SQL/DB/Auth Bypass) Multiple Vulnerabilities
  7807. Wireshark <= 1.0.6 PN-DCP Format String Exploit PoC
  7808. BandSite CMS 1.1.4 (members.php memid) SQL Injection Vulnerability
  7809. Sami HTTP Server 2.x (HEAD) Remote Denial of Service Exploit
  7810. Abee Chm eBook Creator 2.11 (FileName) Local Stack Overflow Exploit
  7811. AtomixMP3 <= 2.3 (playlist) Universal SEH Overwrite Exploit
  7812. Check Point Firewall-1 PKI Web Service HTTP Header Remote Overflow
  7813. Amaya 11.1 W3C Editor/Browser (defer) Stack Overflow PoC
  7814. Gravy Media CMS 1.07 Multiple Remote Vulnerabilities
  7815. NOKIA Siemens FlexiISN 3.1 Multiple Auth Bypass Vulnerabilities
  7816. X-Forum 0.6.2 Remote Command Execution Exploit
  7817. JobHut <= 1.2 (pk) Remote SQL Injection Vulnerability
  7818. Family Connection 1.8.1 Multiple Remote Vulnerabilities
  7819. Opera 9.64 (7400 nested elements) XML Parsing Remote Crash Exploit
  7820. Amaya 11.1 W3C Editor/Browser (defer) Stack Overflow Exploit
  7821. Trend Micro Internet Security Pro 2009 Priviliege Escalation PoC
  7822. Community CMS 0.5 Multiple SQL Injection Vulnerabilities
  7823. Podcast Generator <= 1.1 Remote Code Execution Exploit
  7824. Safari 3.2.2/4b (nested elements) XML Parsing Remote Crash Exploit
  7825. VirtueMart <= 1.1.2 Remote SQL Injection Exploit (meta)
  7826. VirtueMart <= 1.1.2 Multiple Remote Vulnerabilities
  7827. webEdition <= 6.0.0.4 (WE_LANGUAGE) Local File Inclusion Vulnerability
  7828. JobHut 1.2 Remote Password Change/Delete/Activate User Vulnerability
  7829. PHPRecipeBook 2.39 (course_id) Remote SQL Injection Vulnerability
  7830. vsp stats processor 0.45 (gamestat.php gameID) SQL Injection Vuln
  7831. PrecisionID Datamatrix ActiveX Arbitrary File Overwrite Vuln
  7832. Sun Calendar Express Web Server (DoS/XSS) Multiple Remote Vulns
  7833. Koschtit Image Gallery 1.82 Multiple Local File Inclusion Vulnerabilities
  7834. DeepBurner 1.9.0.228 Stack Buffer Overflow (SEH) PoC
  7835. Oracle WebLogic IIS connector JSESSIONID Remote Overflow Exploit
  7836. XBMC 8.10 (GET Requests) Multiple Remote Buffer Overflow PoC
  7837. XBMC 8.10 (Get Request) Remote Buffer Overflow Exploit (win)
  7838. XBMC 8.10 (takescreenshot) Remote Buffer Overflow Exploit
  7839. XBMC 8.10 (get tag from file name) Remote Buffer Overflow Exploit
  7840. MyioSoft Ajax Portal 3.0 (page) SQL Injection Vulnerability
  7841. TinyPHPForum 3.61 File Disclosure / Code Execution Vulnerabilities
  7842. UltraISO <= 9.3.3.2685 CCD/IMG Universal Buffer Overflow Exploit
  7843. IBM DB2 < 9.5 pack 3a Malicious Connect Denial of Service Exploit
  7844. IBM DB2 < 9.5 pack 3a Malicious Data Stream Denial of Service Exploit
  7845. ActiveKB Knowledgebase (loadpanel.php Panel) Local File Inclusion Vuln
  7846. glFusion <= 1.1.2 COM_applyFilter()/cookies Blind SQL Injection Exploit
  7847. form2list (page.php id) Remote SQL Injection Vulnerability
  7848. Family Connections <= 1.8.2 Remote Shell Upload Exploit
  7849. Gravity Board X 2.0b SQL Injection / Post Auth Code Execution
  7850. AdaptBB 1.0 (topic_id) SQL Injection / Credentials Disclosure Exploit
  7851. Amaya 11.1 XHTML Parser Remote Buffer Overflow PoC
  7852. Joomla Component com_bookjoomlas 0.1 SQL Injection Vulnerability
  7853. XBMC 8.10 GET Request Remote Buffer Overflow Exploit (SEH) (univ)
  7854. FlexCMS Calendar (ItemId) Blind SQL Injection Vulnerability
  7855. Mozilla Firefox XSL Parsing Remote Memory Corruption PoC #2
  7856. iDB 0.2.5pa SVN 243 (skin) Local File Inclusion Exploit
  7857. UltraISO <= 9.3.3.2685 .ui Off By One / Buffer Overflow PoC
  7858. Pirelli Discus DRG A225 wifi router WPA2PSK Default Algorithm Exploit
  7859. Unsniff Network Analyzer 1.0 (usnf) Local Heap Overflow PoC
  7860. Family Connections CMS <= 1.8.2 Blind SQL Injection Vulnerability
  7861. Lanius CMS <= 0.5.2 Remote Arbitrary File Upload Exploit
  7862. XBMC 8.10 (HEAD) Remote Buffer Overflow Exploit (SEH)
  7863. SASPCMS 0.9 Multiple Remote Vulnerabilities
  7864. Joomla Component Maian Music 1.2.1 (category) SQL Injection Vuln
  7865. Joomla Component MailTo (article) SQL Injection Vulnerability
  7866. Joomla Component Cmimarketplace (viewit) Directory Traversal Vuln
  7867. peterConnects Web Server Traversal Arbitrary File Access Vulnerability
  7868. Linux Kernel < 2.6.29 exit_notify() Local Privilege Escalation Exploit
  7869. GOM Player 2.1.16.6134 Subtitle Local Buffer Overflow PoC
  7870. OTSTurntables 1.00.027 (.m3u/.ofl file) Universal BOF Exploit
  7871. Photo Graffix 3.4 Multiple Remote Vulnerabilities
  7872. Xplode CMS (wrap_script) Remote SQL Injection Vulnerability
  7873. WebFileExplorer 3.1 (DB.MDB) Database Disclosure Vulnerability
  7874. Geeklog <= 1.5.2 SEC_authenticate() SQL Injection Exploit
  7875. Exjune Guestbook v2 Remote Database Disclosure Exploit
  7876. SWF Opener 1.3 (.swf File) Off By One Buffer Overflow PoC
  7877. BackendCMS 5.0 (main.asp id) SQL Injection Vulnerability
  7878. Simbas CMS 2.0 (Auth Bypass) SQL Injection Vulnerability
  7879. WebFileExplorer 3.1 (Auth Bypass) SQL Injection Vulnerability
  7880. AdaptBB 1.0b Multiple Remote Vulnerabilities
  7881. net2ftp <= 0.97 Cross-Site Scripting/Request Forgery Vulnerabilities
  7882. My Dealer CMS 2.0 (Auth Bypass) SQL Injection Vulnerability
  7883. Absolute Form Processor XE-V 1.5 (Auth Bypass) SQL Injection Vuln
  7884. Dynamic Flash Forum 1.0 Beta Multiple Remote Vulnerabilities
  7885. PHP-Agenda <= 2.2.5 Remote File Overwriting Vulnerabilities
  7886. Loggix Project 9.4.5 (refer_id) Blind SQL Injection Vulnerability
  7887. Xilisoft Video Converter Wizard 3 .CUE File Stack Buffer Overflow PoC
  7888. Chance-i DiViS-Web DVR System ActiveX Control Heap Overflow PoC
  7889. Chance-i DiViS DVR System Web-server Directory Traversal Vulnerability
  7890. Cisco ASA/PIX Appliances Fail to Properly Check Fragmented TCP Packets
  7891. moziloCMS 1.11 (LFI/PD/XSS) Multiple Remote Vulnerabilities
  7892. Redaxscript 0.2.0 (language) Local File Inclusion Vulnerability
  7893. w3bcms Gaestebuch 3.0.0 Blind SQL Injection Exploit
  7894. FunkyASP AD System 1.1 Remote Shell Upload Vulnerability
  7895. ftpdmin 0.96 RNFR Remote Buffer Overflow Exploit (xp sp3/case study)
  7896. Flatnuke <= 2.7.1 (level) Remote Privilege Escalation Exploit
  7897. HTML Email Creator <= 2.1b668 (html) Local SEH Overwrite Exploit
  7898. Mini-stream Ripper (.M3U File) Local Stack Overflow PoC
  7899. WM Downloader (.M3U File) Local Stack Overflow PoC
  7900. RM Downloader (.M3U File) Local Stack Overflow PoC
  7901. Mini-stream RM-MP3 Converter (.M3U File) Local Stack Overflow PoC
  7902. OpenBSD <= 4.5 (IP datagrams) Remote DOS Vulnerability
  7903. ASX to MP3 Converter (.M3U File) Local Stack Overflow PoC
  7904. X10Media Mp3 Search Engine < 1.6.2 Admin Access Vulnerability
  7905. Yellow Duck Weblog 2.1.0 (lang) Local File Inclusion Vulnerability
  7906. RM Downloader 3.0.0.9 .m3u Universal Stack Overflow Exploit
  7907. WM Downloader 3.0.0.9 .m3u Universal Stack Overflow Exploit
  7908. ASX to MP3 Converter 3.0.0.7 .m3u Universal Stack Overflow Exploit
  7909. Mini-stream RM-MP3 Converter 3.0.0.7 .m3u Stack Overflow Exploit
  7910. XEngineSoft PMS/MGS/NM/AMS 1.0 (Auth Bypass) SQL Injection Vulns
  7911. FreznoShop 1.3.0 (id) Remote SQL Injection Vulnerability
  7912. Mini-stream Ripper 3.0.1.1 .m3u Universal Stack Overflow Exploit
  7913. e107 Plugin userjournals_menu (blog.id) SQL Injection Vulnerability
  7914. ASP Product Catalog 1.0 (XSS/DD) Multiple Remote Exploits
  7915. ftpdmin 0.96 Arbitrary File Disclosure Exploit
  7916. BulletProof FTP Client 2009 (.bps) Buffer Overflow Exploit (SEH)
  7917. Steamcast (HTTP Request) Remote Buffer Overflow Exploit (SEH) [1]
  7918. Steamcast (HTTP Request) Remote Buffer Overflow Exploit (SEH) [2]
  7919. Jamroom (index.php t) Local File Inclusion Vulnerability
  7920. AbleSpace 1.0 (XSS/BSQL) Multiple Remote Vulnerabilities
  7921. PHP-Revista 1.1.2 (RFI/SQLi/CB/XSS) Multiple Remote Vulnerabilities
  7922. Shadow Stream Recorder (.m3u file) Universal Stack Overflow Exploit
  7923. Easy RM to MP3 Converter Universal Stack Overflow Exploit
  7924. MonGoose 2.4 Webserver Directory Traversal Vulnerability (win)
  7925. Steamcast 0.9.75b Remote Denial of Service Exploit
  7926. OpenBSD <= 4.5 IP datagram Null Pointer Deref DoS Exploit
  7927. GuestCal 2.1 (index.php lang) Local File Inclusion Vulnerability
  7928. Aqua CMS (username) SQL Injection Vulnerability
  7929. RQMS (Rash) <= 1.2.2 Multiple SQL Injection Vulnerabilities
  7930. PowerCHM 5.7 (Long URL) Local Stack Overflow PoC
  7931. W2B phpEmployment (conf.inc) File Disclosure VUlnerability
  7932. Job2C 4.2 (profile) Remote Shell Upload Vulnerability
  7933. phpAdBoard (conf.inc) Remote Config File Disclosure Vulnerability
  7934. phpGreetCards (conf.inc) Config File Disclosure Vulnerability
  7935. W2B Restaurant 1.2 (conf.inc) Config File Disclosure Vulnerability
  7936. phpAdBoardPro (config.inc) Config File Disclosure Vulnerability
  7937. phpDatingClub (conf.inc) File Disclosure Vulnerability
  7938. Job2C (conf.inc) Config File Disclosure Vulnerability
  7939. Job2C 4.2 (adtype) Local File Inclusion Vulnerability
  7940. Star Downloader Free <= 1.45 (.dat) Universal SEH Overwrite Exploit
  7941. MS Windows Media Player (.mid File) Integer Overflow PoC
  7942. FreeWebshop.org 2.2.9 RC2 (lang_file) Local File Inclusion Vulnerability
  7943. Zervit Webserver 0.02 Remote Buffer Overflow PoC
  7944. Geeklog <= 1.5.2 savepreferences()/*blocks[] SQL Injection Exploit
  7945. NetHoteles 2.0/3.0 (Auth Bypass) SQL Injection Vulnerability
  7946. Online Password Manager 4.1 Insecure Cookie Handling Vulnerability
  7947. Apollo 37zz (M3u File) Local Heap Overflow PoC
  7948. Elecard AVC HD Player .XPL Stack Buffer Overflow (SEH) PoC
  7949. webSPELL 4.2.0c Bypass BBCode XSS Cookie Stealing Vulnerability
  7950. DNS Tools (PHP Digger) Remote Command Execution Vuln
  7951. cpCommerce 1.2.8 (id_document) Blind SQL Injection Vulnerability
  7952. Oracle APEX 3.2 Unprivileged DB users can see APEX password hashes
  7953. NetHoteles 3.0 (ficha.php) SQL Injection Vulnerability
  7954. Apache Geronimo <= 2.1.3 Multiple Directory Traversal Vulnerabilities
  7955. eLitius 1.0 (manage-admin.php) Add Admin/Change Password Exploit
  7956. SMA-DB 0.3.13 Multiple Remote File Inclusion Vulnerabilities
  7957. chCounter 3.1.3 (Login Bypass) SQL Injection Vulnerability
  7958. MagicISO CCD/Cue Local Heap Overflow Exploit PoC
  7959. Zervit Webserver 0.02 Remote Directory Traversal Vulnerability
  7960. Tiny Blogr 1.0.0 rc4 (Auth Bypass) SQL Injection Vulnerability
  7961. Microsoft Media Player (quartz.dll .mid) Denial of Service Exploit
  7962. Microsoft GDI Plugin .png Infinite Loop Denial of Service PoC
  7963. Microsoft Media Player (quartz.dll .wav) Multiple Remote DoS Vulns
  7964. Limbo CMS 1.0.4.2 CSRF Privilege Escalation PoC
  7965. XRDP <= 0.4.1 Remote Buffer Overflow PoC (pre-auth)
  7966. cTorrent/DTorrent (.Torrent File) Buffer Overflow Exploit
  7967. ClanTiger < 1.1.1 Multiple Cookie Handling Vulnerabilities
  7968. ClanTiger <= 1.1.1 (Auth Bypass) SQL Injection Vulnerability
  7969. ClanTiger <= 1.1.1 (slug) Blind SQL Injection Exploit
  7970. e-cart.biz Shopping Cart Arbitrary File Upload Vulnerability
  7971. Online Guestbook Pro (display) Blind SQL Injection Vulnerability
  7972. Online Email Manager Insecure Cookie Handling Vulnerability
  7973. Hot Project v7 (Auth Bypass) SQL Injection Vulnerability
  7974. Linux Kernel 2.6 UDEV Local Privilege Escalation Exploit
  7975. MS Internet Explorer EMBED Memory Corruption PoC (MS09-014)
  7976. Multi-lingual E-Commerce System 0.2 Multiple Remote Vulnerabilities
  7977. Studio Lounge Address Book 2.5 (profile) Shell Upload Vulnerability
  7978. Seditio CMS Events Plugin (c) Remote SQL Injection Vulnerability
  7979. Flatnux 2009-03-27 (Upload/ID) Multiple Remote Vulnerabilities
  7980. 1by1 1.67 (.m3u File) Local Stack Overflow PoC
  7981. Groovy Media Player 1.1.0 (.m3u File) Local Stack Overflow PoC
  7982. webClassifieds 2005 (Auth Bypass) Insecure Cookie Handling Vuln
  7983. EZ Webitor (Auth Bypass) SQL Injection Vulnerability
  7984. Pligg 9.9.0 (editlink.php id) Blind SQL Injection Exploit
  7985. CoolPlayer Portable 2.19.1 (.m3u File) Local Stack Overflow PoC
  7986. Addonics NAS Adapter (bts.cgi) Remote DoS Exploit (post-auth)
  7987. WysGui CMS 1.2b (Insecure Cookie Handling) Blind SQL Injection Exploit
  7988. WB News 2.1.2 Insecure Cookie Handling Vulnerability
  7989. FunGamez rc1 (AB/LFI) Multiple Remote Vulnerabilities
  7990. TotalCalendar 2.4 (inc_dir) Remote File Inclusion Vulnerability
  7991. e107 <= 0.7.15 (extended_user_fields) Blind SQL Injection Exploit
  7992. TotalCalendar 2.4 Remote Password Change Exploit
  7993. Creasito e-Commerce 1.3.16 (Auth Bypass) SQL Injection Vuln
  7994. eLitius 1.0 Arbitrary Database Backup Exploit
  7995. Dokeos LMS <= 1.8.5 (whoisonline.php) PHP Code Injection Exploit
  7996. Zervit Webserver 0.3 Remote Denial Of Service Exploit
  7997. CRE Loaded 6.2 (products_id) SQL Injection Vulnerability
  7998. PastelCMS 0.8.0 (LFI/SQL) Multiple Remote Vulnerabilities
  7999. TotalCalendar 2.4 (include) Local File Inclusion Vulnerability
  8000. NotFTP 1.3.1 (newlang) Local File Inclusion Vulnerability
  8001. Quick.Cms.Lite 0.5 (id) Remote SQL Injection Vulnerability
  8002. VS PANEL 7.3.6 (Cat_ID) Remote SQL Injection Vulnerability
  8003. Oracle RDBMS 10.2.0.3/11.1.0.6 TNS Listener PoC (CVE-2009-0991)
  8004. I-Rater Pro/Plantinum v4 (Auth Bypass) SQL Injection Vulnerability
  8005. Studio Lounge Address Book 2.5 Authentication Bypass Vulnerability
  8006. MixedCMS 1.0b (LFI/SU/AB/FD) Multiple Remote Vulnerabilities
  8007. Xitami Web Server <= 5.0 Remote Denial of Service Exploit
  8008. Counter Strike Source ManiAdminPlugin v2 Remote Crash Exploit
  8009. Dokeos LMS <= 1.8.5 (include) Remote Code Execution Exploit
  8010. elkagroup Image Gallery 1.0 Arbitrary File Upload Vulnerability
  8011. 5 star Rating 1.2 (Auth Bypass) SQL Injection Vulnerability
  8012. WebPortal CMS 0.8b Multiple Remote/Local File Inclusion Vulnerabilities
  8013. Joomla Component rsmonials Remote Cross Site Scxripting Exploit
  8014. Femitter FTP Server 1.03 Arbitrary File Disclosure Exploit
