All the Bug-脚本攻防 Web Apps
- TotalCalendar 2.4 (inc_dir) Remote File Inclusion Vulnerability
(12-23) - WebFileExplorer 3.1 (Auth Bypass) SQL Injection Vulnerability
(04-28) - Dynamic Flash Forum 1.0 Beta Multiple Remote Vulnerabilities
(04-28) - Absolute Form Processor XE-V 1.5 (Auth Bypass) SQL Injection Vuln
(04-28) - PHP-Agenda <= 2.2.5 Remote File Overwriting Vulnerabilities
(04-28) - FunGamez rc1 (AB/LFI) Multiple Remote Vulnerabilities
(04-27) - Dokeos LMS <= 1.8.5 (whoisonline.php) PHP Code Injection Exploit
(04-25) - MixedCMS 1.0b (LFI/SU/AB/FD) Multiple Remote Vulnerabilities
(04-25) - Studio Lounge Address Book 2.5 Authentication Bypass Vulnerability
(04-25) - I-Rater Pro/Plantinum v4 (Auth Bypass) SQL Injection Vulnerability
(04-25) - FreznoShop 1.3.0 (id) Remote SQL Injection Vulnerability
(04-21) - e107 Plugin userjournals_menu (blog.id) SQL Injection Vulnerability
(04-21) - ASP Product Catalog 1.0 (XSS/DD) Multiple Remote Exploits
(04-21) - Aqua CMS (username) SQL Injection Vulnerability
(04-21) - cpCommerce 1.2.8 (id_document) Blind SQL Injection Vulnerability
(04-18) - eLitius 1.0 (manage-admin.php) Add Admin/Change Password Exploit
(04-18) - FreeWebshop.org 2.2.9 RC2 (lang_file) Local File Inclusion Vulnerability
(04-17) - phpDatingClub (conf.inc) File Disclosure Vulnerability
(04-17) - W2B Restaurant 1.2 (conf.inc) Config File Disclosure Vulnerability
(04-17) - RQMS (Rash) <= 1.2.2 Multiple SQL Injection Vulnerabilities
(04-16) - X-Forum 0.6.2 Remote Command Execution Exploit
(04-14) - SQL注入漏洞的利用
(04-14) - Geeklog <= 1.5.2 SEC_authenticate() SQL Injection Exploit
(04-11) - Exjune Guestbook v2 Remote Database Disclosure Exploit
(04-11) - BackendCMS 5.0 (main.asp id) SQL Injection Vulnerability
(04-11) - Simbas CMS 2.0 (Auth Bypass) SQL Injection Vulnerability
(04-11) - Joomla Component MailTo (article) SQL Injection Vulnerability
(04-10) - Xplode CMS (wrap_script) Remote SQL Injection Vulnerability
(04-10) - WebFileExplorer 3.1 (DB.MDB) Database Disclosure Vulnerability
(04-10) - vsp stats processor 0.45 (gamestat.php gameID) SQL Injection Vuln
(04-09)