webapps

Exploit Database - Exploits for Penetration Testers, Researchers, and Ethical Hackers/漏洞数据库

日期 标题 类别 作者
2013-01-06 Havalite CMS – ‘comment’ HTML Injection
  • webapps
  • Henri Salo
    2013-01-06 Nexpose Security Console – Cross-Site Request Forgery
  • webapps
  • Robert Gilbert
    2013-01-05 pfSense 2.0.1 – Cross-Site Scripting / Cross-Site Request Forgery / Remote Command Execution
  • webapps
  • Yann CAM
    2013-01-04 Simple Web Server 2.3-rc1 – Directory Traversal
  • webapps
  • CwG GeNiuS
    2013-01-04 TomatoCart – ‘json.php’ Security Bypass
  • webapps
  • Aung Khant
    2013-01-04 Multiple WordPress WPScientist Themes – Arbitrary File Upload
  • webapps
  • JingoBD
    2013-01-04 MyBB Profile Wii Friend Code – Multiple Vulnerabilities
  • webapps
  • Ichi
    2013-01-03 WordPress Plugin Uploader – Arbitrary File Upload
  • webapps
  • Sammy FORGIT
    2013-01-02 osTicket – ‘tickets.php?status’ Cross-Site Scripting
  • webapps
  • AkaStep
    2013-01-02 osTicket – ‘l.php?url’ Arbitrary Site Redirect
  • webapps
  • AkaStep
    2013-01-02 WordPress Plugin Xerte Online – ‘save.php’ Arbitrary File Upload
  • webapps
  • Sammy FORGIT
    2013-01-02 Astium VoIP PBX 2.1 build 25399 – Multiple Vulnerabilities/Remote Command Execution
  • webapps
  • xistence
    2013-01-02 e107 1.0.2 – SQL Injection (via Cross-Site Request Forgery)
  • webapps
  • Joshua Reynolds
    2013-01-02 e107 1.0.1 – Arbitrary JavaScript Execution (via Cross-Site Request Forgery)
  • webapps
  • Joshua Reynolds
    2013-01-01 WordPress Plugin Shopping Cart for WordPress – ‘/wp-content/plugins/levelfourstorefront/scripts/administration/exportaccounts.php?reqID’ SQL Injection
  • webapps
  • Sammy FORGIT
    2013-01-01 WordPress Plugin Shopping Cart for WordPress – ‘/wp-content/plugins/levelfourstorefront/scripts/administration/backup.php?reqID’ SQL Injection
  • webapps
  • Sammy FORGIT
    2013-01-01 WordPress Plugin Shopping Cart for WordPress – ‘/wp-content/plugins/levelfourstorefront/scripts/administration/exportsubscribers.php? reqID’ SQL Injection
  • webapps
  • Sammy FORGIT
    2012-12-31 WHMCS 5.0 – Insecure Cookie Authentication Bypass
  • webapps
  • Agd_Scorp
    2012-12-31 Joomla! Component Spider Calendar – ‘date’ Blind SQL Injection
  • webapps
  • Red-D3v1L
    2012-12-31 MyBB 1.6.9 – ‘editpost.php?posthash’ Blind SQL Injection
  • webapps
  • Joshua Rogers
    2012-12-30 WordPress Plugin Zingiri Forums – ‘language’ Local File Inclusion
  • webapps
  • Amirh03in
    2012-12-27 WHM – ‘filtername’ Cross-Site Scripting
  • webapps
  • Rafay Baloch
    2012-12-27 cPanel – ‘detailbw.html’ Multiple Cross-Site Scripting Vulnerabilities
  • webapps
  • Christy Philip Mathew
    2012-12-27 cPanel WebHost Manager (WHM) – ‘/webmail/x3/mail/clientconf.html?acct’ Cross-Site Scripting
  • webapps
  • Christy Philip Mathew