  8015. CoolPlayer Portable 2.19.1 (m3u) Buffer Overflow Exploit
  8016. CoolPlayer Portable 2.19.1 (m3u) Buffer Overflow Exploit #2
  8017. FOWLCMS 1.1 (AB/LFI/SU) Multiple Remote Vulnerabilities
  8018. Zervit HTTP Server <= 0.3 (sockets++ crash) Remote Denial of Service
  8019. Norton Ghost Support module for EasySetup wizard Remote DoS PoC
  8020. Home Web Server <= r1.7.1 (build 147) Gui Thread-Memory Corruption
  8021. Dream FTP Server 1.02 (users.dat) Arbitrary File Disclosure Exploit
  8022. Popcorn 1.87 Remote Heap Overflow Exploit PoC
  8023. CoolPlayer Portable 2.19.1 (Skin) Buffer Overflow Exploit
  8024. Absolute Form Processor XE-V 1.5 (auth Bypass) SQL Injection Vuln
  8025. Absolute Form Processor XE-V 1.5 Insecure Cookie Handling Vuln
  8026. Absolute Form Processor XE-V 1.5 Remote Change Pasword Exploit
  8027. SDP Downloader v2.3.0 (.ASX File) Local Heap Overflow PoC
  8028. Photo-Rigma.BiZ v30 (SQL/XSS) Multiple Remote Vulnerabilities
  8029. Pragyan CMS 2.6.4 Multiple SQL Injection Vulnerabilities
  8030. libvirt_proxy <= 0.5.1 Local Privilege Escalation Exploit
  8031. Destiny Media Player 1.61 (.rdl) Local Buffer Overflow Exploit
  8032. SDP Downloader 2.3.0 (.ASX) Local Buffer Overflow Exploit (SEH)
  8033. dWebPro 6.8.26 (DT/FD) Multiple Remote Vulnerabilities
  8034. Invision Power Board 3.0.0b5 Active XSS & Path Disclosure Vulns
  8035. Opencart 1.1.8 (route) Local File Inclusion Vulnerability
  8036. SDP Downloader 2.3.0 (.ASX) Local Buffer Overflow Exploit (SEH) #2
  8037. Zoom Player Pro v.3.30 .m3u File Buffer Overflow Exploit (seh)
  8038. Icewarp Merak Mail Server 9.4.1 Base64FileEncode() BOF PoC
  8039. LightBlog <= 9.9.2 (register.php) Remote Code Execution Exploit
  8040. iodined <= 0.4.2-2 (forged DNS packet) Denial of Service Exploit
  8041. DEW-NEWphpLinks 2.0 (LFI/XSS) Multiple Remote Vulnerabilities
  8042. Thickbox Gallery v2 (index.php ln) Local File Inclusion Vulnerability
  8043. EZ-Blog Beta2 (category) Remote SQL Injection Vulnerability
  8044. ECShop 2.5.0 (order_sn) Remote SQL Injection Vulnerability
  8045. Flatchat 3.0 (pmscript.php with) Local File Inclusion Vulnerability
  8046. Teraway LinkTracker 1.0 Insecure Cookie Handling Vulnerability
  8047. Teraway FileStream 1.0 Insecure Cookie Handling Vulnerability
  8048. Teraway LiveHelp 2.0 Insecure Cookie Handling Vulnerability
  8049. Teraway LinkTracker 1.0 Remote Password Change Exploit
  8050. Belkin Bulldog Plus HTTP Server Remote Buffer Overflow Exploit
  8051. ABC Advertise 1.0 Admin Password Disclosure Vulnerability
  8052. Linux Kernel 2.6.x SCTP FWD Memory Corruption Remote Exploit
  8053. VisionLMS 1.0 (changePW.php) Remote Password Change Exploit
  8054. MIM: InfiniX 1.2.003 Multiple SQL Injection Vulnerabilities
  8055. webSPELL <= 4.2.0d Local File Disclosure Exploit (.c linux)
  8056. Autodesk IDrop ActiveX Remote Code Execution Exploit
  8057. Quick 'n Easy Web Server 3.3.5 Arbitrary File Disclosure Exploit
  8058. Symantec Fax Viewer Control 10 (DCCFAXVW.DLL) Remote BOF Exploit
  8059. eLitius 1.0 (banner-details.php id) SQL Injection Vulnerability
  8060. Baby Web Server 2.7.2.0 Arbitrary File Disclosure Exploit
  8061. ProjectCMS 1.0b (index.php sn) Remote SQL Injection Vulnerability
  8062. S-Cms 1.1 Stable (page) Local File Inclusion Vulnerability
  8063. Zubrag Smart File Download 1.3 Arbitrary File Download Vulnerability
  8064. mpegable Player 2.12 (YUV File) Local Stack Overflow PoC
  8065. Adobe Reader 8.1.4/9.1 GetAnnots() Remote Code Execution Exploit
  8066. Adobe 8.1.4/9.1 customDictionaryOpen() Code Execution Exploit
  8067. Tiger DMS (Auth Bypass) Remote SQL Injection Vulnerability
  8068. Linux Kernel 2.6 UDEV < 141 Local Privilege Escalation Exploit
  8069. Google Chrome 1.0.154.53 (Null Pointer) Remote Crash Exploit
  8070. Leap CMS 0.1.4 (searchterm) Blind SQL Injection Exploit
  8071. Leap CMS 0.1.4 (SQL/XSS/SU) Multiple Remote Vulnerabilities
  8072. Mercury Audio Player 1.21 (.M3U File) Local Stack Overflow PoC
  8073. BaoFeng ActiveX OnBeforeVideoDownload() Remote BOF Exploit
  8074. Mercury Audio Player 1.21 (.b4s) Local Stack Overflow Exploit
  8075. Multiple Vendor PF Null Pointer Dereference Vulnerability
  8076. Mercury Audio Player 1.21 (.pls) SEH Overwrite Exploit
  8077. Mercury Audio Player 1.21 (.m3u) Local Stack Overflow Exploit
  8078. Addonics NAS Adapter FTP Remote Denial of Service Exploit
  8079. Golabi CMS <= 1.0.1 Session Poisoning Vulnerability
  8080. MiniTwitter 0.2b Multiple SQL Injection Vulnerabilities
  8081. MiniTwitter 0.2b Remote User Options Changer Exploit
  8082. Beatport Player 1.0.0.283 (.M3U File) Local Buffer Overflow PoC
  8083. RM Downloader (.smi File) Local Stack Overflow Exploit
  8084. Beatport Player 1.0.0.283 (.m3u) Local SEH Overwrite Exploit
  8085. Beatport Player 1.0.0.283 (.M3U File) Local Stack Overflow Exploit #2
  8086. Beatport Player 1.0.0.283 (.M3U File) Local Stack Overflow Exploit #3
  8087. pecio cms 1.1.5 (index.php language) Local File Inclusion Vulnerability
  8088. RM Downloader (.smi File) Universal Local Buffer Overflow Exploit
  8089. Adobe Acrobat Reader 8.1.2 – 9.0 getIcon() Memory Corruption Exploit
  8090. Winn ASP Guestbook 1.01b Remote Database Disclosure Exploit
  8091. Solaris 10 / OpenSolaris (dtrace) Local Kernel Denial of Service PoC
  8092. Solaris 10 / OpenSolaris (fasttrap) Local Kernel Denial of Service PoC
  8093. AGTC MyShop 3.2 Insecure Cookie Handling Vulnerability
  8094. BluSky CMS (news_id) Remote SQL Injection Vulnerability
  8095. EW-MusicPlayer 0.8 (.m3u file) Local Buffer Overflow PoC
  8096. Qt quickteam Multiple Remote File Inclusion Vulnerabilities
  8097. eLitius 1.0 Remote Command Execution Exploit
  8098. PHP Site Lock 2.0 Insecure Cookie Handling Vulnerability
  8099. Million Dollar Text Links 1.0 Arbitrary Auth Bypass Vulnerability
  8100. Quick 'n Easy Mail Server 3.3 (Demo) Remote Denial of Service PoC
  8101. Bmxplay 0.4.4b (.BMX File) Local Buffer Overflow PoC
  8102. ProjectCMS 1.1b Multiple Remote Vulnerabilities
  8103. Uguestbook 1.0b (guestbook.mdb) Arbitrary Database Disclosure Exploit
  8104. Ublog access version Arbitrary Database Disclosure Exploit
  8105. 32bit FTP (09.04.24) Banner Remote Buffer Overflow PoC
  8106. Grabit <= 1.7.2 Beta 3 (.nzb) Local Buffer Overflow Exploit (SEH)
  8107. 32bit FTP (09.04.24) (CWD response) Remote Buffer Overflow Exploit
  8108. 32bit FTP (09.04.24) (Banner) Remote Buffer Overflow Exploit
  8109. TemaTres 1.0.3 (Auth Bypass/SQL/XSS) Multiple Remote Vulnerabilities
  8110. TemaTres 1.0.3 Remote Blind SQL Injection Exploit
  8111. Sorinara Streaming Audio Player 0.9 (.m3u) Local Stack Overflow PoC
  8112. LinkBase 2.0 Remote Cookie Grabber Vulnerability
  8113. Joomla Almond Classifieds 5.6.2 Blind SQL Injection Vuln
  8114. Sorinara Streaming Audio Player 0.9 (.m3u) Local Stack Overflow Exploit
  8115. 32bit FTP (09.04.24) (CWD Response) Universal Seh Overwrite Exploit
  8116. webSPELL <= 4.2.0e (page) Remote Blind SQL Injection Exploit
  8117. 32bit FTP (PASV) Reply Client Remote Overflow Exploit (meta)
  8118. Soritong MP3 Player 1.0 Local Buffer Overflow Exploit (SEH)
  8119. Sorinara Streaming Audio Player 0.9 (.PLA) Local Stack Overflow PoC
  8120. TCPDB 3.8 Arbitrary Add Admin Account Vulnerability
  8121. T-Dreams Job Career Package 3.0 Insecure Cookie Handling Vulnerability
  8122. RM Downloader 3.0.0.9 (.RAM) Local Buffer Overflow Exploit
  8123. Mini-stream ASX to MP3 Converter 3.0.0.7 (.RAM) Buffer Overflow Exploit
  8124. Mini-stream ASX to MP3 Converter 3.0.0.7 (.ASX HREF) Local BOF Exploit
  8125. Mini-stream Ripper 3.0.1.1 (.RAM) Local Buffer Overflow Exploit
  8126. Mini-stream Ripper 3.0.1.1 .ASX File (HREF) Local BOF Exploit
  8127. Mini-stream RM-MP3 Converter 3.0.0.7 (.RAM) Local BOF Exploit
  8128. Mini-stream RM-MP3 Converter 3.0.0.7 .ASX File Local BOF Exploit
  8129. VIDEOSCRIPT.us (Auth Bypass) SQL Injection Vulnerability
  8130. ST-Gallery 0.1a Multiple SQL Injection Vulnerabilities
  8131. GrabIt 1.7.2x NZB DTD Reference Buffer Overflow Exploit
  8132. Simple Customer 1.3 Arbitrary Change Admin Password Exploit
  8133. Job Script 2.0 Arbitrary Change Admin Password Exploit
  8134. Sorinara Streaming Audio Player 0.9 (.PLA) Stack Overflow Exploit
  8135. PHP mb_ereg(i)_replace() Evaluate Replacement String Vulnerability
  8136. The Recipe Script 5 (Auth Bypass) SQL Injection / DB Backup Vulns
  8137. Realty Web-Base 1.0 (Auth Bypass) SQL Injection Vulnerability
  8138. ViPlay3 <= 3.00 (.vpl) Local Stack Overflow PoC
  8139. Luxbum 0.5.5/stable (Auth Bypass) SQL Injection Vulnerability
  8140. Mortbay Jetty <= 7.0.0-pre5 Dispatcher Servlet Denial of Service Exploit
  8141. Battle Blog 1.25 (uploadform.asp) Arbitrary File Upload Vulnerability
  8142. RTWebalbum 1.0.462 (AlbumID) Blind SQL Injection Exploit
  8143. TinyWebGallery <= 1.7.6 LFI / Remote Code Execution Exploit
  8144. TYPSoft FTP Server 1.11 (ABORT) Remote DoS Exploit
  8145. Mereo 1.8.0 Arbitrary File Disclosure Exploit
  8146. eggBlog <= 4.1.1 Local Directory Transversal Exploit
  8147. Dacio's Image Gallery 1.6 (DT/Bypass/SU) Remote Vulnerabilities
  8148. openWYSIWYG <= 1.4.7 Local Directory Transversal Vulnerability
  8149. microTopic v1 (rating) Remote Blind SQL Injection Exploit
  8150. MPLAB IDE 8.30 (.mcp) Universal Seh Overwrite Exploit
  8151. EasyPHP 3.0 Arbitrary Modify Configuration File Vulnerability
  8152. Php Recommend <= 1.3 (AB/RFI/CI) Multiple Remote Vulnerabilities
  8153. Bitweaver <= 2.6 saveFeed() Remote Code Execution Exploit
  8154. CastRipper 2.50.70 (.m3u) Local Buffer Overflow Exploit
  8155. CastRipper 2.50.70 (.m3u) Universal Stack Overflow Exploit
  8156. CastRipper 2.50.70 (.m3u) Universal Stack Overflow Exploit (py)
  8157. CastRipper 2.50.70 (.pls) Universal Stack Overflow Exploit
  8158. BIGACE CMS 2.5 (username) Remote SQL Injection Exploit
  8159. Java SE Runtime Environment - JRE 6 Update 13 Multiple Vulnerabilities
  8160. Zervit Webserver 0.4 Directory Traversal / Memory Corruption PoC
  8161. TinyButStrong 3.4.0 (script) Local File Disclosure Vulnerability
  8162. Password Protector SD 1.3.1 Insecure Cookie Handling Vulnerability
  8163. ipsec-tools racoon frag-isakmp Denial of Service PoC
  8164. Pinnacle Studio 12 (.hfz) Directory Traversal Vulnerability
  8165. Family Connections CMS <= 1.9 (member) SQL Injection Exploit
  8166. MaxCMS 2.0 (m_username) Arbitrary Create Admin Exploit
  8167. Linux Kernel 2.6.x ptrace_attach Local Privilege Escalation Exploit
  8168. Mlffat 2.1 (Auth Bypass / Cookie) SQL Injection Vulnerability
  8169. Ascad Networks 5 Products Insecure Cookie Handling Vulnerability
  8170. My Game Script 2.0 (Auth Bypass) SQL Injection Vulnerability
  8171. DigiMode Maya 1.0.2 (.m3u / .m3l files) Buffer Overflow PoCs
  8172. Linux Kernel 2.6.29 ptrace_attach() Local Root Race Condition Exploit
  8173. Shutter 0.1.1 Multiple Remote SQL Injection Vulnerabilities
  8174. beLive v.0.2.3 (arch.php arch) Local File Inclusion Vulnerability
  8175. StrawBerry 1.1.1 LFI / Remote Command Execution Exploit
  8176. MRCGIGUY ClickBank Directory 1.0.1 Insecure Cookie Handling Vuln
  8177. Submitter Script (Auth Bypass) SQL Injection Vulnerability
  8178. MRCGIGUY Hot Links SQL 3.2.0 Insecure Cookie Handling Vuln
  8179. MRCGIGUY Amazon Directory 1.0/2.0 Insecure Cookie Handling Vuln
  8180. MRCGIGUY Message Box 1.0 Insecure Cookie Handling Vuln
  8181. MRCGIGUY The Ticket System 2.0 Insecure Cookie Handling Vuln
  8182. MRCGIGUY Ultimate Profit Portal 1.0.1 Insecure Cookie Handling Vuln
  8183. 2daybiz Business Community Script Multiple Remote Vulnerabilities
  8184. Easy Scripts Answer and Question Script Multiple Vulnerabilities
  8185. 2daybiz Template Monster Clone (edituser.php) Change Pass Exploit
  8186. MRCGIGUY SimpLISTic SQL 2.0.0 Insecure Cookie Handling Vuln
  8187. MRCGIGUY Top Sites 1.0.0 Insecure Cookie Handling Vuln
  8188. Eggdrop/Windrop 1.6.19 ctcpbuf Remote Crash Vulnerability
  8189. D-Link Products Captcha Bypass Vulnerability
  8190. Joomla Component ArtForms 2.1 b7 Remote File Inclusion Vulnerabilities
  8191. Audioactive Player 1.93b (.m3u) Local Buffer Overflow Exploit
  8192. Harland Scripts 11 Products Remote Command Execution Exploit
  8193. Rama CMS <= 0.9.8 (download.php file) File Disclosure Vulnerability
  8194. Audioactive Player 1.93b (.m3u) Local Buffer Overflow Exploit (SEH)
  8195. 2daybiz Custom T-shirt Design (SQL/XSS) Multiple Remote Vulns
  8196. Microsoft IIS 6.0 WebDAV Remote Authentication Bypass Vulnerability
  8197. DMXReady Registration Manager 1.1 Database Disclosure Vulnerability
  8198. PHPenpals <= 1.1 (mail.php ID) Remote SQL Injection Exploit
  8199. my-colex 1.4.2 (AB/XSS/SQL) Multiple Remote Vulnerabilities
  8200. my-Gesuad 0.9.14 (AB/SQL/XSS) Multiple Remote Vulnerabilities
  8201. Pc4Uploader 9.0 Remote Blind SQL Injection Vulnerability
  8202. PHP Dir Submit (Auth Bypass) SQL Injection Vulnerability
  8203. Online Rental Property Script <= 5.0 (pid) SQL Injection Vulnerability
  8204. httpdx <= 0.5b Multiple Remote Denial of Service Vulnerabilities
  8205. Coppermine Photo Gallery <= 1.4.22 Multiple Remote Vulnerabilities
  8206. Flyspeck CMS 6.8 Remote LFI / Change Add Admin Exploit
  8207. Pluck 4.6.2 (langpref) Local File Inclusion Vulnerabilities
  8208. httpdx <= 0.5b FTP Server (USER) Remote BOF Exploit (SEH)
  8209. ClanWeb 1.4.2 Remote Change Password / Add Admin Exploit
  8210. DOURAN Portal <= 3.9.0.23 Multiple Remote Vulnerabilities
  8211. Dana Portal Remote Change Admin Password Exploit
  8212. OpenSSL <= 0.9.8k, 1.0.0-beta2 DTLS Remote Memory Exhaustion DoS
  8213. Zervit Webserver 0.04 (GET Request) Remote Buffer Overflow PoC
  8214. Mereo 1.8.0 (Get Request) Remote Denial of Service Exploit
  8215. LightOpenCMS 0.1 (id) Remote SQL Injection Vulnerability
  8216. Jieqi CMS <= 1.5 Remote Code Execution Exploit
  8217. MaxCMS 2.0 (inc/ajax.asp) Remote SQL Injection Vulnerability
  8218. DGNews 3.0 Beta (id) Remote SQL Injection Vulnerability
  8219. PHP Article Publisher Remote Change Admin Password Exploit
  8220. VidShare Pro Arbitrary Shell Upload Vulnerability
  8221. Joomla com_gsticketsystem (catid) Blind SQL Injection Exploit
  8222. httpdx <= 0.5b FTP Server (CWD) Remote BOF Exploit (SEH)
  8223. AOL IWinAmpActiveX Class ConvertFile() Remote BOF Exploit
  8224. Namad (IMenAfzar) 2.0.0.0 Remote File Disclosure Vulnerability
  8225. PAD Site Scripts 3.6 Insecure Cookie Handling Vulnerability
  8226. Coppermine Photo Gallery <= 1.4.22 Remote Exploit
  8227. VidShare Pro (SQL/XSS) Multiple Remote Vulnerabilities
  8228. Dog Pedigree Online Database 1.0.1b Multiple SQL Injection Vulns
  8229. Dog Pedigree Online Database 1.0.1b Insecure Cookie Handling Vuln
  8230. Dog Pedigree Online Database 1.0.1b Blind SQL Injection Exploit
  8231. DM FileManager 3.9.2 (Auth Bypass) SQL Injection Vulnerability
  8232. KingSoft Web Shield <= 1.1.0.62 XSS/Code Execution Vulnerability
  8233. Joomla Casino 0.3.1 Multiple SQL Injection Exploits
  8234. exJune Officer Message System v1 Multiple Remote Vulnerabilities
  8235. Catviz 0.4.0b1 (LFI/XSS) Multiple Remote Vulnerabilities
  8236. NC GBook 1.0 Remote Command injection Exploit
  8237. NC LinkList 1.3.1 Remote Command Injection Exploit
  8238. Realty Web-Base 1.0 (list_list.php id) SQL Injection Vulnerability
  8239. DMXReady Registration Manager 1.1 Arbitrary File Upload Vulnerability
  8240. PHP Article Publisher Arbitrary Auth Bypass Vulnerability
  8241. bSpeak 1.10 (forumid) Remote Blind SQL Injection Vulnerability
  8242. Jorp 1.3.05.09 Remote Arbitrary Remove Projects/Tasks Vulnerabilities
  8243. Mac OS X Java applet Remote Deserialization Remote PoC (updated)
  8244. Microsoft IIS 6.0 WebDAV Remote Authentication Bypass Exploit (patch)
  8245. VICIDIAL 2.0.5-173 (Auth Bypass) SQL Injection Vulnerability
  8246. ASP Inline Corporate Calendar (SQL/XSS) Multiple Remote Vulnerabilities
  8247. BaoFeng (config.dll) ActiveX Remote Code Execution Exploit
  8248. ChinaGames (CGAgent.dll) ActiveX Remote Code Execution Exploit
  8249. Flash Quiz Beta 2 Multiple Remote SQL Injection Vulnerabilities
  8250. Article Directory (Auth Bypass) SQL Injection Vulnerability
  8251. Article Directory (page.php) Remote Blind SQL Injection Vulnerability
  8252. ZaoCMS Insecure Cookie Handling Vulnerability
  8253. ZaoCMS (download.php) Remote File Disclosure Vulnerability
  8254. Microsoft IIS 6.0 WebDAV Remote Authentication Bypass Exploit (php)
  8255. Tutorial Share <= 3.5.0 Insecure Cookie Handling Vulnerability
  8256. Winamp 5.551 MAKI Parsing Integer Overflow PoC
  8257. ZaoCMS (user_id) Remote SQL Injection Vulnerability
  8258. Winamp <= 5.55 (MAKI script) Universal Seh Overwrite Exploit
  8259. ZaoCMS (user_updated.php) Remote Change Password Exploit
  8260. Winamp <= 5.55 (MAKI script) Universal Integer Overflow Exploit
  8261. ZaoCMS (PhpCommander) Arbitary Remote File Upload Vulnerability
  8262. Mole Group Sky Hunter/Bus Ticket Scripts Change Admin Pass Exploit
  8263. Mole Group Restaurant Directory Script 3.0 Change Admin Pass Vuln
  8264. PhotoVideoTube 1.11 Multiple Remote Vulnerabilities
  8265. Soulseek 157 NS platforms/ rport/ 156.* Remote Distributed Search Code Execution
  8266. MiniTwitter 0.3-Beta (SQL/XSS) Multiple Remote Vulnerabilities
  8267. Joomla Boy Scout Advancement 0.3 (id) SQL Injection Exploit
  8268. COWON America jetCast 2.0.4.1109 (.mp3) Local Overflow Exploit
  8269. Dokuwiki 2009-02-14 Local File Inclusion Vulnerability
  8270. ArcaVir 2009 < 9.4.320X.9 (ps_drv.sys) Local Privilege Escalation Exploit
  8271. Winamp 5.551 MAKI Parsing Integer Overflow Exploit
  8272. vBulletin vbBux/vbPlaza <= 2.x (vbplaza.php) Blind SQL Injection Vuln
  8273. Cute Editor ASP.NET Remote File Disclosure Vulnerability
  8274. Lighttpd < 1.4.23 Source Code Disclosure Vulnerability (BSD/Solaris bug)
  8275. MyFirstCMS <= 1.0.2 Remote Arbitrary File Delete Vulnerability
  8276. Mole Adult Portal Script (profile.php user_id) SQL Injection Vulnerability
  8277. Slayer 2.4 (skin) Universal Buffer Overflow Exploit (SEH)
  8278. cpCommerce 1.2.x GLOBALS[prefix] Arbitrary File Inclusion Exploit
  8279. Wordpress Plugin Lytebox (wp-lytebox) Local File Inclusion Vulnerability
  8280. Webradev Download Protect 1.0 Remote File Inclusion Vulnerabilities
  8281. eZoneScripts Hotornot2 Script (Admin Bypass) Multiple Remote Vulns
  8282. Mozilla Firefox (unclamped loop) Denial of Service Exploit
  8283. Ultimate Media Script 2.0 Remote Change Content Vulnerabilities
  8284. Gallarific (user.php) Arbirary Change Admin Information Exploit
  8285. RoomPHPlanning 1.6 Multiple Remote Vulnerabilities
  8286. Safari RSS feed:// Buffer Overflow via libxml2 Exploit PoC
  8287. PHP <= 5.2.9 Local Safemod Bypass Exploit (win32)
  8288. Joomla Component com_rsgallery2 1.14.x/2.x Remote Backdoor Vuln
  8289. Kensei Board <= 2.0.0b Multiple SQL Injection Vulnerabilities
  8290. MyForum 1.3 (Auth Bypass) Remote SQL Injection Vulnerability
  8291. Soulseek 157 NS Remote Buffer Overflow Exploit (SEH)
  8292. Flash Image Gallery 1.1 Arbitrary Config File Disclosure Vulnerability
  8293. Microsoft IIS 6.0 WebDAV Remote Authentication Bypass Exploit (pl)
  8294. ShaadiClone 2.0 (addadminmembercode.php) Add Admin Exploit
  8295. phpBugTracker 1.0.3 (Auth Bypass) SQL Injection Vulnerability
  8296. ZeeCareers 2.0 (addadminmembercode.php) Add Admin Exploit
  8297. WebMember 1.0 (formID) Remote SQL Injection Vulnerability
  8298. Joomla Component Com_Agora 3.0.0 RC1 Remote File Upload Vulnerability
  8299. Dokuwiki 2009-02-14 Remote/Temporary File Inclusion exploit
  8300. Million Dollar Text Links 1.x Insecure Cookie Handling Vulnerability
  8301. Joomla Component AgoraGroup 0.3.5.3 Blind SQL Injection Vulnerability
  8302. Easy Px 41 CMS v09.00.00B1 (fiche) Local File Inclusion Vulnerability
  8303. SiteX <= 0.7.4.418 (THEME_FOLDER) Local File Inclusion Vulnerabilities
  8304. Evernew Free Joke Script 1.2 (cat_id) Remote SQL Injection Vulnerability
  8305. AdPeeps 8.5d1 XSS and HTML Injection Vulnerabilities
  8306. Small Pirate v-2.1 (XSS/SQL) Multiple Remote Vulnerabilities
  8307. AMember 3.1.7 (XSS/SQL/HI) Multiple Remote Vulnerabilities
  8308. Joomla Component JVideo 0.3.x SQL Injection Vulnerability
  8309. Mozilla Firefox 3.0.10 (KEYGEN) Remote Denial of Service Exploit
  8310. Webboard <= v.2.90 beta Remote File Disclosure Vulnerability
  8311. Roxio CinePlayer 3.2 (SonicMediaPlayer.dll) Remote BOF Exploit
  8312. Zen Help Desk 2.1 (Auth Bypass) SQL Injection Vulnerability
  8313. Adobe Acrobat <= 9.1.1 Stack Overflow Crash PoC (osx/win)
  8314. ecshop 2.6.2 Multiple Remote Command Execution Vulnerabilities
  8315. Arab Portal 2.2 (Auth Bypass) Remote SQL Injection Vulnerability
  8316. ZeusCart <= 2.3 (maincatid) SQL Injection Vulnerability
  8317. Million Dollar Text Links <= 1.0 (id) SQL injection Vulnerability
  8318. Traidnt Up 2.0 (Auth Bypass / Cookie) SQL Injection Vulnerability
  8319. ICQ 6.5 URL Search Hook (Windows Explorer) Remote BOF PoC
  8320. Linksys WAG54G2 Web Management Console Arbitrary Command Exec
  8321. RadCLASSIFIEDS Gold v2 (seller) Remote SQL Injection Exploit
  8322. Roxio CinePlayer 3.2 (IAManager.dll) Remote BOF Exploit (heap spray)
  8323. OCS Inventory NG 1.02 Multiple SQL Injection Vulnerabilities
  8324. AIMP 2.51 build 330 (ID3v1/ID3v2 Tag) Remote Stack BOF PoC (SEH)
  8325. eliteCMS 1.01 (SQL/XSS) Multiple Remote Vulnerabilities
  8326. Open-school 1.0 (id) Remote SQL Injection Vulnerability
  8327. Escon SupportPortal Pro 3.0 (tid) Blind SQL Injection Vulnerability
  8328. Unclassified NewsBoard 1.6.4 Multiple Remote Vulnerabilities
  8329. Apache mod_dav / svn Remote Denial of Service Exploit
  8330. Online Grades & Attendance 3.2.6 Credentials Changer SQL Exploit
  8331. Online Grades & Attendance 3.2.6 Multiple SQL Injection Vulnerabilities
  8332. ASMAX AR 804 gu Web Management Console Arbitrary Command Exec
  8333. Joomla Component Joomlaequipment 2.0.4 (com_juser) SQL Injection
  8334. ecsportal rel 6.5 (article_view_photo.php id) SQL Injection Vulnerability
  8335. R2 Newsletter Lite/Pro/Stats (admin.mdb) Database Disclosure Vuln
  8336. PAD Site Scripts 3.6 Remote Arbitrary Database Backup Vulnerability
  8337. AdaptBB 1.0 (forumspath) Remote File Inclusion Vulnerability
  8338. ASP Football Pool 2.3 Remote Database Disclosure Vulnerability
  8339. Online Grades & Attendance 3.2.6 Multiple Local File Inclusion Vulns
  8340. Online Grades & Attendance 3.2.6 Blind SQL Injection Exploit
  8341. AlstraSoft Article Manager Pro Remote Shell Upload Vulnerability
  8342. Flashlight Free Edition (LFI/SQL) Multiple Remote Vulnerabilities
  8343. WebCal (webCal3_detail.asp event_id) SQL Injection Vulnerability
  8344. PropertyMax Pro FREE (SQL/XSS) Multiple Remote Vulnerabilities
  8345. WebEyes Guest Book v.3 (yorum.asp mesajid) SQL Injection Vulnerability
  8346. Podcast Generator <= 1.2 GLOBALS[] Multiple Remote Vulnerabilities
  8347. Apple iTunes 8.1.1 (ITMS) Multiple Protocol Handler BOF Exploit (meta)
  8348. Apple QuickTime Image Description Atom Sign Extension PoC
  8349. Atomix Virtual Dj Pro 6.0 Stack Buffer Overflow PoC (SEH)
  8350. My Mini Bill (orderid) Remote SQL Injection Vulnerability
  8351. EgyPlus 7ml <= 1.0.1 (Auth Bypass) SQL Injection Vulnerability
  8352. Podcast Generator <= 1.2 unauthorized Re-Installation Remote Exploit
  8353. Joomla Component Seminar 1.28 (id) Blind SQL Injection Exploit
  8354. OCS Inventory NG 1.02 Remote File Disclosure Vulnerability
  8355. Supernews 2.6 (index.php noticia) Remote SQL Injection Vulnerability
  8356. Joomla Omilen Photo Gallery 0.5b Local File Inclusion Vulnerability
  8357. Movie PHP Script 2.0 (init.php anticode) Code Execution Vulnerability
  8358. Joomla Component com_mosres Multiple SQL Injection Vulnerabilities
  8359. OpenSSL < 0.9.8i DTLS ChangeCipherSpec Remote DoS Exploit
  8360. SuperCali PHP Event Calendar Arbitrary Change Admin Password Exploit
  8361. Online Armor < 3.5.0.12 (OAmon.sys) Local Privilege Escalation Exploit
  8362. Web Directory PRO (admins.php) Change Admin Password Exploit
  8363. Host Directory PRO 2.1.0 Remote Database Backup Vulnerability
  8364. Web Directory PRO Remote Database Backup Vulnerability
  8365. Host Directory PRO 2.1.0 Remote Change Admin Password Exploit
  8366. Kloxo 5.75 (24 Issues) Multiple Remote Vulnerabilities
  8367. PeaZIP <= 2.6.1 Compressed Filename Command Injection Exploit
  8368. Pixelactivo 3.0 (idx) Remote SQL Injection Vulnerability
  8369. Pixelactivo 3.0 (Auth Bypass) Remote SQL Injection Vulnerability
  8370. Kjtechforce mailman b1 (code) SQL Injection Delete Row Vulnerability
  8371. Kjtechforce mailman b1 (dest) Remote Blind SQL Injection Exploit
  8372. MyCars Automotive (Auth Bypass) SQL Injection Vulnerability
  8373. VT-Auth 1.0 (zHk8dEes3.txt) File Disclosure Vulnerability
  8374. fipsCMS Light 2.1 (db.mdb) Remote Database Disclosure Vulnerability
  8375. Joomla Component com_school 1.4 (classid) SQL Injection Vulnerability
  8376. Virtue Classifieds (category) SQL Injection Vulnerability
  8377. Virtue Book Store (cid) Remote SQL Injection Vulnerability
  8378. Virtue Shopping Mall (cid) Remote SQL Injection Vulnerability
  8379. Interlogy Profile Manager Basic Insecure Cookie Handling Vulnerability
  8380. Apple MACOS X xnu <= 1228.9.59 Local Kernel Root Exploit
  8381. httpdx <= 0.8 FTP Server Delete/Get/Create Directories/Files Exploit
  8382. Joomla Component MooFAQ (com_moofaq) LFI Vulnerability
  8383. SAP GUI 6.4 ActiveX (Accept) Remote Buffer Overflow PoC
  8384. Frontis 3.9.01.24 (source_class) Remote SQL Injection Vulnerability
  8385. Virtue News (SQL/XSS) Multiple Remote Vulnerabilities
  8386. Grestul 1.2 Remote Add Administrator Account Exploit
  8387. DM FileManager 3.9.2 Insecure Cookie Handling Vulnerability
  8388. Automated Link Exchange Portal 1.3 Multiple Remote Vulnerabilities
  8389. Joomla Component com_portafolio (cid) SQL injection Vulnerability
  8390. Shop Script Pro 2.12 Remote SQL Injection Exploit
  8391. Apple Safari <= 3.2.x (XXE attack) Local File Theft Vulnerability
  8392. Joomla Component BookLibrary 1.5.2.4 Remote File Inclusion Vuln
  8393. Joomla Component Akobook 2.3 (gbid) SQL Injection Vulnerability
  8394. Joomla Component com_media_library 1.5.3 RFI Vulnerability
  8395. S-CMS <= 2.0b3 Multiple Local File Inclusion Vulnerabilities
  8396. S-CMS <= 2.0b3 Multiple SQL Injection Vulnerabilities
  8397. S-CMS <= 2.0b3 (username) Blind SQL Injection Exploit
  8398. Free Download Manager 2.5/3.0 (Control Server) Remote BOF Exploit
  8399. MRCGIGUY The Ticket System 2.0 PHP Multiple Remote Vulnerabilities
  8400. MRCGIGUY Hot Links (report.php id) Remote SQL Injection Vulnerability
  8401. Joomla Component com_realestatemanager 1.0 RFI Vulnerability
  8402. Joomla Component com_vehiclemanager 1.0 RFI Vulnerability
  8403. phpMyAdmin (/scripts/setup.php) PHP Code Injection Exploit
  8404. DX Studio Player < 3.0.29.1 Firefox plug-in Command Injection Vuln
  8405. LightNEasy sql/no-db <= 2.2.x system Config Disclosure Exploit
  8406. School Data Navigator (page) Local/Remote File Inclusion Vulnerability
  8407. Desi Short URL Script (Auth Bypass) Insecure Cookie Handling Vuln
  8408. MRCGIGUY FreeTicket (CH/SQL) Multiple Remote Vulnerabilities
  8409. Open Biller 0.1 (username) Blind SQL Injection Exploit
  8410. phpWebThings <= 1.5.2 (help.php module) Local File Inclusion Vuln
  8411. Splog <= 1.2 Beta Multiple Remote SQL Injection Vulnerabilities
  8412. ModSecurity <= 2.5.9 (Core Rules <= 2.5-1.6.1) Filter Bypass Vuln
  8413. TorrentVolve 1.4 (deleteTorrent) Delete Arbitrary File Vulnerability
  8414. Yogurt 0.3 (XSS/SQL Injection) Multiple Remote Vulnerabilities
  8415. Sniggabo CMS (article.php id) Remote SQL Injection Exploit
  8416. Apple iTunes 8.1.1.10 (itms/itcp) Remote Buffer Overflow Exploit (win)
  8417. Zip Store Chat 4.0/5.0 (Auth Bypass) SQL Injection Vulnerability
  8418. 4images <= 1.7.7 Filter Bypass HTML Injection/XSS Vulnerability
  8419. Campus Virtual-LMS (XSS/SQL Injection) Multiple Remote Vulnerabilities
  8420. Green Dam 3.17 (URL) Remote Buffer Overflow Exploit (xp/sp2)
  8421. phpWebThings <= 1.5.2 MD5 Hash Retrieve/File Disclosure Exploit
  8422. Asterisk IAX2 Resource Exhaustion via Attacked IAX Fuzzer
  8423. Pivot 1.40.4-7 Multiple Remote Vulnerabilities
  8424. TBDev 01-01-2008 Multiple Remote Vulnerabilities
  8425. TransLucid 1.75 Multiple Remote Vulnerabilities
  8426. Uebimiau Web-Mail <= v3.2.0-1.8 Remote File / Overwrite Vulnerabilities
  8427. Joomla Component com_Projectfork 2.0.10 Local File Inclusion Vuln
  8428. Impleo Music Collection 2.0 (SQL/XSS) Multiple Remote Vulnerabilities
  8429. Mundi Mail 0.8.2 (top) Remote File Inclusion Vulnerability
  8430. SugarCRM 5.2.0e Remote Code Execution Vulnerability
  8431. FormMail 1.92 Multiple Remote Vulnerabilities
  8432. DB Top Sites 1.0 Remote Command Execution Exploit
  8433. DB Top Sites 1.0 (index.php u) Local File Inclusion Vulnerability
  8434. Elvin BTS 1.2.0 Multiple Remote Vulnerabilities
  8435. AdaptWeb 0.9.2 (LFI/SQL) Multiple Remote Vulnerabilities
  8436. LinkLogger 2.4.10.15 (syslog) Denial of Service Exploit
  8437. Evernew Free Joke Script 1.2 Remote Change Password Exploit
  8438. Apple Safari & Quicktime Denial of Service Vulnerability
  8439. TorrentTrader Classic 1.09 Multiple Remote Vulnerabilities
  8440. Joomla Component com_ijoomla_rss Blind SQL Injection Exploit
  8441. Apple QuickTime CRGN Atom Local Crash Exploit
  8442. WordPress Plugin Photoracer 1.0 (id) SQL Injection Vulnerability
  8443. phpCollegeExchange 0.1.5c (listing_view.php itemnr) SQL Injection Vuln
  8444. Netgear DG632 Router Authentication Bypass Vulnerability
  8445. Netgear DG632 Router Remote Denial of Service Vulnerability
  8446. vBulletin Radio and TV Player Add-On HTML Injection Vulnerability
  8447. phportal v1 (topicler.php id) Remote SQL Injection Vulnerability
  8448. The Recipe Script 5 Remote XSS Vulnerability
  8449. Joomla Component com_jumi (fileid) Blind SQL Injection Exploit
  8450. Green Dam 3.17 URL Processing Buffer Overflow Exploit (meta)
  8451. McAfee 3.6.0.608 naPolicyManager.dll ActiveX Arbitrary Data Write Vuln
  8452. Carom3D 5.06 Unicode Buffer Overrun/DoS Vulnerability
  8453. XOOPS <= 2.3.3 Remote File Disclosure Vulnerability (.htaccess)
  8454. phpFK 7.03 (page_bottom.php) Local File Inclusion Vulnerability
  8455. Multiple HTTP Server Low Bandwidth Denial of Service (slowloris.pl)
  8456. TekBase All-in-One 3.1 Multiple SQL Injection Vulnerabilities
  8457. fuzzylime cms <= 3.03a Local Inclusion / Arbitrary File Corruption PoC
  8458. FretsWeb 1.2 Multiple Local File Inclusion Vulnerabilities
  8459. FretsWeb 1.2 (name) Remote Blind SQL Injection Exploit
  8460. phportal 1.0 Insecure Cookie Handling Vulnerability
  8461. compface <= 1.5.2 (XBM File) Local Buffer Overflow PoC
  8462. DESlock+ 4.0.2 dlpcrypt.sys Local Kernel ring0 Code Execution Exploit
  8463. CMS Buzz (XSS/PC/HI) Multiple Remote Vulnerabilities
  8464. Edraw PDF Viewer Component < 3.2.0.126 ActiveX Insecure Method Vuln
  8465. MIDAS 1.43 (Auth Bypass) Insecure Cookie Handling Vulnerability
  8466. pc4 Uploader <= 10.0 Remote File Disclosure Vulnerability
  8467. phpDatingClub 3.7 Remote SQL/XSS Injection Vulnerabilities
  8468. Multiple HTTP Server Low Bandwidth Denial of Service #2
  8469. pmaPWN! - phpMyAdmin Code Injection RCE Scanner & Exploit
  8470. Elgg (XSS/CSRF/Change Password) Multiple Remote Vulnerabilities
  8471. AWScripts Gallery Search Engine 1.x Insecure Cookie Vulnerability
  8472. Campsite 3.3.0 RC1 Multiple Remote File Inclusion Vulnerabilities
  8473. Gravy Media Photo Host 1.0.8 Local File Disclosure Vulnerability
  8474. Kasseler CMS (FD/XSS) Multiple Remote Vulnerabilities
  8475. Sourcebans <= 1.4.2 Arbitrary Change Admin Email Vulnerability
  8476. Joomla Component com_tickets <= 2.1 (id) SQL Injection Vuln
  8477. RS-CMS 2.1 (key) Remote SQL Injection Vulnerability
  8478. MyBB <= 1.4.6 Remote Code Execution Exploit
  8479. Bopup Communications Server 3.2.26.5460 Remote SYSTEM Exploit
  8480. Zen Cart 1.3.8 Remote Code Execution Exploit
  8481. Zen Cart 1.3.8 Remote SQL Execution Exploit
  8482. HP Data Protector 4.00-SP1b43064 Remote Memory Leak/Dos Exploit
  8483. HP Data Protector 4.00-SP1b43064 Remote Memory Leak/Dos (meta)
  8484. phpCollegeExchange 0.1.5c (RFI/LFI/XSS) Multiple Vulnerabilities
  8485. BASE <= 1.2.4 (Auth Bypass) Insecure Cookie Handling Vulnerability
  8486. Glossword <= 1.8.11 (index.php x) Local File Inclusion Vulnerability
  8487. Joomla Component com_pinboard Remote File Upload Vulnerability
  8488. Tribiq CMS 5.0.12c (XSS/LFI) Multiple Remote Vulnerabilities
  8489. PHPEcho CMS 2.0-rc3 (forum) XSS Cookie Stealing / Blind Vulnerability
  8490. LightOpenCMS 0.1 (smarty.php cwd) Local File Inclusion Vulnerability
  8491. Joomla Component com_amocourse (catid) SQL Injection Vuln
  8492. Joomla Component com_pinboard (task) SQL Injection Exploit
  8493. MyFusion 6b settings[locale] Local File Inclusion Vulnerability
  8494. AlumniServer 1.0.1 (Auth Bypass) SQL Injection Vulnerability
  8495. AlumniServer 1.0.1 (resetpwemail) Blind SQL Injection Exploit
  8496. MD-Pro 1.083.x Survey Module (pollID) Blind SQL Injection Vulnerability
  8497. Virtue Online Test Generator (AB/SQL/XSS) Multiple Vulnerabilities
  8498. PHP-Address Book 4.0.x Multiple SQL Injection Vulnerabilities
  8499. ForumPal FE 1.1 (Auth Bypass) Remote SQL Injection Vulnerability
  8500. Mega File Manager 1.0 (index.php page) LFI Vulnerability
  8501. WHOISCART (Auth Bypass) Information Disclosure Vulnerability
  8502. Messages Library 2.0 (cat.php CatID) SQL Injection Vulnerability
  8503. Joomla Component com_php (id) Blind SQL Injection Vulnerability
  8504. VideoLAN VLC Media Player 0.9.9 smb:// URI Stack BOF PoC
  8505. Joomla Component com_K2 <= 1.0.1b (category) SQL Injection Vuln
  8506. Bopup Communications Server (3.2.26.5460) Remote BOF Exploit (SEH)
  8507. osTicket 1.6 RC4 Admin Login Blind SQL Injection Vulnerability
  8508. SCMPX 1.5.1 (.m3u File) Local Heap Overflow PoC
  8509. HT-MP3Player 1.0 (.ht3 File) Local Buffer Overflow Exploit (SEH)
  8510. Almnzm (COOKIE: customer) Remote SQL Injection Vulnerability
  8511. PHP-Sugar 0.80 (index.php t) Local File Inclusion Vulnerability
  8512. Clicknet CMS 2.1 (side) Arbitrary File Disclosure Vulnlerability
  8513. HT-MP3Player 1.0 (.ht3) Universal Buffer Overflow (SEH)
  8514. Cpanel (lastvisit.html domain) Arbitrary File Disclosure Vuln (auth)
  8515. Joomla com_bookflip (book_id) Remote SQL Injection Vulnerability
  8516. Audio Article Directory (file) Remote File Disclosure Vulnerability
  8517. Newsolved 1.1.6 (login grabber) Multiple SQL Injection Exploit
  8518. WordPress Plugin DM Albums 1.9.2 Remote File Inclusion Vuln
  8519. DM FileManager 3.9.4 Remote File Inclusion Vulnerability
  8520. TFM MMPlayer 2.0 (m3u/ppl) Universal Buffer Overflow Exploit (SEH)
  8521. WordPress Plugin DM Albums 1.9.2 Remote File Disclosure Vulnerability
  8522. DM FileManager 3.9.4 Remote File Disclosure Vulnerability
  8523. SMF Mod Member Awards 1.0.2 Blind SQL Injection Exploit
  8524. Jax FormMailer 3.0.0 Remote File Inclusion Vulnerability
  8525. BIGACE CMS 2.6 (cmd) Local File Inclusion Vulnerability
  8526. phpMyBlockchecker 1.0.0055 Insecure Cookie Handling Vulnerability
  8527. WordPress Plugin Related Sites 2.1 Blind SQL Injection Vulnerability
  8528. PunBB Affiliates Mod <= 1.1 Remote Blind SQL Injection Exploit
  8529. MDPro Module CWGuestBook <= 2.1 Remote SQL Injection Vulnerability
  8530. TSEP <= 0.942.02 Multiple Remote Vulnerabilities
  8531. PunBB Extension Vote For Us <= 1.0.1 Blind SQL Injection Exploit
  8532. Messages Library 2.0 Arbitrary Administrator Account Vulnerability
  8533. MP3-Nator 2.0 (plf File) Universal Buffer Overflow Exploit (SEH)
  8534. PEamp 1.02b (.M3U File) Local Buffer Overflow PoC
  8535. Messages Library 2.0 Arbitrary Delete Message Vulnerability
  8536. Messages Library 2.0 Insecure Cookie Handling Vulnerability
  8537. AudioPLUS 2.00.215 (.lst & .m3u File) Local buffer Overflow (seh)
  8538. Green Dam Remote Change System Time Exploit
  8539. ARD-9808 DVR Card Security Camera Arbitrary Config Disclosure Vuln
  8540. ARD-9808 DVR Card Security Camera (GET Request) Remote DoS Exploit
  8541. KerviNet Forum <= 1.1 Multiple Remote Vulnerabilities
  8542. CMS Chainuk <= 1.2 Multiple Remote Vulnerabilities
  8543. AudioPLUS 2.00.215 (.pls) Local Buffer Overflow Exploit (SEH)
  8544. Apple Safari 4.x JavaScript Reload Remote Crash Exploit
  8545. Oracle 10g SYS.LT.COMPRESSWORKSPACETREE SQL Injection Exploit
  8546. YourTube <= 2.0 Arbitrary Database Disclosure Exploit
  8547. Sourcefire 3D Sensor & Defense Center 4.8.x Privilege Escalation Vuln
  8548. AdminLog 0.5 (valid_login) Authentication Bypass Vulnerability
  8549. Almnzm 2.0 Remote Blind SQL Injection Exploit
  8550. conpresso 3.4.8 (detail.php) Remote Blind SQL Injection Vuln
  8551. Opial 1.0 (Auth Bypass) Remote SQL Injection Vulnerability
  8552. Opial 1.0 (albumid) Remote SQL Injection Vulnerability
  8553. Rentventory Multiple Remote SQL Injection Vulnerabilities
  8554. FreeBSD 7.0/7.1 vfs.usermount Local Privilege Escalation Exploit
  8555. Linux Kernel <= 2.6.28.3 set_selection() UTF-8 Off By One Local Exploit
  8556. Soulseek 157 NS < 13e/156.* Remote Peer Search Code Execution PoC
  8557. MySQL <= 5.0.45 COM_CREATE_DB Format String PoC (auth)
  8558. MRCGIGUY Thumbnail Gallery Post 1b Arb. Shell Upload Vulnerability
  8559. Nwahy Dir 2.1 Arbitrary Change Admin Password Exploit
  8560. Glossword <= 1.8.11 Arbitrary Uninstall / Install Vulnerability
  8561. ClearContent (image.php url) RFI/LFI Vulnerability
  8562. otsAV DJ 1.85.064 (.ofl File) Local Heap Overflow PoC
  8563. Mlffat 2.2 Remote Blind SQL Injection Exploit
  8564. WebAsyst Shop-Script (bSQL/XSS) Multiple Remote Vulnerabilities
  8565. Windows Live Messenger Plus! FileServer 1.0 Directory Traversal Vuln
  8566. EasyVillaRentalSite (Id) Remote SQL Injection Vulnerability
  8567. TalkBack 2.3.14 Multiple Remote Vulnerabilities
  8568. Sun One WebServer 6.1 JSP Source Viewing Vulnerability
  8569. xscreensaver 5.01 Arbitrary File Disclosure Symlink Attack Vulnerability
  8570. Siteframe CMS 3.2.x SQL Injection/phpinfo() Multiple Vulnerabilities
  8571. Universe CMS 1.0.6 (vnews.php id) Remote SQL Injection Exploit
  8572. Microsoft Internet Explorer (AddFavorite) Remote Crash PoC
  8573. phpBMS 0.96 Multiple Remote Vulnerabilities
  8574. PatPlayer 3.9 (M3U File) Local Heap Overflow PoC
  8575. GenCMS 2006 Multiple Remote Vulnerabilities
  8576. Photo DVD Maker Pro <= 8.02 (.pdm) Local BOF Exploit (SEH)
  8577. MyMsg 1.0.3 (uid) Remote SQL Injection Vulnerability
  8578. Citrix XenCenterWeb (XSS/SQL/RCE) Multiple Remote Vulnerabilities
  8579. Phenotype CMS 2.8 (login.php user) Blind SQL Injection Vulnerability
  8580. MS Internet Explorer 7 Video ActiveX Remote Buffer Overflow Exploit
  8581. ToyLog 0.1 SQL Injection Vulnerability/RCE Exploit
  8582. WordPress Privileges Unchecked in admin.php and Multiple Information
  8583. Jobbr 2.2.7 Multiple Remote SQL Injection Vulnerabilities
  8584. Joomla Component com_propertylab (auction_id) SQL injection Vuln
  8585. OtsAv DJ/TV/Radio Multiple Local Heap Overflow PoCs
  8586. eEye Retina WiFi Security Scanner 1.0 (.rws Parsing) Buffer Overflow PoC
  8587. Digitaldesign CMS 0.1 Remote Database Disclosure Vulnerability
  8588. AwingSoft Web3D Player (WindsPly.ocx) Remote BOF PoC
  8589. HTC / Windows Mobile OBEX FTP Service Directory Traversal Vuln
  8590. Ebay Clone 2009 (XSS/bSQL) Multiple Remote Vulnerabilities
  8591. LionWiki (index.php page) Local File Inclusion Vulnerability
  8592. Morcego CMS <= 1.7.6 Remote Blind SQL Injection Exploit
  8593. Opial 1.0 Arbitrary File Upload/XSS/SQL Injection Vulnerabilities
  8594. M3U/M3L to ASX/WPL 1.1 (ASX,M3U,M3L) Local BOF PoC
  8595. Playlistmaker 1.5 (.M3U/M3L/TXT File) Local Stack Overflow PoC
  8596. Ebay Clone 2009 Multiple SQL Injection Vulnerabilities
  8597. Joomla Component com_category (catid) SQL Injection Vulnerability
  8598. d.net CMS Arbitrary Reinstall/Blind SQL Injection Exploit
  8599. Pirch IRC 98 Client (response) Remote BOF Exploit (SEH)
  8600. Censura 1.16.04 (bSQL/XSS) Multiple Remote Vulnerabilities
  8601. Php AdminPanel Free version 1.0.5 Remote File Disclosure Vuln
  8602. Tandberg MXP F7.0 (USER) Remote Buffer Overflow PoC
  8603. RunCMS <= 1.6.3 (double ext) Remote Shell Injection Exploit
  8604. ScITE Editor 1.72 Local Crash Vulnerability Exploit
  8605. FreeBSD 6/8 (ata device) Local Denial of Service Exploit
  8606. Openswan <= 2.4.12/2.6.16 Insecure Temp File Creation Root Exploit
  8607. Mp3-Nator 2.0 (ListData.dat) Universal Buffer Overflow Exploit (SEH)
  8608. Mozilla Firefox 3.5 (Font tags) Remote Buffer Overflow Exploit
  8609. onepound shop 1.x products.php SQL Injection Vulnerability
  8610. JetAudio 7.5.3 COWON Media Center (.wav File) Crash Exploit
  8611. DJ Calendar (DJcalendar.cgi TEMPLATE) File Disclosure Vuln
  8612. Icarus 2.0 (.ICP File) Local Stack Overflow PoC
  8613. Live For Speed 2 Version Z .Mpr Local buffer Overflow Exploit
  8614. Virtualmin < 3.703 Multiple Local/Remote Vulnerabilities
  8615. Mobilelib Gold v3 Local File Disclosure Vulnerability
  8616. Traidnt UP 2.0 Remote Blind SQL Injection Exploit
  8617. Icarus 2.0 (.ICP File) Local Stack Overflow Exploit
  8618. MixVibes Pro 7.043 (.vib File) Local Stack Overflow PoC
  8619. Live For Speed 2 Version Z (.mpr ) Buffer Overflow Exploit (SEH)
  8620. Icarus 2.0 (.ICP File) Local Buffer Overflow Exploit (SEH)
  8621. WordPress Plugin My Category Order <= 2.8 SQL Injection Vulnerability
  8622. ILIAS LMS <= 3.9.9/3.10.7 Arbitrary Edition/Info Disclosure Vulns
  8623. AudioPLUS 2.00.215 (.m3u .lst) Universal SEH Overwrite Exploit
  8624. Admin News Tools 2.5 (fichier) Remote File Disclosure Vulnerability
  8625. ZenPhoto 1.2.5 Completely Blind SQL Injection Exploit
  8626. PHPGenealogy 2.0 (DataDirectory) RFI Vulnerability
  8627. Greenwood Content Manager 0.3.2 Local File Inclusion Exploit
  8628. Hamster Audio Player 0.3a Local Buffer Overflow PoC
  8629. Mozilla Firefox 3.5 unicode Remote Buffer Overflow PoC
  8630. Infinity <= 2.0.5 Arbitrary Create Admin Exploit
  8631. Multiple Web Browsers Denial of Service Exploit (1 bug to rule them all)
  8632. Admin News Tools Remote Contents Change Vulnerability
  8633. WebLeague 2.2.0 (profile.php) SQL Injection Vulnerability
  8634. Microsoft Office Web Components (Spreadsheet) ActiveX BOF PoC
  8635. webLeague 2.2.0 (install.php) Remote Change Password Exploit
  8636. webLeague 2.2.0 (Auth Bypass) Remote SQL Injection Exploit
  8637. ZenPhoto Gallery 1.2.5 Admin Password Reset (CRSF)
  8638. Music Tag Editor 1.61 build 212 Remote Buffer Overflow PoC
  8639. Zortam MP3 Player 1.50 (m3u) Integer Division by Zero Exploit
  8640. Zortam MP3 Media Studio 9.40 Multiple Memory Corruption Vulns
  8641. Audio Editor Pro 2.91 Remote Memory Corruption PoC
  8642. VS PANEL 7.5.5 (results.php Cat_ID) SQL Injection Vulnerability
  8643. Hamster Audio Player 0.3a Universal Buffer Overflow Exploit (SEH)
  8644. MultiMedia Jukebox 4.0 Build 020124 (.pst / .m3u) Heap Overflow PoC
  8645. PHP Live! 3.2.1/2 (x) Remote Blind SQL Injection Vulnerability
  8646. Sguil/PADS Remote Server Crash Vulnerability
  8647. dB Masters Multimedia's Content Manager 4.5 SQL Injection Vulnerability
  8648. Easy RM to MP3 Converter 2.7.3.700 (.m3u) Universal BOF Exploit
  8649. MixSense 1.0.0.1 DJ Studio (.mp3 file) Crash Exploit
  8650. Super Simple Blog Script 2.5.4 Local File Inclusion Vulnerability
  8651. Super Simple Blog Script 2.5.4 (entry) SQL Injection Vulnerability
  8652. Mozilla Firefox 3.5 (Font tags) Remote Heap Spray Exploit
  8653. AJOX Poll (managepoll.php) Authentication Bypass Vulnerability
  8654. Battle Blog 1.25 Auth Bypass SQL Injection / HTML Injection Vulns
  8655. Ger Versluis 2000 5.5 24 SITE_fiche.php SQL Injection Vulnerability
  8656. Good/Bad Vote (XSS/LFI) Multiple Remote Vulnerabilities
  8657. Easy RM to MP3 Converter .m3u file Universal Stack Overflow Exploit
  8658. Joomla Component Jobline <= 1.3.1 Blind SQL Injection Vulnerability
  8659. Streaming Audio Player 0.9 (skin) Local Stack Overflow PoC (SEH)
  8660. htmldoc 1.8.27.1 (.html) Universal Stack Overflow Exploit
  8661. Linux 2.6.30+/SELinux/RHEL5 Test Kernel Local Root Exploit 0day
  8662. Soritong MP3 Player 1.0 (SKIN) Local Stack Overflow PoC (SEH)
  8663. WebVision 2.1 (news.php n) Remote SQL Injection Exploit
  8664. RadBIDS GOLD v4 Multiple Remote Vulnerabilities
  8665. RadLance Gold 7.5 Multiple Remote Vulnerabilities
  8666. RadNICS Gold v5 Multiple Remote Vulnerabilities
  8667. Real Helix DNA RTSP and SETUP Request Handler Vulnerabilities
  8668. Adobe related service (getPlus_HelperSvc.exe) Local Privilege Escalation
  8669. EpicVJ 1.2.8.0 (.mpl/.m3u) Local Heap Overflow PoC
  8670. Silentum Guestbook 2.0.2 (silentum_guestbook.php) SQL Injection Vuln
  8671. Netrix CMS 1.0 Authentication Bypass Vulnerability
  8672. MiniCWB 2.3.0 (LANG) Remote File Inclusion Vulnerabilities
  8673. MCshoutbox 1.1 (SQL/XSS/Shell) Multiple Remote Vulnerabilities
  8674. FreeBSD 7.2 (pecoff executable) Local Denial of Service Exploit
  8675. PulseAudio setuid Local Privilege Escalation Exploit
  8676. PulseAudio (setuid) Priv. Escalation Exploit (ubu/9.04)(slack/12.2.0)
  8677. DD-WRT (httpd service) Remote Command Execution Vulnerability
  8678. Alibaba-clone CMS (SQL/bSQL) Remote SQL Injection Vulnerabilities
  8679. Acoustica MP3 Audio Mixer 2.471 (.sgp file) Crash Exploit
  8680. Acoustica MP3 Audio Mixer 2.471(.m3u) Local Heap Overflow PoC
  8681. Mozilla Firefox 3.5 (Font tags) Remote Heap Spray Exploit (pl)
  8682. Streaming Audio Player 0.9 (skin) Local Stack Overflow (SEH)
  8683. Soritong MP3 Player 1.0 (SKIN) Local Stack Overflow Exploit (SEH)
  8684. E-Xoopport 3.1 Module MyAnnonces (lid) SQL Injection Vulnerability
  8685. powerUpload 2.4 (Auth Bypass) Insecure Cookie Handling Vulnerability
  8686. KMplayer <= 2.9.4.1433 (.srt File) Local Buffer Overflow PoC
  8687. WINMOD 1.4 (.lst File) Local Buffer Overflow Exploit (SEH)
  8688. FlyHelp (.CHM File) Local Buffer Overflow PoC
  8689. Adobe Acrobat 9.1.2 NOS Local Privilege Escalation Exploit
  8690. MS Office Web Components Spreadsheet ActiveX (OWC10/11) Exploit
  8691. AnotherPHPBook (APB) v.1.3.0 (Auth Bypass) SQL Injection Vulnerability
  8692. phpDirectorySource (XSS/SQL) Multiple Remote Vulnerabilities
  8693. Meta Search Engine Script (url) Local File Disclosure Vulnerability
  8694. otsAV 1.77.001 (.ofl File) Local Heap Overflow PoC
  8695. WINMOD 1.4 (.lst) Universal Buffer Overflow Exploit (SEH) #2
  8696. Phorum <= 5.2.11 Permanent Cross Site Scripting Vulnerabilities
  8697. WINMOD 1.4 (.lst) Local Stack Overflow Exploit
  8698. e107 Plugin my_gallery 2.4.1 readfile() Local File Disclosure Exploit
  8699. GLinks 2.1 (cat) Remote Blind SQL Injection Vulnerability
  8700. AWCM 2.1 Local File Inclusion / Auth Bypass Vulnerabilities
  8701. Joomla Component com_joomloads (packageId) SQL Injection Vuln
  8702. PHP Melody 1.5.3 Remote File Upload Injection Vulnerability
  8703. OpenH323 Opal SIP Protocol Remote Denial of Service Exploit
  8704. Ekiga 2.0.5 (GetHostAddress) Remote Denial of Service Exploit
  8705. WzdFTPD <= 8.0 Remote Denial of Service Exploit
  8706. Million-Dollar Pixel Ads Platinum (SQL/XSS) Multiple Vulnerabilities
  8707. Joomla Extension UIajaxIM 1.1 JavaScript Execution Vulnerability
  8708. PHP Live! 3.2.1/2 (x) Remote Blind SQL Injection Exploit
  8709. Basilic 1.5.13 (index.php idAuthor) SQL Injection Vulnerability
  8710. Mozilla Firefox 3.5 (Font tags) Remote Buffer Overflow Exploit (osx)
  8711. SaphpLesson v4.0 (Auth Bypass) SQL Injection Vulnerability
  8712. Xoops Celepar Module Qas (codigo) SQL Injection Vulnerability
  8713. Wordpress 2.8.1 (url) Remote Cross Site Scripting Exploit
  8714. Deonixscripts Templates Management 1.3 SQL Injection Vulnerability
  8715. Scripteen Free Image Hosting Script 2.3 SQL Injection Exploit
  8716. MS Internet Explorer 7/8 findText Unicode Parsing Crash Exploit
  8717. PHP Live! <= 3.2.2 (questid) Remote SQL Injection Vulnerability
  8718. Clip Bucket <= 1.7.1 Insecure Cookie Handling Vulnerability
  8719. Scripteen Free Image Hosting Script 2.3 Insecure Cookie Handling Vuln
  8720. Pixaria Gallery 2.3.5 (file) Remote File Disclosure Exploit
  8721. Joomla Almond Classifieds 7.5 (com_aclassf) Multiple Vulnerabilities
  8722. Almond Classifieds Ads (bSQL/XSS) Multiple Remote Vulnerabilities
  8723. SkaDate Dating (RFI/LFI/XSS) Multiple Remote Vulnerabilities
  8724. XOOPS Celepar Module Qas (bSQL/XSS) Multiple Remote Vulnerabilities
  8725. GarageSalesJunkie (SQL/XSS) Multiple Remote Vulnerabilities
  8726. URA 3.0 (cat) remote SQL injection Vulnerability
  8727. stftp <= 1.10 (PWD Response) Remote Stack Overflow PoC
  8728. ISC DHCP dhclient < 3.1.2p1 Remote Buffer Overflow PoC
  8729. iWiccle 1.01 (LFI/SQL) Multiple Remote Vulnerabilities
  8730. VS PANEL 7.5.5 (Cat_ID) SQL Injection Vulnerability (patched?)
  8731. Cisco WLC 4402 Basic Auth Remote Denial of Service (meta)
  8732. PHP Paid 4 Mail Script (home.php page) Remote File Inclusion Vuln
  8733. Super Mod System v3 (s) SQL Injection Vulnerability
  8734. Inout Adserver (id) Remote SQL injection Vulnerability
  8735. Adobe Acrobat 9.1.2 NOS Local Privilege Escalation Exploit (py)
  8736. Allomani Mobile 2.5 Remote Blind SQL Injection Exploit
  8737. Allomani Songs & Clips 2.7.0 Blind SQL Injection Exploit
  8738. Allomani Movies & Clips 2.7.0 Remote Blind SQL Injection Exploit
  8739. IXXO Cart! Standalone and Joomla Component SQL Injection Vuln
  8740. MP3 Studio 1.0 (.mpf /.m3u File) Local Stack Overflow PoC
  8741. NcFTPd <= 2.8.5 Remote Jail Breakout Vulnerability
  8742. PunBB Automatic Image Upload <= 1.3.5 Remote SQL Injection Exploit
  8743. PunBB Automatic Image Upload <= 1.3.5 Delete Arbitrary File Exploit
  8744. Limny 1.01 (Auth Bypass) SQL Injection Vulnerability
  8745. Magician Blog <= 1.0 (ids) Remote SQL Injection Vulnerability
  8746. Magician Blog <= 1.0 (Auth Bypass) SQL injection Vulnerability
  8747. SerWeb <= 2.1.0-dev1 2009-07-02 Multiple RFI Vulnerabilities
  8748. MP3 Studio 1.0 (.mpf /.m3u File) Local Stack Overflow Exploit (SEH)
  8749. PHP Paid 4 Mail Script (paidbanner.php ID) SQL Injection Vulnerability
  8750. phpArcadeScript 4.0 (linkout.php id) SQL Injection Vulnerability
  8751. PunBB Reputation.php Mod <= 2.0.4 Blind SQL Injection Exploit
  8752. In-Portal 4.3.1 Arbitrary Shell Upload Vulnerability
  8753. MP3 Studio v1.0 (mpf File) Local BOF Exploit (SEH)
  8754. PaoLink 1.0 (login_ok) Authentication Bypass Vulnerability
  8755. PaoBacheca Guestbook 2.1 (login_ok) Auth Bypass Vulnerability
  8756. PaoLiber 1.1 (login_ok) Authentication Bypass Vulnerability
  8757. Firebird SQL op_connect_request main listener shutdown Vulnerability
  8758. TinyBrowser (TinyMCE Editor File browser) 1.41.6 Multiple Vulnerabilities
  8759. Ultrize TimeSheet 1.2.2 Remote File Inclusion Vulnerability
  8760. Millenium MP3 Studio 1.0 .mpf File Local Stack Overflow Exploit (update)
  8761. WINMOD 1.4 (.lst) Local Stack Overflow Exploit XP SP3 (RET+SEH) #3
  8762. ISC BIND 9 Remote Dynamic Update Message Denial of Service PoC
  8763. Microsoft Windows XP (win32k.sys) Local Privilege Escalation Exploit
  8764. Compface 1.1.5 (.xbm File) Local Buffer Overflow Exploit
  8765. VLC Media Player 0.8.6f smb:// URI Handling Remote BOF Exploit
  8766. Epiri Professional Web Browser 3.0 Remote Crash Exploit
  8767. EPSON Status Monitor 3 Local Privilege Escalation Vulnerability
  8768. IBM AIX 5.3 libc MALLOCDEBUG File Overwrite Vulnerability
  8769. Ultrize TimeSheet 1.2.2 readfile() Local File Disclosure Vulnerability
  8770. justVisual 1.2 (fs_jVroot) Remote File Inclusion Vulnerabilities
  8771. Orbis CMS 1.0 (AFD/ADF/ASU/SQL) Multiple Remote Vulnerabilities
  8772. dit.cms 1.3 (path/sitemap/relPath) Local File Inclusion Vulnerabilities
  8773. CMSphp 0.21 (LFI/XSS) Multiple Remote Vulnerabilities
  8774. d.net CMS (LFI/SQLI) Multiple Remote Vulnerabilities
  8775. Really Simple CMS 0.3a (pagecontent.php PT) Local File Inclusion Vulnerability
  8776. MUJE CMS 1.0.4.34 Local File Inclusion Vulnerabilities
  8777. PunBB Reputation.php Mod <= 2.0.4 Local File Inclusion Exploit
  8778. linkSpheric 0.74b6 (listID) Remote SQL Injection Vulnerability
  8779. Google SketchUp Pro 7.0 (.skp file) Remote Stack Overflow PoC
  8780. VLC Media Player 0.8.6f smb:// URI Handling Remote BOF Exploit (univ)
  8781. SAP Business One 2005-A License Manager Remote BOF Exploit
  8782. Arab Portal v2.x (forum.php qc) Remote SQL Injection Exploit
  8783. Destiny Media Player 1.61 (.pls) Universal Buffer Overflow Exploit (SEH)
  8784. MAXcms 3.11.20b Multiple Remote File Inclusion Vulnerabilities
  8785. VirtualBox 2.2 - 3.0.2 r49928 Local Host Reboot PoC
  8786. Joomla Component com_jfusion (Itemid) Blind SQL Injection Vuln
  8787. PortalXP - Teacher Edition 1.2 Multiple SQL Injection Vulnerabilities
  8788. aa33code 0.0.1 (LFI/Auth Bypass/DCD) Multiple Remote Vulnerabilites
  8789. Mobilelib Gold v3 (Auth Bypass/SQL) Multiple Remote Vulnerabilities
  8790. AW BannerAd (Auth Bypass) SQL Injection Vulnerability
  8791. BlazeDVD 5.1 Professional (.PLF File) Local Buffer Overflow Exploit (SEH)
  8792. Amaya 11.2 W3C Editor/Browser (defer) Remote BOF Exploit (SEH)
  8793. ProjectButler 1.5.0 (pda_projects.php offset) RFI Vulnerability
  8794. Ajax Short URL Script (Auth Bypass) SQL Injection Vulnerability
  8795. Netpet CMS 1.9 (confirm.php language) Local File Inclusion Vulnerability
  8796. QuickDev 4 (download.php file) File Disclosure Vulnerability
  8797. TT Web Site Manager 0.5 (Auth Bypass) SQL Injection Vulnerability
  8798. SimpleLoginSys 0.5 (Auth Bypass) SQL Injection Vulnerability
  8799. simplePHPWeb 0.2 (files.php) Authentication Bypass Vulnerability
  8800. Miniweb 2.0 Module Publisher (bSQL-XSS) Multiple Vulnerabilities
  8801. Miniweb 2.0 Module Survey Pro (bSQL/XSS) Multiple Vulnerabilities
  8802. x10 Media Adult Script 1.7 Multiple Remote Vulnerabilities
  8803. Questions Answered 1.3 (Auth Bypass) Remote SQL Injection Vuln
  8804. Elvin BTS 1.2.2 (SQL/XSS) Multiple Remote Vulnerabilities
  8805. MediaCoder 0.6.2.4275 (.lst File) Stack Buffer Overflow Exploit
  8806. Multi Website 1.5 (index php action) SQL Injection Vulnerability
  8807. RadASM 2.2.1.5 (.mnu File) Local Format String PoC
  8808. Blaze HDTV Player 6.0 (.PLF File) Local Buffer Overflow Exploit (SEH)
  8809. Arab Portal <= 2.2 (mod.php module) Local File Inclusion Vulnerability
  8810. Blink Blog System (Auth Bypass) SQL Injection Vulnerability
  8811. Discloser 0.0.4-rc2 (index.php more) SQL Injection Vulnerability
  8812. MAXcms 3.11.20b RFI / File Disclosure Vulnerabilities
  8813. Payment Processor Script (shop.htm cid) SQL Injection Vulnerability
  8814. Linux Kernel <= 2.6.31-rc5 sigaltstack 4-Byte Stack Disclosure Exploit
  8815. MOC Designs PHP News 1.1 (Auth Bypass) SQL Injection Vulnerability
  8816. MediaCoder 0.7.1.4486 (.lst) Universal Buffer Overflow Exploit (SEH)
  8817. elgg <= 1.5 (/_css/js.php) Local File Inclusion Vulnerability
  8818. Shopmaker CMS 2.0 (bSQL/ LFI) Multiple Remote Vulnerabilities
  8819. Perl$hop e-commerce Script Trust Boundary Input Parameter Injection
  8820. In-Portal 4.3.1 (index.php env) Local File Inclusion Vulnerability
  8821. jetAudio 7.1.9.4030 plus vx (.m3u) Local Buffer Overflow PoC
  8822. BlazeDVD 5.1/HDTV Player 6.0 (.PLF File) Universal BOF Exploit (SEH)
  8823. RadASM 2.2.1.6 Menu Editor (.mnu) Stack Overflow PoC
  8824. MS Internet Explorer 8.0.7100.0 Simple HTML Remote Crash PoC
  8825. Linux Kernel < 2.6.14.6 procfs Kernel Memory Disclosure Exploit
  8826. Tuniac v.090517c (.M3U File) Local File Crash PoC
  8827. MyBackup 1.4.0 (AFD/RFI) Multiple Remote Vulnerabilities
  8828. jetAudio v 7.1.9.4030 plus vx (.m3u ) Local Stack Overflow (SEH)
  8829. Tenrok 1.1.0 (UDD/RCE) Multiple Remote Vulnerabilities
  8830. UltraPlayer Media Player 2.112 Local Buffer Overflow PoC
  8831. Irokez CMS 0.7.1 Remote SQL Injection Vulnerability
  8832. AccessoriesMe PHP Affiliate Script 1.4 (bSQL-XSS) Multiple Vulns
  8833. OpenNews 1.0 (SQLI/RCE) Multiple Remote Vulnerabilities
  8834. Portel v2008 (decide.php patron) Blind SQL Injection Vulnerability
  8835. FreeBSD 7.2-RELEASE SCTP Local Kernel Denial of Service Exploit
  8836. JetAudio 7.1.9.4030 Universal Stack Overflow Exploit (SEH)
  8837. jetAudio <= 7.5.5 plus vx (M3U/ASX/WAX/WVX) Local Crash PoC
  8838. A2 Media Player Pro 2.51 (.m3u /m3l) Universal Local BOF Exploit (SEH)
  8839. PHP Script Forum Hoster (Topic Delete/XSS) Multiple Vulnerabilities
  8840. Playlistmaker 1.5 (.M3U/M3L File) Local Stack Overflow Exploit (seh)
  8841. TYPO3 CMS 4.0 (showUid) Remote SQL Injection Vulnerability
  8842. Groovy Media Player 1.2.0 (.m3u) Local Buffer Overflow PoC
  8843. ImTOO MPEG Encoder 3.1.53 (.cue/.m3u) Local Buffer Overflow PoC
  8844. LM Starmail 2.0 (SQL Injection/File Inclusion) Multiple Vulnerabilities
  8845. Alwasel 1.5 Multiple Remote SQL Injection Vulnerabilities
  8846. PHotoLa Gallery <= 1.0 (Auth Bypass) SQL Injection Vulnerability
  8847. Steam v.54/894 Local Privilege Escalation Vulnerability
  8848. Banner Exchange Script 1.0 (targetid) Blind SQL Injection Vuln
  8849. Logoshows BBS 2.0 (forumid) Remote SQL Injection Vulnerability
  8850. Typing Pal <= 1.0 (idTableProduit) SQL Injection Vulnerability
  8851. iRehearse (.m3u File) Local Buffer Overflow PoC
  8852. FoxPlayer 1.1.0 (m3u File) Local Buffer Overflow PoC
  8853. Arab Portal 2.2 (Auth Bypass) Blind SQL Injection Exploit
  8854. PHPCityPortal (Auth Bypass) Remote SQL Injection Vulnerability
  8855. Facil Helpdesk (RFI/LFI/XSS) Multiples Remote Vulnerabilities
  8856. IsolSoft Support Center 2.5 (RFI/LFI/XSS) Multiples Vulnerabilities
  8857. Joomla Component com_pms 2.0.4 (Ignore-List) SQL Injection Exploit
  8858. Logoshows BBS 2.0 (Auth Bypass) SQL Injection Vulnerability
  8859. Logoshows BBS 2.0 (DD/ICH) Multiple Remote Vulnerabilities
  8860. Spiceworks 3.6 Accept Parameter Overflow Crash Exploit
  8861. SmilieScript <= 1.0 (Auth Bypass) SQL Injection Vulnerability
  8862. Papoo CMS 3.7.3 Authenticated Arbitrary Code Execution Vulnerability
  8863. Mini-CMS 1.0.1 (page.php id) SQL Injection Vulnerability
  8864. CMS Made Simple <= 1.6.2 Local File Disclosure Vulnerability
  8865. Joomla Component Kunena Forums (com_kunena) bSQL Injection Exploit
  8866. MediaCoder 0.7.1.4490 (.lst/.m3u) Universal BOF Exploit (SEH)
  8867. Wordpress <= 2.8.3 Remote Admin Reset Password Vulnerability
  8868. Embedthis Appweb 3.0b.2-4 Remote Buffer Overflow PoC
  8869. Easy Music Player 1.0.0.2 (wav) Universal Local Buffer Exploit (SEH)
  8870. Joomla Component idoblog 1.1b30 (com_idoblog) SQL Injection Vuln
  8871. OCS Inventory NG 1.2.1 (systemid) SQL Injection Vulnerability
  8872. MS Windows 2003 (EOT File) BSOD Crash Exploit
  8873. Easy Music Player 1.0.0.2 (wav) Universal Local Buffer Exploit (SEH) #2
  8874. Shorty 0.7.1b (Auth Bypass) Insecure Cookie Handling Vulnerability
  8875. Easy Music Player 1.0.0.2 (wav) Universal Local Buffer Exploit (SEH)
  8876. Gallarific 1.1 (gallery.php) Arbitrary Delete/Edit Category Vuln
  8877. 2WIRE Gateway Authentication Bypass & Password Reset Vulnerabilities
  8878. MS Wordpad on winXP SP3 Local Crash Exploit
  8879. Plume CMS 1.2.3 Multiple SQL Injection Vulnerabilities
  8880. Gazelle CMS 1.0 Multiple Vulnerabilities / RCE Exploit
  8881. FTPShell Client 4.1 RC2 Name Session Stack Overflow Exploit
  8882. VLC Media Player 1.0.0/1.0.1 smb:// URI Handling BOF PoC
  8883. pIPL 2.5.0 (.PLS /.PL) Universal Local Buffer Exploit (SEH)
  8884. EmbedThis Appweb v3.0B.2-4 Multiple Remote Buffer Overflow PoC
  8885. JBLOG 1.5.1 Remote SQL Table Backup Exploit
  8886. Wordpress Plugin WP-Syntax <= 0.9.1 Remote Command Execution
  8887. THOMSON ST585 (user.ini) Arbitrary Download Vulnerability
  8888. Gazelle CMS 1.0 Remote Arbitrary Shell Upload Vulnerability
  8889. TGS CMS 0.x (XSS/SQL/FD) Multiple Remote Vulnerabilities
  8890. Linux Kernel 2.x sock_sendpage() Local Ring0 Root Exploit
  8891. Linux Kernel 2.x sock_sendpage() Local Root Exploit #2
  8892. Ignition 1.2 (comment) Remote Code Injection Vulnerability
  8893. PHP Competition System <= 0.84 (competition) SQL Injection Vuln
  8894. DS CMS 1.0 (nFileId) Remote SQL Injection Vulnerability
  8895. MyWeight 1.0 Remote Shell Upload Vulnerability
  8896. Linux Kernel < 2.6.30.5 cfg80211 Remote Denial of Service Exploit
  8897. Adobe JRun 4 (logfile) Directory Traversal Vulnerability (auth)
  8898. PHP-Lance 1.52 Multiple Local File Inclusion Vulnerabilities
  8899. BaBB 2.8 Remote Code Injection Exploit
  8900. HTML Email Creator & Sender 2.3 Local Buffer Overflow PoC (SEH)
  8901. AJ Auction Pro OOPD 2.x (store.php id) SQL Injection Exploit
  8902. SPIP < 2.0.9 Arbitrary Copy All Passwords to XML File Remote Exploit
  8903. TheGreenBow VPN Client tgbvpn.sys Local DoS Exploit
  8904. Vtiger CRM 5.0.4 (RCE/CSRF/LFI/XSS) Multiple Vulnerabilities
  8905. Dreampics Builder (exhibition_id) Remote SQL Injection Vulnerability
  8906. Arcadem Pro 2.8 (article) Blind SQL Injection Exploit
  8907. Videos Broadcast Yourself V2 (UploadID) SQL Injection Vuln
  8908. Safari 4.0.2 (WebKit Parsing of Floating Point Numbers) BOF PoC
  8909. MS Internet Explorer (Javascript SetAttribute) Remote Crash Exploit
  8910. ZTE ZXDSL 831 II Modem Arbitrary Add Admin User Vulnerability
  8911. broid 1.0 Beta 3a (.mp3 File) Local Buffer Overflow PoC
  8912. Xenorate Media Player 2.6.0.0 (.xpl) Universal Local Buffer Exploit (SEH)
  8913. 2WIRE Gateway (Auth Bypass & Password Reset) Vulnerabilities #2
  8914. Autonomous LAN party <= 0.98.3 Remote File Inclusion Vulnerability
  8915. E Cms <= 1.0 (index.php s) Remote SQL Injection Vulnerability
  8916. Infinity <= 2.x.x options[style_dir] Local File Disclosure Vulnerability
  8917. Joomla Component MisterEstate Blind SQL Injection Exploit
  8918. Fotoshow PRO (category) Remote SQL Injection Vulnerability
  8919. phpfreeBB 1.0 Remote BLIND SQL Injection Vulnerability
  8920. Playlistmaker 1.51 (.m3u File) Local Buffer Overflow Exploit (SEH)
  8921. KOL Player 1.0 (.mp3 File) Local Buffer Overflow PoC
  8922. ProSysInfo TFTP Server TFTPDWIN 0.4.2 Remote BOF Exploit
  8923. Ultimate Fade-in slideshow 1.51 Shell Upload Vulnerability
  8924. PHP Email Manager (remove.php ID) SQL Injection Vulnerability
  8925. CBAuthority - ClickBank Affiliate Management SQL Injection Vulnerability
  8926. Best Dating Script Arbitrary Shell Upload Vulnerability
  8927. ZTE ZXDSL 831 II Modem Arbitrary Configuration Access Vulnerability
  8928. Traidnt UP 2.0 Remote SQL Injection Exploit
  8929. asaher pro 1.0.4 Remote Database Backup Vulnerability
  8930. VUPlayer <= 2.49 (.m3u File) Universal Buffer Overflow Exploit
  8931. Linux Kernel 2.x sock_sendpage() Local Root Exploit (Android Edition)
  8932. Radix Antirootkit < 1.0.0.9 (SDTHLPR.sys) Privilege Escalation Exploit
  8933. Linux Kernel 2.4/2.6 sock_sendpage() ring0 Root Exploit (simple ver)
  8934. Ed Charkow's Supercharged Linking Blind SQL Injection Exploit
  8935. Moa Gallery 1.1.0 (gallery_id) Remote SQL Injection Vulnerability
  8936. Arcade Trade Script 1.0b (Auth Bypass) Insecure Cookie Handling Vuln
  8937. Photodex ProShow Gold 4 (.psh File) Universal BOF Exploit XP SP3 (SEH)
  8938. PHP Dir Submit (aid) Remote SQL Injection Vulnerability
  8939. Cuteflow 2.10.3 edituser.php Security Bypass Vulnerability
  8940. KSP 2006 FINAL ( .M3U) Universal Local Buffer Exploit (SEH)
  8941. Faslo Player 7.0 (.m3u) Local Buffer Overflow PoC
  8942. FreeBSD <= 6.1 kqueue() NULL pointer Dereference Local Root Exploit
  8943. Multiple BSD Operating Systems setusercontext() Vulnerabilities
  8944. Lanai Core 0.6 Remote File Disclosure / Info Disclosure Vulns
  8945. BlazeDVD 5.1 Professional (.PLF File) Local BOF Exploit (SEH) (xp/vista)
  8946. Avast! 4.8.1335 Professional Local Kernel Buffer Overflow Exploit
  8947. Uebimiau Webmail 3.2.0-2.0 Arbitrary Database Disclosure Vuln
  8948. humanCMS (Auth Bypass) SQL Injection Vulnerability
  8949. Fat Player 0.6b (.wav File) Universal Local Buffer Exploit
  8950. WAR-FTPD 1.65 (MKD/CD Requests) Denial of Service Vuln
  8951. ITechBids 8.0 (itechd.php productid) Blind SQL Injection Exploit
  8952. Netgear WNR2000 FW 1.2.0.8 Information Disclsoure Vulnerabilities
  8953. New5starRating 1.0 (rating.php) SQL Injection Vulnerability
  8954. NaviCopa Web Server 3.01 Remote Buffer Overflow Exploit
  8955. Audacity <= 1.2 (.gro File) Universal BOF Exploit (egg hunter)
  8956. Joomla Component com_ninjamonial 1.1 (testimID) SQL Injection Vuln
  8957. Huawei SmartAX MT880 Multiple XSRF Vulnerabilities
  8958. Joomla Component com_jtips 1.0.x (season) bSQL Injection Vuln
  8959. Geeklog <= 1.6.0sr1 Remote Arbitrary File Upload Vulnerability
  8960. FLIP Flash Album Deluxe 1.8.407.1 (.fft File) Crash PoC
  8961. AiO ( All into One) Flash Mixer 3 (.afp File) Crash PoC
  8962. ProFTP 2.9 (welcome message) Remote Buffer Overflow Exploit (meta)
  8963. Media Jukebox 8 ( .M3U) Universal Local Buffer Exploit (SEH)
  8964. Joomla Component com_siirler 1.2 (sid) SQL Injection Vulnerability
  8965. Turnkey Arcade Script (id) Remote SQL Injection Vulnerability
  8966. TCPDB 3.8 Remote Content Change Bypass Vulnerabilities
  8967. Linux Kernel <= 2.6.31-rc7 AF_LLC getsockname 5-Byte Stack Disclosure
  8968. Xerox WorkCentre Multiple Models Denial of Service Exploit
  8969. Cerberus FTP 3.0.1 (ALLO) Remote Overflow DoS Exploit (meta)
  8970. Novell Client for Windows 2000/XP ActiveX Remote DoS Vulnerability
  8971. Lotus note connector for Blackberry Manager 5.0.0.11 ActiveX DoS Vuln
  8972. EMO Breader Manager (video.php movie) SQL Injection Vulnerability
  8973. ProShow Producer / Gold 4.0.2549 (.psh) Universal BOF Exploit (SEH)
  8974. HyperVM File Permissions Local Vulnerability
  8975. Linux Kernel <= 2.6.30 atalk_getname() 8-bytes Stack Disclosure Exploit
  8976. Moa Gallery <= 1.2.0 Multiple Remote File Inclusion Vulnerabilities
  8977. Moa Gallery 1.2.0 (index.php action) SQL Injection Vulnerability
  8978. TotalCalendar 2.4 (bSQL/LFI) Multiple Remote Vulnerabilities
  8979. Moa Gallery <= 1.2.0 (p_filename) Remote File Disclosure Vulnerability
  8980. Simple CMS FrameWork <= 1.0 (page) Remote SQL Injection Vuln
  8981. TFTPUtil GUI 1.3.0 Remote Denial of Service Exploit
  8982. Discuz! Plugin Crazy Star <= 2.0 (fmid) SQL Injection Vulnerability
  8983. Open Auto Classifieds <= 1.5.9 Multiple Remote Vulnerabilities
  8984. PAD Site Scripts 3.6 (list.php string) SQL Injection Vulnerability
  8985. allomani 2007 (cat) Remote SQL Injection Vulnerability
  8986. phpSANE 0.5.0 (save.php) Remote File Inclusion Vulnerability
  8987. Joomla Component com_digifolio 1.52 (id) SQL Injection Vulnerability
  8988. Uiga Church Portal (year) Remote SQL Injection Vulnerability
  8989. PIPL <= 2.5.0 (.m3u File) Universal Buffer Overflow Exploit (SEH)
  8990. Kaspersky 2010 Remote Memory Corruption / DoS PoC
  8991. Silurus Classifieds System (category.php) SQL Injection Vulnerability
  8992. uTorrent <= 1.8.3 (Build 15772) Create New Torrent Buffer Overflow PoC
  8993. HTML Creator & Sender <= 2.3 build 697 Local BOF Exploit (SEH)
  8994. Microsoft IIS 5.0/6.0 FTP Server Remote Stack Overflow Exploit (win2k)
  8995. Linux Kernel 2.6 < 2.6.19 (32bit) ip_append_data() ring0 Root Exploit
  8996. Linux Kernel < 2.6.31-rc7 AF_IRDA 29-Byte Stack Disclosure Exploit
  8997. Modern Script <= 5.0 (index.php s) SQL Injection Vulnerability
  8998. Linux Kernel 2.4/2.6 sock_sendpage() Local Root Exploit (ppc)
  8999. Swift Ultralite 1.032 (.M3U) Local Buffer Overflow PoC
  9000. SolarWinds TFTP Server <=9.2.0.111 Remote DoS Exploit
  9001. Ultimate Player 1.56b (.m3u/upl) Universal Local BOF Exploit (SEH)
  9002. MailEnable 1.52 HTTP Mail Service Stack BOF Exploit PoC
  9003. Hex Workshop 4.23//5.1//6.0 (.hex) Universal Local BOF Exploits (SEH)
  9004. Media Jukebox 8 (.pls) Universal Local Buffer Exploit (SEH)
  9005. Re-Script v.0.99 Beta ( listings.php op ) SQL Injection Vulnerability
  9006. BandCMS 0.10 news.php Multiple SQL Injection Vulnerabilities
  9007. Apple iPhone 2.2.1/3.x (MobileSafari) Crash & Reboot Exploit
  9008. Mybuxscript PTC-BUX (spnews.php) SQL Injection Vulnerability
  9009. osCommerce Online Merchant 2.2 RC2a Code Execution Exploit
  9010. Microsoft IIS 5.0 FTP Server Remote Stack Overflow Exploit (win2k sp4)
  9011. Soritong MP3 Player 1.0 (.m3u//UI.txt) Universal Local BOF Exploits
  9012. AIMP2 Audio Converter <= 2.53b330 (.pls/.m3u) Unicode Crash PoC
  9013. JSFTemplating, Mojarra Scales, GlassFish File Disclosure Vulnerabilities
  9014. Joomla Component com_artportal 1.0 (portalid) SQL Injection Vulns
  9015. Joomla Component Agora 3.0.0b (com_agora) LFI Vulnerability
  9016. Xstate Real Estate 1.0 (bSQL/XSS) Multiples Vulnerabilities
  9017. Kingcms 0.6.0 (menu.php) Remote File Inclusion Vulnerability
  9018. Hamster Audio Player 0.3a (Associations.cfg) Local Buffer Exploit (SEH)
  9019. akPlayer 1.9.0 (.plt File) Universal Buffer Overflow Exploit (SEH)
  9020. phpBB3 addon prime_quick_style GetAdmin Vulnerability
  9021. Ve-EDIT 0.1.4 (debug_php.php) Local File Inclusion Vulnerability
  9022. Joomla Component com_gameserver 1.0 (id) SQL Injection Vulnerability
  9023. DataLife Engine 8.2 dle_config_api Remote File Inclusion Vulnerability
  9024. dTunes 2.72 (Filename Processing) Local Format String PoC
  9025. Linux Kernel < 2.6.19 udp_sendmsg Local Root Exploit (x86/x64)
  9026. Linux Kernel < 2.6.19 udp_sendmsg Local Root Exploit
  9027. Discuz! Plugin JiangHu <= 1.1 (id) SQL Injection Vulnerability
  9028. Ve-EDIT 0.1.4 (highlighter) Remote File Inclusion Vulnerability
  9029. PHP Live! 3.3 (deptid) Remote SQL Injection Vulnerability
  9030. Adobe Acrobat/Reader < 7.1.1/8.1.3/9.1 Collab getIcon Universal Exploit
  9031. Hamster Audio Player 0.3a (Associations.cfg) Local Buffer Exploit (SEH)
  9032. SAP Player 0.9 (.m3u) Universal Local BOF Exploit (SEH)
  9033. FreeSchool <= 1.1.0 Multiple Remote File Inclusion Vulnerabilities
  9034. PHPope <= 1.0.0 Multiple Remote File Inclusion Vulnerabilities
  9035. PPstream 2.6.86.8900 PPSMediaList ActiveX Remote BOF PoC (1)
  9036. PPstream 2.6.86.8900 PPSMediaList ActiveX Remote BOF PoC (2)
  9037. SIDVault 2.0e Windows Remote Buffer Overflow Exploit
  9038. Microsoft IIS 5.0/6.0 FTP Server (Stack Exhaustion) Denial of Service
  9039. Mambo Component com_zoom (catid) Blind SQL Injection Vulnerability
  9040. OTSTurntables 1.00.027 (.m3u/ofl) Local Universal BOF Exploit (SEH)
  9041. Zeroboard 4.1 pl7 now_connect() Remote Code Execution Exploit
  9042. Ticket Support Script (ticket.php) Remote Shell Upload Vulnerability
  9043. SIDVault 2.0e Windows Remote Buffer Overflow Exploit (meta)
  9044. Joomla Compenent com_joomlub (aid) SQL Injection Vulnerability
  9045. Windows Vista/7 SMB2.0 Negotiate Protocol Request Remote BSOD Vuln
  9046. HTMLDOC 1.8.27 (html File Handling) Stack Buffer Overflow Exploit
  9047. SIDVault 2.0e Windows Universal Buffer Overflow Exploit (SEH)
  9048. Novell eDirectory 8.8 SP5 Remote Denial of Service Exploit
  9049. Linux Kernel 2.4/2.6 sock_sendpage() Local Root Exploit [2]
  9050. The Rat CMS Alpha 2 Arbitrary File Upload Vulnerability
  9051. OBOphiX <= 2.7.0 (fonctions_racine.php) Remote File Inclusion Vuln
  9052. Joomla Component BF Survey Pro Free SQL Injection Exploit
  9053. Joomla Component TPDugg 1.1 Blind SQL Injection Exploit
  9054. Model Agency Manager Pro (user_id) SQL Injection Vulnerability
  9055. Joomla Component com_joomloc (id) SQL Injection Vulnerability
  9056. Agoko CMS <= 0.4 Remote Command Execution Exploit
  9057. Safari 3.2.3 (Win32) JavaScript (eval) Remote DoS Exploit
  9058. Ipswitch WS_FTP 12 Professional Remote Format String PoC
  9059. GemStone/S 6.3.1 (stoned) Local Buffer Overflow Exploit
  9060. Mambo Component com_hestar Remote SQL Injection Vulnerability
  9061. Audio Lib Player (m3u File) Buffer Overflow Exploit (SEH)
  9062. phpNagios 1.2.0 (menu.php) Local File Inclusion Vulnerability
  9063. ChartDirector 5.0.1 (cacheId) Arbitrary File Disclosure Vulnerability
  9064. FTPShell Client 4.1 RC2 Remote Buffer Overflow Exploit (univ)
  9065. Pidgin MSN <= 2.5.8 Remote Code Execution Exploit
  9066. Dnsmasq < 2.50 Heap Overflow & Null pointer Dereference Vulns
  9067. Millenium MP3 Studio (pls/mpf/m3u) Local Universal BOF Exploits (SEH)
  9068. jetAudio 7.1.9.4030 plus vx(asx/wax/wvx) Universal Local BOF (SEH)
  9069. Media Player Classic 6.4.9 (.mid) Integer Overflow PoC
  9070. Kolibri+ Webserver 2 (Get Request) Denial of Service Vulnerability
  9071. WarFTPd 1.82.00-RC12 (LIST command) Format String DoS Exploit
  9072. Advanced Comment System 1.0 Multiple RFI Vulnerabilities
  9073. KSP 2009R2 (m3u) Universal Local Buffer Overflow Exploit (SEH)
  9074. Nullam Blog 0.1.2 (LFI/FD/SQL/XSS) Multiple Remote Vulnerabilities
  9075. INMATRIX Zoom Player Pro <= 6.0.0 (.MID) Integer Overflow PoC
  9076. Enlightenment - Linux Null PTR Dereference Exploit Framework
  9077. Icarus 2.0 (.pgn File) Universal Local Buffer Overflow Exploit (SEH)
  9078. Graffiti CMS 1.x Arbitrary File Upload Vulnerability
  9079. MYRE Holiday Rental Manager (action) SQL Injection Vulnerability
  9080. iDesk (download.php cat_id) Remote SQL Injection Vulnerability
  9081. Accommodation Hotel Booking Portal (hotel_id) SQL Injection Vuln
  9082. Bus Script (sitetext_id) Remote SQL Injection Vulnerability
  9083. Adult Portal escort listing (user_id) Remote SQL Injection Vulnerability
  9084. Drunken:Golem Gaming Portal (admin_news_bot.php) RFI Vulnerability
  9085. An image gallery 1.0 (navigation.php) Local Directory Traversal Vuln
  9086. T-HTB Manager 0.5 Multiple Blind SQL Injection Vulnerabilities
  9087. Kolibri+ Webserver 2 Remote Source Code Disclosure Vulnerability
  9088. Image voting 1.0 (index.php show) SQL Injection Vulnerability
  9089. Gyro 5.0 (SQL/XSS) Multiple Remote Vulnerabilities
  9090. Linux Kernel 2.4/2.6 sock_sendpage() Local Root Exploit [3]
  9091. FreeRadius < 1.1.8 Remote Packet of Death Exploit (CVE-2009-3111)
  9092. Kolibri+ Webserver 2 Directory Traversal Vulnerability
  9093. Kolibri+ Webserver 2 (GET Request) Remote SEH Overwrite Exploit
  9094. IBM AIX 5.6/6.1 _LIB_INIT_DBG Arbitrary File Overwrite via Libc Debug
  9095. Siemens Gigaset SE361 WLAN Remote Reboot Exploit
  9096. PHP-IPNMonitor (maincat_id) Remote SQL Injection Vulnerability
  9097. Joomla Hotel Booking System XSS/SQL Injection Multiple Vulnerabilities
  9098. Xerver HTTP Server 4.32 Arbitrary Source Code Disclosure Vuln
  9099. Kolibri+ Web Server 2 Remote Arbitrary Source Code Disclosure #2
  9100. Mozilla Firefox < 3.0.14 Multiplatform RCE via pkcs11.addmodule
  9101. Oracle Secure Backup Server 10.3.0.1.0 Auth Bypass/RCI Exploit
  9102. Joomla Component Turtushout 0.11 (Name) SQL Injection Vulnerability
  9103. Joomla Component AlphaUserPoints SQL Injection Exploit
  9104. Invisible Browsing 5.0.52 (.ibkey) Local Buffer Overflow Exploit
  9105. Aurora CMS 1.0.2 (install.plugin.php) Remote File Inclusion Vulnerability
  9106. httpdx Web Server 1.4 (Host Header) Remote Format String DoS Exploit
  9107. Neufbox NB4-R1.5.10-MAIN Persistent XSS Vulnerability
  9108. Portable E.M Magic Morph 1.95b .MOR File Stack Buffer Overflow PoC
  9109. Techlogica HTTP Server 1.03 Arbitrary File Disclosure Exploit
  9110. MP3 Studio 1.0 (.m3u File) Local Buffer Overflow Exploit
  9111. IPSwitch IMAP Server <= 9.20 Remote Buffer Overflow Exploit
  9112. Mozilla Firefox 2.0.0.16 UTF-8 URL Remote Buffer Overflow Exploit
  9113. FtpXQ FTP Server 3.0 Remote Denial of Service Exploit (auth)
  9114. PHP Pro Bid Remote Blind SQL Injection Exploit
  9115. Apple Safari IPhone (using tel:) Remote Crash Exploit
  9116. Cerberus FTP Server 3.0.3 Remote Denial of Service Exploit
  9117. Batch Picture Watemark 1.0 (.jpg File) Local Crash PoC
  9118. Bs Counter 2.5.3 (page) Remote SQL Injection Vulnerability
  9119. FotoTagger 2.12.0.0 (.XML File) Buffer Overflow PoC
  9120. Tuniac v.090517c (.PLS File) Local Crash PoC
  9121. PowerISO 4.0 Local Buffer Overflow PoC
  9122. BigAnt Server 2.50 GET Request Remote BOF Exploit (SEH) 0day
  9123. Three Pillars Help Desk v3 (Auth Bypass) SQL Injection Vulnerability
  9124. HotWeb Rentals (details.asp PropId) Blind SQL Injection Vuln
  9125. BRS Webweaver 1.33 /Scripts Access Restriction Bypass Vulnerability
  9126. HERO SUPER PLAYER 3000 .M3U File Buffer Overflow POC
  9127. Protector Plus Antivirus 8/9 Local Privilege Escalation Vulnerability
  9128. efront <= 3.5.4 (database.php path) Remote File Inclusion Vulnerability
  9129. Adobe ShockWave Player 11.5.1.601 ActiveX Buffer Overflow PoC
  9130. Novell Groupwise Client 7.0.3.1294 ActiveX Denial of Service PoC
  9131. EasyMail Quicksoft 6.0.2.0 ActiveX Remote Code Execution PoC
  9132. EasyMail Quicksoft 6.0.2.0 (CreateStore) ActiveX Code Execution PoC
  9133. VLC Media Player < 0.9.6 (CUE) Local Buffer Overflow PoC
  9134. SAP Player 0.9 (.pla) Universal Local Buffer Overflow Exploit (SEH)
  9135. NetAccess IP3 (ping option) Command Injection Vulnerability (auth)
  9136. MP3 Collector 2.3 (m3u File) Local Crash PoC
  9137. BigAnt Server 2.50 GET Request Remote BOF Exploit (SEH) Universal
  9138. DJ Studio Pro 4.2 (.PLS file) Local Crash Exploit
  9139. iBoutique.MALL 1.2 (cat) Remote Blind SQL Injection Vulnerability
  9140. Joomla Component com_djcatalog SQL/bSQL Injection Vulnerabilities
  9141. NaviCOPA Web Server 3.01 Remote Source Code Disclosure Vulnerability
  9142. BigAnt Server 2.50 SP1 (ZIP File) Local Buffer Overflow PoC
  9143. AdsDX 3.05 (Auth Bypass) Remote SQL Injection Vulnerability
  9144. Joomla com_foobla_suggestions (idea_id) SQL Injection Vulnerability
  9145. Joomla Component com_jlord_rss (id) Blind SQL Injection Exploit
  9146. MicroCMS 3.5 (SQL/LFI) Multiple Remote Vulnerabilities
  9147. Saphplesson 4.3 Remote Blind SQL Injection Exploit
  9148. Notepad++ 5.4.5 Local .C/CPP Stack Buffer Overflow PoC (0day)
  9149. Elite Gaming Ladders 3.2 (platform) SQL Injection Vulnerability
  9150. phpPollScript <= 1.3 (include_class) Remote File Inclusion Vulnerability
  9151. Quiksoft EasyMail 6.0.3.0 imap connect() ActiveX BOF Exploit
  9152. Quiksoft EasyMail 6 (AddAttachment) Remote Buffer Overflow Exploit
  9153. Joomla Component com_album 1.14 Directory Traversal Vulnerability
  9154. Ease Audio Cutter 1.20 (.wav file) Local Crash PoC
  9155. OpenSiteAdmin 0.9.7b (pageHeader.php path) RFI Vulnerability
  9156. Changetrack 4.3-3 Local Privilege Escalation Vulnerability
  9157. CF Shopkart 5.3x (itemid) Remote SQL Injection Vulnerability
  9158. FMyClone 2.3 Multiple SQL Injection Vulnerabilities
  9159. Nephp Publisher Enterprise 4.5 (Auth Bypass) SQL Injection Vulnerability
  9160. Joomla Component com_jreservation 1.5 (pid) Blind SQL Injection Exploit
  9161. MS Windows WebDAV (ntdll.dll) Remote Exploit
  9162. MS Windows WebDAV Remote PoC Exploit
  9163. MS Windows RPC Locator Service Remote Exploit
  9164. Samba 2.2.x Remote Root Buffer Overflow Exploit
  9165. Samba 2.2.8 Remote Root Exploit - sambal.c
  9166. PoPToP PPTP <= 1.1.4-b3 Remote Root Exploit
  9167. PoPToP PPTP <= 1.1.4-b3 Remote Root Exploit (poptop-sane.c)
  9168. MS Windows SMB Authentication Remote Exploit
  9169. Real Server < 8.0.2 Remote Exploit (Windows Platforms)
  9170. Sendmail <= 8.12.8 prescan() BSD Remote Root Exploit
  9171. CommuniGate Pro Webmail 4.0.6 Session Hijacking Exploit
  9172. WsMp3d 0.x Remote Root Heap Overflow Exploit
  9173. Webfroot Shoutbox < 2.32 (Apache) Remote Exploit
  9174. MS Windows WebDav II (New) Remote Root Exploit
  9175. Apache <= 2.0.45 APR Remote Exploit -Apache-Knacker.pl
  9176. Atftpd 0.6 Remote Root Exploit (atftpdx.c)
  9177. mnoGoSearch 3.1.20 Remote Command Execution Exploit
  9178. Winmail Mail Server 2.3 Remote Format String Exploit
  9179. ProFTPD 1.2.9RC1 (mod_sql) Remote SQL Injection Exploit
  9180. Yahoo Messenger 5.5 Remote Exploit (DSR-ducky.c)
  9181. Kerio MailServer 5.6.3 Remote Buffer Overflow Exploit
  9182. MS Windows Media Services Remote Exploit (MS03-022)
  9183. Linux eXtremail 1.5.x Remote Format Strings Exploit
  9184. ColdFusion MX Remote Development Service Exploit
  9185. MS Windows WebDav III remote root Exploit (xwdav)
  9186. LeapFTP 2.7.x Remote Buffer Overflow Exploit
  9187. Samba 2.2.8 (Bruteforce Method) Remote Root Exploit
  9188. MS Windows Media Services (nsiislog.dll) Remote Exploit
  9189. Citadel/UX BBS 6.07 Remote Exploit
  9190. miniSQL (mSQL) 1.3 Remote GID Root Exploit
  9191. MS Windows (RPC DCOM) Remote Buffer Overflow Exploit
  9192. MS Windows (RPC DCOM) Remote Exploit (w2k+XP Targets)
  9193. Apache 1.3.x mod_mylo Remote Code Execution Exploit
  9194. MS Windows RPC DCOM Remote Exploit (18 Targets)
  9195. MS Windows (RPC DCOM) Remote Exploit (48 Targets)
  9196. wu-ftpd 2.6.2 off-by-one Remote Root Exploit
  9197. MS Windows (RPC DCOM) Remote Exploit (Universal Targets)
  9198. Cisco IOS 12.x/11.x HTTP Remote Integer Overflow Exploit
  9199. wu-ftpd 2.6.2 Remote Root Exploit (advanced version)
  9200. Oracle XDB FTP Service UNLOCK Buffer Overflow Exploit
  9201. Gopherd <= 3.0.5 FTP Gateway Remote Overflow Exploit
  9202. Real Server 7/8/9 Remote Root Exploit (Windows & Linux)
  9203. GtkFtpd 1.0.4 Remote Root Buffer Overflow Exploit
  9204. Linux pam_lib_smb < 1.1.6 /bin/login Remote Exploit
  9205. eMule/xMule/LMule OP_SERVERMESSAGE Format String Exploit
  9206. 4D WebSTAR FTP Server Suite Remote Buffer Overflow Exploit
  9207. MS Windows (RPC DCOM) Scanner (MS03-039)
  9208. MySQL 3.23.x/4.0.x Remote Exploit
  9209. MS Windows (RPC DCOM) Long Filename Overflow Exploit (MS03-026)
  9210. Solaris Sadmind Default Configuration Remote Root Exploit
  9211. Knox Arkeia Pro 5.1.12 Backup Remote Root Exploit
  9212. MS Windows (RPC DCOM2) Remote Exploit (MS03-039)
  9213. GNU Cfengine 2.-2.0.3 Remote Stack Overflow Exploit
  9214. ProFTPD 1.2.9rc2 ASCII File Remote Root Exploit
  9215. MS Windows (RPC2) Universal Exploit & DoS (RPC3) (MS03-039)
  9216. ProFTPD 1.2.7 - 1.2.9rc2 Remote Root & brute-force Exploit
  9217. NIPrint LPD-LPR Print Server <= 4.10 Remote Exploit
  9218. MS Windows XP/2000 RPC Remote (non exec memory) Exploit
  9219. MS Frontpage Server Extensions fp30reg.dll Exploit (MS03-051)
  9220. IA WebMail 3.x (iaregdll.dll version 1.0.0.5) Remote Exploit
  9221. Apache mod_gzip (with debug_mode) <= 1.2.26.1a Remote Exploit
  9222. Apache 1.3.*-2.0.48 mod_userdir Remote Users Disclosure Exploit
  9223. Eznet v3.5.0 Remote Stack Overflow and Denial of Service Exploit
  9224. MS Windows Messenger Service Remote Exploit FR (MS03-043)
  9225. Eznet 3.5.0 Remote Stack Overflow Universal Exploit
  9226. Cyrus IMSPD v1.7 abook_dbname Remote Root Exploit
  9227. Serv-U FTPD 3.x/4.x "SITE CHMOD" Command Remote Exploit
  9228. GateKeeper Pro 4.7 web proxy Remote Buffer Overflow Exploit
  9229. PSOProxy 0.91 Remote Buffer Overflow Exploit (Win2k/XP)
  9230. IPSwitch IMail LDAP Daemon Remote Buffer Overflow Exploit
  9231. Serv-U FTPD 3.x/4.x/5.x (MDTM) Remote Overflow Exploit
  9232. WFTPD Server <= 3.21 Remote Buffer Overflow Exploit
  9233. WS_FTP Server <= 4.0.2 ALLO Remote Buffer Overflow Exploit
  9234. eSignal 7.6 STREAMQUOTE Remote Buffer Overflow Exploit
  9235. Monit <= 4.1 Remote Root Buffer Overflow Exploit
  9236. Monit <= 4.2 Remote Root Buffer Overflow Exploit
  9237. Half Life (rcon) Remote Buffer Overflow Exploit
  9238. MS Windows IIS Unicode Remote Transversal Bug
  9239. MS Windows IIS Unicode Remote Transversal Bug (2)
  9240. MS Windows IIS Unicode Remote Transversal Bug (3)
  9241. MS Windows IIS Unicode Remote Transversal Bug (4)
  9242. wu-ftpd 2.6.0 Remote Root Exploit
  9243. BFTPd vsprintf() Format Strings Exploit
  9244. INND/NNRP < 1.6.X Remote Root Overflow Exploit
  9245. Solaris sadmind Remote Buffer Overflow Exploit
  9246. PHP 3.0.16/4.0.2 Remote Format Overflow Exploit
  9247. BFTPd 1.0.12 Remote Exploit
  9248. LPRng 3.6.22/23/24 Remote Root Exploit
  9249. LPRng (RedHat 7.0) lpd Remote Root Format String Exploit
  9250. Oops! 1.4.6 (one russi4n proxy-server) Heap Buffer Overflow Exploit
  9251. LPRng 3.6.24-1 Remote Root Exploit
  9252. OpenBSD 2.6 / 2.7ftpd Remote Exploit
  9253. Linux Kernel 2.2 (TCP/IP Weakness) Exploit
  9254. wu-ftpd 2.6.0 Remote Format Strings Exploit
  9255. IMAP4rev1 10.190 Authentication Stack Overflow Exploit
  9256. Cisco Password Bruteforcer Exploit
  9257. Netscape Enterprise Server 4.0/sparc/SunOS 5.7 Remote Exploit
  9258. MS Windows 2000 sp1/sp2 isapi .printer Extension Overflow Exploit
  9259. MS Windows 2000 sp1/sp2 isapi .printer Extension Overflow Exploit (2)
  9260. BeroFTPD 1.3.4(1) Linux x86 Remote Root Exploit
  9261. MS Windows IIS 5.0 SSL Remote buffer overflow Exploit (MS04-011)
  9262. BIND 8.2.x (TSIG) Remote Root Stack Overflow Exploit
  9263. BIND 8.2.x (TSIG) Remote Root Stack Overflow Exploit (2)
  9264. BIND 8.2.x (TSIG) Remote Root Stack Overflow Exploit (3)
  9265. BIND 8.2.x (TSIG) Remote Root Stack Overflow Exploit (4)
  9266. IMAP4rev1 12.261/12.264/2000.284 (lsub) Remote Exploit
  9267. MS Windows Lsasrv.dll RPC Remote Buffer Overflow Exploit (MS04-011)
  9268. HP Web JetAdmin 6.5 (connectedNodes.ovpl) Remote Root Exploit
  9269. MS Windows XP/2K Lsasrv.dll Remote Universal Exploit (MS04-011)
  9270. Sasser Worm ftpd Remote Buffer Overflow Exploit (port 5554)
  9271. CVS Remote Entry Line Heap Overflow Root Exploit (Linux/FreeBSD)
  9272. CVS Remote Entry Line Root Heap Overflow Exploit
  9273. Borland Interbase <= 7.x Remote Exploit
  9274. Subversion 1.0.2 svn_time_from_cstring() Remote Exploit
  9275. rlpr <= 2.04 msg() Remote Format String Exploit
  9276. MySQL 4.1/5.0 zero-length password Auth. Bypass Exploit
  9277. Linux imapd Remote Overflow File Retrieve Exploit
  9278. Solaris /bin/login Remote Root Exploit (SPARC/x86)
  9279. wu-ftpd <= 2.6.1 Remote Root Exploit
  9280. SSH (x2) Remote Root Exploit
  9281. Drcat 0.5.0-beta (drcatd) Remote Root Exploit
  9282. Samba <= 3.0.4 SWAT Authorization Buffer Overflow Exploit
  9283. OpenFTPD (<= 0.30.2) Remote Exploit
  9284. OpenFTPD <= 0.30.1 (message system) Remote Shell Exploit
  9285. BlackJumboDog Remote Buffer Overflow Exploit
  9286. Pavuk Digest Authentication Buffer Overflow Remote Exploit
  9287. xine 0.99.2 Remote Stack Overflow Exploit
  9288. Dropbear SSH <= 0.34 Remote Root Exploit
  9289. Mac OS X <= 10.3.3 AppleFileServer Remote Root Overflow Exploit
  9290. Remote CVS <= 1.11.15 (error_prog_name) Remote Exploit
  9291. WU-IMAP 2000.287(1-2) Remote Exploit
  9292. rsync <= 2.5.1 Remote Exploit
  9293. rsync <= 2.5.1 Remote Exploit (2)
  9294. BSD (telnetd) Remote Root Exploit
  9295. Citadel/UX Remote Buffer Overflow Exploit
  9296. TiTan FTP Server Long Command Heap Overflow PoC Exploit
  9297. Courier-IMAP <= 3.0.2-r1 auth_debug() Remote Format String Exploit
  9298. Citadel/UX <= 6.23 Remote USER Directive Exploit (Private Version)
  9299. BlackJumboDog FTP Server 3.6.1 Remote Buffer Overflow Exploit
  9300. MDaemon 6.5.1 IMAP/SMTP Remote Buffer Overflow Exploit
  9301. IPSwitch WhatsUp Gold 8.03 Remote Buffer Overflow Exploit
  9302. Icecast <= 2.0.1 Win32 Remote Code Execution Exploit
  9303. Icecast <= 2.0.1 Win32 Remote Code Execution Exploit (modded)
  9304. YahooPOPs <= 1.6 SMTP Port Buffer Overflow Exploit
  9305. Monit <= 4.2 Basic Authentication Remote Root Exploit
  9306. YahooPOPs <= 1.6 SMTP Remote Buffer Overflow Exploit
  9307. Ability Server <= 2.34 (STOR) Remote Buffer Overflow Exploit
  9308. ShixxNote 6.net Remote Buffer Overflow Exploit
  9309. Ability Server <= 2.34 (APPE) Remote Buffer Overflow Exploit
  9310. MailCarrier 2.51 SMTP EHLO / HELO Buffer Overflow Exploit
  9311. WvTFTPd 0.9 Remote Root Heap Overflow Exploit
  9312. MiniShare <= 1.4.1 Remote Buffer Overflow Exploit
  9313. Ability Server 2.34 FTP STOR Buffer Overflow Exploit (Unix Exploit)
  9314. CCProxy Log Remote Stack Overflow Exploit
  9315. Qwik SMTP 0.3 Remote Root Format String Exploit
  9316. CCProxy 6.2 (ping) Remote Buffer Overflow Exploit
  9317. SlimFTPd <= 3.15 Remote Buffer Overflow Exploit
  9318. IPSwitch IMail 8.13 (DELETE) Remote Stack Overflow Exploit
  9319. MiniShare Remote Buffer Overflow Exploit (c source)
  9320. MailCarrier 2.51 Remote Buffer Overflow Exploit
  9321. SLMail 5.5 POP3 PASS Buffer Overflow Exploit
  9322. DMS POP3 Server (1.5.3 build 37) Buffer Overflow Exploit
  9323. Prozilla 1.3.6 Remote Stack Overflow Exploit
  9324. MailEnable Mail Server IMAP <= 1.52 Remote Buffer Overflow Exploit
  9325. PHP <= 4.3.7/ 5.0.0RC3 memory_limit Remote Exploit
  9326. Mercury Mail 4.01 (Pegasus) IMAP Buffer Overflow Exploit
  9327. Mercury Mail 4.01 (Pegasus) IMAP Buffer Overflow Exploit (c code)
  9328. Mercury Mail 4.01 (Pegasus) IMAP Buffer Overflow v2 (c code)
  9329. Citadel/UX <= 6.27 Remote Root Format String Exploit
  9330. Ability Server <= 2.34 Remote APPE Buffer Overflow Exploit
  9331. e107 include() Remote Exploit
  9332. Webmin BruteForce and Command Execution Exploit
  9333. CrystalFTP Pro 2.8 Remote Buffer Overflow Exploit
  9334. SHOUTcast DNAS/Linux 1.9.4 Format String Remote Exploit
  9335. Solaris 2.5.1/2.6/7/8 rlogin /bin/login Buffer Overflow Exploit (SPARC)
  9336. PHP <= 4.3.7 openlog() Buffer Overflow Exploit
  9337. MS Windows 2000 WINS Remote Code Execution Exploit
  9338. MS Windows NetDDE Remote Buffer Overflow Exploit (MS04-031)
  9339. Webmin Web Brute Force v1.5 (cgi-version)
  9340. Webmin BruteForce + Command Execution v1.5
  9341. Veritas Backup Exec Agent 8.x/9.x Browser Overflow (c version)
  9342. NodeManager Professional 2.00 Buffer Overflow Vulnerability
  9343. Apache OpenSSL Remote Exploit (Multiple Targets) (OpenFuckV2.c)
  9344. Golden FTP Server <= 2.02b Remote Buffer Overflow Exploit
  9345. Berlios gpsd <= 2.7.x Remote Format String Vulnerability
  9346. Savant Web Server 3.1 Remote Buffer Overflow Exploit
  9347. ngIRCd <= 0.8.2 Remote Format String Exploit
  9348. Newspost 2.1 socket_getline() Remote Buffer Overflow Exploit v2
  9349. Savant Web Server 3.1 Remote Buffer OverflowExploit (win2003)
  9350. 3CServer 1.1 FTP Server Remote Exploit
  9351. ELOG <= 2.5.6 Remote Shell Exploit
  9352. Prozilla <= 1.3.7.3 Remote Format String Exploit
  9353. Exim <= 4.43 auth_spa_server() Remote PoC Exploit
  9354. Savant Web Server 3.1 Remote BoF (French Win OS support)
  9355. Serv-U 4.x "site chmod" Remote Buffer Overflow Exploit
  9356. Dream FTP 1.2 Remote Format String Exploit
  9357. 3Com Ftp Server 2.0 Remote Overflow Exploit
  9358. Medal of Honor Spearhead Server Remote Buffer Overflow (Linux)
  9359. 3Com 3CDaemon FTP Unauthorized "USER" Remote BoF Exploit
  9360. Knox Arkeia Server Backup 5.3.x Remote Root Exploit
  9361. Thomson TCW690 POST Password Validation Exploit
  9362. SHOUTcast 1.9.4 File Request Format String Remote Exploit (win)
  9363. GNU Cfengine 2.17p1 RSA Authentication Heap Overflow Exploit
  9364. BadBlue 2.5 Easy File Sharing Remote Buffer Overflow
  9365. BadBlue 2.55 Web Server Remote Buffer Overflow
  9366. Foxmail 1.1.0.1 POP3 Temp Dir Stack Overflow Exploit
  9367. CA License Server (GETCONFIG) Remote Buffer Overflow Exploit (c)
  9368. Sentinel LM 7.x UDP License Service Remote Buffer Overflow Exploit
  9369. GoodTech Telnet Server < 5.0.7 Remote BoF Exploit (updated)
  9370. Smail 3.2.0.120 Remote Root Heap Overflow Exploit
  9371. mtftpd <= 0.0.3 Remote Root Exploit
  9372. Cyrus imapd 2.2.4 - 2.2.8 (imapmagicplus) Remote Exploit
  9373. BakBone NetVault 6.x/7.x Remote Heap Buffer Overflow Exploit (2)
  9374. MS Windows (WINS) Remote Buffer Overflow Exploit (v.3)
  9375. MailEnable Enterprise 1.x Imapd Remote Exploit
  9376. gld 1.4 (Postfix Greylisting Daemon) Remote Format String Exploit
  9377. Sumus 0.2.2 httpd Remote Buffer Overflow Exploit
  9378. PMSoftware Simple Web Server (GET Request) Remote BoF Exploit
  9379. MS Exchange Server Remote Code Execution Exploit (MS05-021)
  9380. PMsoftware Simple Web Server 1.0 Remote Stack Overflow Exploit
  9381. MailEnable Enterprise & Professional https Remote BoF Exploit
  9382. Yager <= 5.24 Remote Buffer Overflow Exploit
  9383. NetFTPd 4.2.2 User Authentication Remote Buffer Overflow Exploit
  9384. MySQL MaxDB Webtool <= 7.5.00.23 Remote Stack Overflow Exploit
  9385. Golden FTP Server Pro 2.52 Remote Buffer Overflow Exploit
  9386. Golden FTP Server Pro 2.52 Remote Buffer Overflow Exploit (2nd)
  9387. Golden FTP Server Pro 2.52 Remote Buffer Overflow Exploit (3rd)
  9388. Snmppd SNMP Proxy Daemon Remote Format String Exploit
  9389. GlobalScape Secure FTP Server 3.0 Buffer Overflow Exploit
  9390. dSMTP Mail Server 3.1b Linux Remote Root Format String Exploit
  9391. BakBone NetVault 6.x/7.x Remote Heap Buffer Overflow
  9392. e-Post SPA-PRO 4.01 (imap) Remote Buffer Overflow Exploit
  9393. IPSwitch IMAP Server LOGON Remote Stack Overflow
  9394. GNU Mailutils imap4d 0.5 < 0.6.90 Remote Format String Exploit
  9395. ViRobot Advanced Server 2.0 (addschup) Remote Cookie Exploit
  9396. PeerCast <= 0.1211 Remote Format String Exploit
  9397. MS Windows Message Queuing BoF Universal Exploit (MS05-017) (v.0.3)
  9398. HP OpenView OmniBack II Generic Remote Exploit
  9399. SlimFTPd <= 3.16 Remote Buffer Overflow Exploit
  9400. GNU Mailutils imap4d <= 0.6 Remote Format String Exploit
  9401. IPSwitch IMail Server <= 8.15 IMAPD Remote Root Exploit
  9402. CA BrightStor ARCserve Backup Agent (dbasqlr.exe) Remote Exploit
  9403. CA BrightStor ARCserve Backup (dsconfig.exe) Buffer Overflow
  9404. CA BrightStor ARCserve Backup Auto Scanner / Exploiter
  9405. MS Windows Plug-and-Play Service Remote Overflow (MS05-039)
  9406. Veritas Backup Exec Remote File Access Exploit (windows)
  9407. MS Windows Plug-and-Play Service Remote Universal Exploit (MS05-039)
  9408. ZENworks 6.5 Desktop/Server Management Remote Stack Overflow
  9409. MDaemon 8.0.3 IMAPD CRAM-MD5 Authentication Overflow Exploit
  9410. Novell eDirectory 8.7.3 iMonitor Remote Stack Overflow
  9411. MS Windows Plug-and-Play Service Remote Universal Exploit (spanish fix)
  9412. MS Windows Plug-and-Play Service Remote Universal Exploit (french fix)
  9413. Savant Web Server 3.1 Remote Buffer Overflow Exploit
  9414. DameWare Mini Remote Control 4.0 < 4.9 (Client Agent) Remote Exploit
  9415. GNU Mailutils imap4d 0.6 (search) Remote Format String Exploit
  9416. WebAdmin <= 2.0.4 USER Buffer Overflow Exploit
  9417. Mercury Mail <= 4.01a (Pegasus) IMAP Buffer Overflow Exploit
  9418. WzdFTPD <= 0.5.4 Remote Command Execution Exploit
  9419. GNU Mailutils imap4d 0.6 (search) Remote Format String Exploit (fbsd)
  9420. Prozilla <= 1.3.7.4 (ftpsearch) Results Handling Buffer Overflow Exploit
  9421. CA iGateway (debug mode) Remote Buffer Overflow Exploit
  9422. MS Windows IIS SA WebAgent 5.2/5.3 Redirect Overflow Exploit (meta)
  9423. HP-UX <= 11.11 lpd Remote Command Execution Exploit (meta)
  9424. CA Unicenter 3.1 CAM log_security() Stack Overflow Exploit (meta)
  9425. Veritas NetBackup <= 6.0 (bpjava-msvc) Remote Exploit (linux)
  9426. Veritas NetBackup <= 6.0 (bpjava-msvc) Remote Exploit (win32)
  9427. Veritas NetBackup <= 6.0 (bpjava-msvc) Remote Exploit (OS X)
  9428. WzdFTPD <= 0.5.4 (SITE) Remote Command Execution Exploit (meta)
  9429. linux-ftpd-ssl 0.17 (MKD/CWD) Remote Root Exploit
  9430. FreeFTPD <= 1.0.8 (USER) Remote Buffer Overflow Exploit
  9431. MailEnable 1.54 Pro Universal IMAPD W3C Logging BoF Exploit
  9432. Google Search Appliance proxystylesheet XSLT Java Code Execution
  9433. Oracle 9.2.0.1 Universal XDB HTTP Pass Overflow Exploit
  9434. Mercury Mail Transport System 4.01b Remote Exploit (PH SERVER)
  9435. Eudora Qualcomm WorldMail 3.0 (IMAPd) Remote Overflow Exploit
  9436. Golden FTP Server <= 1.92 (APPE) Remote Overflow Exploit (meta)
  9437. BlueCoat WinProxy 6.0 R1c (Host) Remote Stack/SEH Overflow Exploit
  9438. eStara Softphone <= 3.0.1.46 (SIP) Remote Buffer Overflow Exploit (2)
  9439. Farmers WIFE 4.4 sp1 (FTP) Remote System Access Exploit
  9440. Veritas NetBackup 4/5 Volume Manager Daemon Remote BoF Exploit
  9441. Sami FTP Server 2.0.1 Remote Buffer Overflow Exploit (meta)
  9442. SHOUTcast <= 1.9.4 File Request Format String Exploit (Leaked)
  9443. Sami FTP Server 2.0.1 Remote Buffer Overflow Exploit (cpp)
  9444. SoftiaCom WMailserver 1.0 SMTP Remote Buffer Overflow Exploit (meta)
  9445. eXchange POP3 5.0.050203 (rcpt to) Remote Buffer Overflow Exploit
  9446. Power Daemon <= 2.0.2 (WHATIDO) Remote Format String Exploit
  9447. OpenVMPSd <= 1.3 Remote Format String Exploit (Multiple Targets)
  9448. Kerio Personal Firewall <= 2.1.4 Remote Authentication Packet Overflow
  9449. RevilloC MailServer 1.21 (USER) Remote Buffer Overflow Exploit PoC
  9450. PeerCast <= 0.1216 (nextCGIarg) Remote Buffer Overflow Exploit
  9451. PeerCast <= 0.1216 (nextCGIarg) Remote Buffer Overflow Exploit (2)
  9452. crossfire-server <= 1.9.0 SetUp() Remote Buffer Overflow Exploit
  9453. BomberClone < 0.11.6.2 (Error Messages) Remote Buffer Overflow Exploit
  9454. PeerCast <= 0.1216 Remote Buffer Overflow Exploit (win32) (meta)
  9455. Novell Messenger Server 2.0 (Accept-Language) Remote Overflow Exploit
  9456. Sybase EAServer 5.2 (WebConsole) Remote Stack Overflow Exploit
  9457. Symantec Scan Engine 5.0.x.x Change Admin Password Remote Exploit
  9458. MySQL <= 5.0.20 COM_TABLE_DUMP Memory Leak/Remote BoF Exploit
  9459. Medal of Honor (getinfo) Remote Buffer Overflow Exploit
  9460. freeSSHd <= 1.0.9 Key Exchange Algorithm Buffer Overflow Exploit
  9461. RealVNC 4.1.0 - 4.1.1 (VNC Null Authentication) Auth Bypass Patch/EXE
  9462. RealVNC 4.1.0 - 4.1.1 (Null Authentication) Auth Bypass Exploit (meta)
  9463. Cyrus IMAPD 2.3.2 (pop3d) Remote Buffer Overflow Exploit
  9464. Novell eDirectory 8.8 Long URI iMonitor Buffer Overflow Exploit (meta)
  9465. QBik Wingate 6.1.1.1077 (POST) Remote Buffer Overflow Exploit
  9466. MS Windows RRAS Remote Stack Overflow Exploit (MS06-025)
  9467. MS Windows RRAS RASMAN Registry Stack Overflow Exploit (MS06-025)
  9468. Winlpd 1.2 Build 1076 Remote Buffer Overflow Exploit
  9469. Webmin < 1.290 / Usermin < 1.220 Arbitrary File Disclosure Exploit (perl)
  9470. Cyrus IMAPD 2.3.2 (pop3d) Remote Buffer Overflow Exploit (2)
  9471. SIPfoundry sipXtapi (CSeq) Remote Buffer Overflow Exploit
  9472. eIQnetworks License Manager Remote Buffer Overflow Exploit (1262)
  9473. AIM Triton 1.0.4 (SipXtapi) Remote Buffer Overflow Exploit (PoC)
  9474. eIQnetworks ESA (Syslog Server) Remote Buffer Overflow Exploit
  9475. eIQnetworks License Manager Remote Buffer Overflow Exploit (multi)
  9476. eIQnetworks License Manager Remote Buffer Overflow Exploit (multi)
  9477. MS Windows NetpIsRemote() Remote Overflow Exploit (MS06-040)
  9478. Cyrus IMAPD 2.3.2 (pop3d) Remote Buffer Overflow Exploit (3)
  9479. MS Windows CanonicalizePathName() Remote Exploit (MS06-040)
  9480. WFTPD 3.23 (SIZE) Remote Buffer Overflow Exploit
  9481. Easy File Sharing FTP Server 2.0 (PASS) Remote Exploit (PoC)
  9482. MDaemon POP3 Server < 9.06 (USER) Remote Heap Overflow Exploit
  9483. MS Windows NetpIsRemote() Remote Overflow Exploit (MS06-040) (2)
  9484. IBM Director < 5.10 (Redirect.bat) Directory Transversal Vulnerability
  9485. RaidenHTTPD 1.1.49 (SoftParserFileXml) Remote Code Execution Exploit
  9486. Mercur Mailserver 5.0 SP3 (IMAP) Remote Buffer Overflow Exploit (2)
  9487. MS Windows NetpIsRemote() Remote Overflow Exploit (MS06-040) (2k3)
  9488. NaviCOPA Web Server 2.01 (GET) Remote Buffer Overflow Exploit
  9489. McAfee ePo 3.5.0 / ProtectionPilot 1.1.0 (Source) Remote Exploit
  9490. Ipswitch IMail Server 2006 / 8.x (RCPT) Remote Stack Overflow Exploit
  9491. AEP SmartGate 4.3b (GET) Arbitrary File Download Exploit
  9492. QK SMTP <= 3.01 (RCPT TO) Remote Buffer Overflow Exploit
  9493. Novell eDirectory 8.8 NDS Server Remote Stack Overflow Exploit
  9494. PrivateWire Gateway 3.7 Remote Buffer Overflow Exploit (win32)
  9495. Easy File Sharing Web Server 4 Remote Information Stealer Exploit
  9496. Omni-NFS Server 5.2 (nfsd.exe) Remote Stack Overflow Exploit (meta)
  9497. MS Windows NetpManageIPCConnect Stack Overflow Exploit (py)
  9498. ProFTPD 1.3.0 (sreplace) Remote Stack Overflow Exploit (meta)
  9499. 3Com TFTP Service <= 2.0.1 (Long Transporting Mode) Overflow Exploit
  9500. AT-TFTP <= 1.9 (Long Filename) Remote Buffer Overflow Exploit
  9501. OpenLDAP <= 2.4.3 (KBIND) Remote Buffer Overflow Exploit
  9502. GNU InetUtils ftpd 1.4.2 (ld.so.preload) Remote Root Exploit
  9503. ProFTPD <= 1.2.9 rc2 (ASCII File) Remote Root Exploit
  9504. MS Windows ASN.1 Remote Exploit (MS04-007)
  9505. Durian Web Application Server 3.02 Remote Buffer Overflow Exploit
  9506. QK SMTP <= 3.01 (RCPT TO) Remote Buffer Overflow Exploit (pl)
  9507. CA BrightStor ARCserve (tapeeng.exe) Remote Buffer Overflow Exploit
  9508. NaviCOPA Web Server 2.01 (GET) Remote Buffer Overflow Exploit meta
  9509. Berlios GPSD <= 2.7 Remote Format String Exploit (meta)
  9510. FileCOPA FTP Server <= 1.01 (LIST) Remote BoF Exploit (meta)
  9511. TFTPDWIN 0.4.2 Remote Buffer Overflow Exploit
  9512. Mercur Messaging 2005 IMAP Remote Buffer Overflow Exploit
  9513. Sami FTP Server 2.0.2 (USER/PASS) Remote Buffer Overflow Exploit
  9514. 3Com TFTP Service <= 2.0.1 Remote Buffer Overflow Exploit (meta)
  9515. CA BrightStor ARCserve (msgeng.exe) Remote Heap Overflow Exploit
  9516. CA BrightStor ARCserve (msgeng.exe) Remote Heap Overflow Exploit 2
  9517. CA BrightStor ARCserve (lgserver.exe) Remote Stack Overflow Exploit
  9518. Imail 8.10-8.12 (RCPT TO) Remote Buffer Overflow Exploit
  9519. Imail 8.10-8.12 (RCPT TO) Remote Buffer Overflow Exploit (meta)
  9520. MySQL 4.x/5.0 User-Defined Function Command Execution Exploit (win)
  9521. SunOS 5.10/5.11 in.telnetd Remote Authentication Bypass Exploit
  9522. IP3 NetAccess < 4.1.9.6 Remote Arbitrary File Disclosure Vulnerability
  9523. Lotus Domino <= R6 Webmail Remote Password Hash Dumper Exploit
  9524. MailEnable Enterprise <= 2.32 - 2.34 Remote Buffer Overflow Exploit
  9525. MailEnable Professional 2.35 Remote Buffer Overflow Exploit
  9526. Axigen eMail Server 2.0.0b2 (pop3) Remote Format String Exploit
  9527. IPSwitch WS-FTP 5.05 (XMD5) Remote Buffer Overflow Exploit (meta)
  9528. 3Com TFTP Service <= 2.0.1 (Long Transporting Mode) Exploit (perl)
  9529. MailEnable Pro/Ent <= 2.37 (APPEND) Remote Buffer Overflow Exploit
  9530. WarFTP 1.65 (USER) Remote Buffer Overflow Exploit (win2k SP4)
  9531. WarFTP 1.65 (USER) Remote Buffer Overflow SEH Overflow Exploit
  9532. CA BrightStor ARCserve (msgeng.exe) Remote Stack Overflow Exploit
  9533. Helix Server 11.0.1 Remote Heap Overflow Exploit (win2k SP4)
  9534. Mercur Messaging 2005 IMAP (SUBSCRIBE) Remote Exploit (win2k SP4)
  9535. Mercur Messaging 2005 <= SP4 IMAP Remote Exploit (egghunter mod)
  9536. FutureSoft TFTP Server 2000 Remote SEH Overwrite Exploit
  9537. dproxy <= 0.5 Remote Buffer Overflow Exploit (meta 2.7)
  9538. Mercury Mail 4.0.1 (LOGIN) Remote IMAP Stack Buffer Overflow Exploit
  9539. WarFTP 1.65 (USER) Remote Buffer Overlow Exploit (multiple targets)
  9540. Easy File Sharing FTP Server 2.0 (PASS) Remote Exploit (Win2K SP4)
  9541. NaviCOPA Web Server 2.01 Remote Buffer Overflow Exploit (meta)
  9542. CA BrightStor Backup 11.5.2.0 (Mediasvr.exe) Remote Code Exploit
  9543. dproxy-nexgen Remote Root Buffer Overflow Exploit (x86-lnx)
  9544. IBM Lotus Domino Server 6.5 PRE AUTH Remote Exploit
  9545. IPSwitch IMail Server <= 8.20 IMAPD Remote Buffer Overflow Exploit
  9546. FileCOPA FTP Server <= 1.01 (LIST) Remote Buffer Overflow Exploit (2)
  9547. Apache Mod_Rewrite Off-by-one Remote Overflow Exploit (win32)
  9548. MS Windows DNS RPC Remote Buffer Overflow Exploit (win2k SP4)
  9549. XAMPP for Windows <= 1.6.0a mssql_connect() Remote BoF Exploit
  9550. MS Windows DNS DnssrvQuery Remote Stack Overflow Exploit
  9551. MS Windows DNS RPC Remote Buffer Overflow Exploit (port 445) v2
  9552. GNU Mailutils imap4d 0.6 Remote Format String Exploit (exec-shield)
  9553. webdesproxy 0.0.1 (GET Request) Remote Buffer Overflow Exploit
  9554. webdesproxy 0.0.1 (GET Request) Remote Root Exploit (exec-shield)
  9555. TinyIdentD <= 2.2 Remote Buffer Overflow Exploit
  9556. Rational Software Hidden Administrator 1.7 Auth Bypass Exploit
  9557. Apache 2.0.58 mod_rewrite Remote Overflow Exploit (win2k3)
  9558. IBM Tivoli Provisioning Manager PRE AUTH Remote Exploit
  9559. Apache mod_jk 1.2.19/1.2.20 Remote Buffer Overflow Exploit
  9560. ESRI ArcSDE 9.0 - 9.2sp1 Remote Buffer Overflow Exploit
  9561. SAP DB 7.4 WebTools Remote SEH overwrite Exploit
  9562. Apache Tomcat Connector (mod_jk) Remote Exploit (exec-shield)
  9563. Lotus Domino IMAP4 Server 6.5.4 Remote Buffer Overflow Exploit
  9564. Windows RSH daemon 1.7 Remote Buffer Overflow Exploit
  9565. IPSwitch IMail Server 2006 SEARCH Remote Stack Overflow Exploit
  9566. IPSwitch IMail Server 2006 9.10 SUBSCRIBE Remote Overflow Exploit
  9567. corehttp 0.5.3alpha (httpd) Remote Buffer Overflow Exploit
  9568. Borland Interbase <= 2007 SP1 Create-Request Remote Overflow Exploit
  9569. Savant 3.1 Get Request Remote Overflow Exploit (Universal)
  9570. Racer v0.5.3 beta 5 Remote Buffer Overflow Exploit
  9571. SurgeMail 38k (SEARCH) Remote Buffer Overflow Exploit
  9572. Mercury/32 4.51 SMTPD CRAM-MD5 Pre-Auth Remote Overflow Exploit
  9573. ProFTPD 1.x (module mod_tls) Remote Buffer Overflow Exploit
  9574. SIDVault LDAP Server Preauth Remote Buffer Overflow Exploit
  9575. Mercury/32 v3.32-v4.51 SMTP Pre-Auth EIP Overwrite Exploit
  9576. Mercury/32 4.52 IMAPD SEARCH command Post-Auth Overflow Exploit
  9577. Lighttpd <= 1.4.17 FastCGI Header Overflow Remote Exploit
  9578. IPSwitch IMail Server 8.0x Remote Heap Overflow Exploit
  9579. Xitami Web Server 2.5 (If-Modified-Since) Remote BoF Exploit (0day)
  9580. smbftpd 0.96 SMBDirList-function Remote Format String Exploit
  9581. eXtremail <= 2.1.1 (LOGIN) Remote Stack Overflow Exploit
  9582. eXtremail <= 2.1.1 PLAIN authentication Remote Stack Overflow Exploit
  9583. Half-Life Server 3.1.1.0 Remote Buffer Overflow Exploit
  9584. eIQnetworks ESA SEARCHREPORT Remote Overflow Exploit (meta)
  9585. IBM Tivoli Storage Manager 5.3 Express CAD Service BoF Exploit
  9586. IBM Lotus Domino 7.0.2FP1 IMAP4 Server LSUB Command Exploit
  9587. HP OpenView Network Node Manager 07.50 CGI Remote BoF Exploit
  9588. 3proxy 0.5.3g logurl() Remote Buffer Overflow Exploit (win32) (pl)
  9589. Sendmail with clamav-milter < 0.91.2 Remote Root Exploit
  9590. BadBlue 2.72 PassThru Remote Buffer Overflow Exploit
  9591. SAP MaxDB <= 7.6.03.07 pre-auth Remote Command Execution Exploit
  9592. Citadel SMTP <= 7.10 Remote Overflow Exploit
  9593. SapLPD 6.28 Remote Buffer Overflow Exploit (win32)
  9594. MDaemon IMAP server 9.6.4 (FETCH) Remote Buffer Overflow Exploit
  9595. NetWin Surgemail 3.8k4-4 IMAP post-auth Remote LIST Universal Exploit
  9596. TFTP Server for Windows 1.4 ST Buffer Overflow Exploit (0day)
  9597. Quick TFTP Pro 2.1 Remote SEH Overflow Exploit (0day)
  9598. mod_jk2 v2.0.2 for Apache 2.0 Remote Buffer Overflow Exploit (win32)
  9599. HP OpenView NNM 7.5.1 OVAS.exe SEH PRE AUTH Overflow Exploit
  9600. Apache Tomcat Connector jk2-2.0.2 (mod_jk2) Remote Overflow Exploit
  9601. HP OpenView NNM v7.5.1 ovalarmsrv.exe Remote Overflow Exploit
  9602. BigAnt Server 2.2 PreAuth Remote SEH Overflow Exploit (0day)
  9603. TFTP Server for Windows 1.4 ST Remote BSS Overflow Exploit
  9604. Debian OpenSSL Predictable PRNG Bruteforce SSH Exploit
  9605. Debian OpenSSL Predictable PRNG Bruteforce SSH Exploit (ruby)
  9606. ASUS DPC Proxy 2.0.0.16/19 Remote Buffer Overflow Exploit
  9607. Now SMS/MMS Gateway 5.5 Remote Buffer Overflow Exploit
  9608. Debian OpenSSL Predictable PRNG Bruteforce SSH Exploit (Python)
  9609. HP StorageWorks NSI Double Take Remote Overflow Exploit (meta)
  9610. freeSSHd 1.2.1 (Post Auth) Remote SEH Overflow Exploit
  9611. SNMPv3 HMAC validation error Remote Authentication Bypass Exploit
  9612. Alt-N SecurityGateway 1.00-1.01 Remote Stack Overflow Exploit
  9613. CMailServer 5.4.6 (CMailCOM.dll) Remote SEH Overwrite Exploit
  9614. trixbox (langChoice) Local File Inclusion Exploit (connect-back) v2
  9615. trixbox 2.6.1 (langChoice) Remote Root Exploit (py)
  9616. Bea Weblogic Apache Connector Code Exec / Denial of Service Exploit
  9617. Apache mod_jk 1.2.19 Remote Buffer Overflow Exploit (win32)
  9618. FlashGet 1.9.0.1012 (FTP PWD Response) SEH STACK Overflow Exploit
  9619. CitectSCADA ODBC Server Remote Stack Buffer Overflow Exploit (meta)
  9620. Solaris 9 [UltraSPARC] sadmind Remote Root Exploit
  9621. GoodTech SSH (SSH_FXP_OPEN) Remote Buffer Overflow Exploit
  9622. MS Windows Server Service Code Execution Exploit (MS08-067) (Univ)
  9623. MS Windows Server Service Code Execution Exploit (MS08-067)
  9624. MS Windows Server Service Code Execution Exploit (MS08-067) (2k/2k3)
  9625. ProSysInfo TFTP server TFTPDWIN <= 0.4.2 Univ. Remote BOF Exploit
  9626. Samba < 3.0.20 Remote Heap Overflow Exploit (oldie but goodie)
  9627. WinFTP 2.3.0 (LIST) Remote Buffer Overflow Exploit (post-auth)
  9628. WFTPD Explorer Pro 1.0 Remote Heap Overflow Exploit
  9629. EFS Easy Chat Server Authentication Request BOF Exploit (SEH)
  9630. EFS Easy Chat Server Authentication Request Buffer Overflow Exploit (pl)
  9631. FreeSSHd 1.2.1 (rename) Remote Buffer Overflow Exploit (SEH)
  9632. XBMC 8.10 (Get Request) Remote Buffer Overflow Exploit (win)
  9633. XBMC 8.10 (takescreenshot) Remote Buffer Overflow Exploit
  9634. XBMC 8.10 (get tag from file name) Remote Buffer Overflow Exploit
  9635. XBMC 8.10 GET Request Remote Buffer Overflow Exploit (SEH) (univ)
  9636. XBMC 8.10 (HEAD) Remote Buffer Overflow Exploit (SEH)
  9637. ftpdmin 0.96 RNFR Remote Buffer Overflow Exploit (xp sp3/case study)
  9638. Steamcast (HTTP Request) Remote Buffer Overflow Exploit (SEH) [1]
  9639. Steamcast (HTTP Request) Remote Buffer Overflow Exploit (SEH) [2]
  9640. Belkin Bulldog Plus HTTP Server Remote Buffer Overflow Exploit
  9641. httpdx <= 0.5b FTP Server (USER) Remote BOF Exploit (SEH)
  9642. httpdx <= 0.5b FTP Server (CWD) Remote BOF Exploit (SEH)
  9643. Soulseek 157 NS Remote Buffer Overflow Exploit (SEH)
  9644. Free Download Manager 2.5/3.0 (Control Server) Remote BOF Exploit
  9645. Bopup Communications Server 3.2.26.5460 Remote SYSTEM Exploit
  9646. Bopup Communications Server (3.2.26.5460) Remote BOF Exploit (SEH)
  9647. SAP Business One 2005-A License Manager Remote BOF Exploit
  9648. ProSysInfo TFTP Server TFTPDWIN 0.4.2 Remote BOF Exploit
  9649. Microsoft IIS 5.0/6.0 FTP Server Remote Stack Overflow Exploit (win2k)
  9650. Microsoft IIS 5.0 FTP Server Remote Stack Overflow Exploit (win2k sp4)
  9651. SIDVault 2.0e Windows Remote Buffer Overflow Exploit
  9652. SIDVault 2.0e Windows Remote Buffer Overflow Exploit (meta)
  9653. SIDVault 2.0e Windows Universal Buffer Overflow Exploit (SEH)
  9654. Kolibri+ Webserver 2 (GET Request) Remote SEH Overwrite Exploit
  9655. Oracle Secure Backup Server 10.3.0.1.0 Auth Bypass/RCI Exploit
  9656. IPSwitch IMAP Server <= 9.20 Remote Buffer Overflow Exploit
  9657. BigAnt Server 2.50 GET Request Remote BOF Exploit (SEH) 0day
  9658. BigAnt Server 2.50 GET Request Remote BOF Exploit (SEH) Universal



Knowledge is Power

GBPPR Projects