Web :: Apps
Last Updated: 1/2/2008 1:49:57 AM



It's back! TUCoPS H/P Text Archive

Hacking - General Information - Hacking Techniques - Password Security - Internet - Web - Web Apps - PHP - Web Forums - Popular Web Forums - Networks - Wireless - Unix - HP/UX - SGI - BSD - SCO - SunOS/Solaris - Unix-like Platforms - Cisco - Oracle - Network Appliances - Macintosh - Handhelds - Linux - Linux Apps A-M - Linux Apps N-Z - Red Hat/Fedora - Slackware - Debian - Mandriva/Mandrake - Gentoo - SuSE - Conectiva - Trustix - Retro Linux - Antique Systems - Dialup BBSes Windows Windows Apps Windows Network Vulns
Phreaking - General Phreaking - Phreak Boxes - Major Cellular Brands - Other Cellular Brands - Cellular Misc. - Number Lists - Caller ID - Public Phones - Voice Mail - Technical System Info
/etc - Hardware Hacks - Crypto - Malware - PC Hacks - Radio Hacks - Television Hacks - Scams - Physical Security - Espionage - Privacy - Wetware Hacks - Hacker Counterculture - The Law - Totally Miscellaneous



Hardware 99
Are you working with older hardware like us? If you're using the same equipment we are, you probably need service information complete with vacuum tube pinouts and daily coal requirements. This archive isn't quite that old but it is a definite help to anyone who has a PC that is not brand-new anymore. And it's free!

It's Back!
PC Game Sniper 2007
Thousands of cheats, hints, hacks and walkthroughs for PC Games!

Also New: AOH Food!
Our parent site, THC BBS, has returned and brought a huge new text archive with it, containing over 60,000 recipes! And like everything at the AOH complex, it's free!

New Archives

InfoSec News 2005
InfoSec News 2006
InfoSec News 2007

PoliTech 2005
PoliTech 2006
PoliTech 2007


/etc/passwd - 3,400 default passwords
Updated Jul.31/2007

Recover Passwords
Recover Outlook Express Mail & News passwords, IE and Netscape website passwords, dialup (RAS) passwords and more!



Bored? Play some Games!


Text files by
The Fixer, El Oscuro
AOH Staff
and AOH Contributors
!
Phone Sounds
More Phone Sounds
The Fixer's Phreak Box Review
Box Review Handy Index!
Orange Boxing FAQ
Beating Caller ID FAQ
S.O.B. Orange Box
(Version 1.92)

More Caller ID Info
Phrack, Inc.!
Latest (final???) Issue: #63

Updated Nov.26/2006
More Payphone Info

Click here to get it!


It's Back! Check it out now!
New Site: Things I Shot!
Put your cell cam to good use!


The Web Page You Have Reached is now...
This is a Recording (formerly The Web Page You Have Reached)
And you thought we had a lot of telephone sounds!

Rancho Nevada - the biggest, baddest, best BBS game ever written!


easter egg #71


Portals/CMS

WEB4866.HTM
2185 bytes. (2001)
Hypermail, webmail allows execution of local scripts
Exploit   World Wide Web  
HACK1917.HTM
4918 bytes. by M. Lopez (2004)
ASP Portal Multiple Vulnerabilities
Exploit   World Wide Web  
HACK4116.HTM
3402 bytes. by Maxpatrol (2004)
DCP-Portal Multiple vulnerabilities
Exploit   World Wide Web  
HACK0056.HTM
664 bytes. by Zero X (2004)
Directory Traversal in Aprox PHP Portal.
Exploit   World Wide Web  
HACK3686.HTM
1761 bytes. (2004)
e107 web portal Referers HTTP Injection
Exploit   World Wide Web  
HACK3661.HTM
3886 bytes. by RAM (2004)
e107 web portal user.php XSS (Cross Site Scripting)
Exploit   World Wide Web  
BT731.TXT
2067 bytes. (2003)
e107 website system XSS
World Wide Web  
HACK3060.HTM
671 bytes. (2004)
Easyins Stadtportal
Exploit   World Wide Web  
HACK2078.HTM
1059 bytes. by ziemniaq (2004)
JPortal SQL Injects
Exploit   World Wide Web  
HACK2291.HTM
1657 bytes. by khoai (2004)
Mambo Portal lasted version 4.5.1 (1.09) and lower vesion : SQL injection Vulnerability.
Exploit   World Wide Web  
BT367.TXT
6005 bytes. (2003)
Max Web Portal Critical Vulnerabilities
World Wide Web  
HACK1254.HTM
1779 bytes. by O. Segal (2004)
Microsoft SharePoint Portal Server 2001 Multiple XSS vulnerabilities
Exploit   World Wide Web  
HACK3118.HTM
4248 bytes. by hackgen (2004)
ocPortal 1.0.3 Remote file inclusion bug
Exploit   World Wide Web  
HACK3447.HTM
5048 bytes. by DarkBicho (2004)
PowerPortal Multiple vulnerabilities
Exploit   World Wide Web  
BT1653.TXT
1014 bytes. (2003)
PowerPortal v1.1b Cross-Site Scripting Vulnerability CGI:
World Wide Web  
HACK1028.HTM
4447 bytes. by CHT (2004)
Silent Storm Portal Multiple Vulnerabilities
Exploit   World Wide Web  
HACK2914.HTM
9476 bytes. by SCSA (2004)
vbPortal Anonymous Mail Forwarding Vulnerabilities
Exploit   World Wide Web  
HACK4172.HTM
3834 bytes. by C. Scott (2004)
Vignette Application Portal Unauthenticated Diagnostics
Exploit   World Wide Web  
NCMAT.HTM
1845 bytes. by R. Aigner (2001)
NCM.at - Content Management System malformed http possible exploit
Advisory   World Wide Web  
A6074.HTM
2783 bytes. (2003)
Various Content Managing Systems XSS
World Wide Web  

ECommerce Apps

BT653.TXT
1397 bytes. (2003)
.netCart information disclusure
World Wide Web  
BT858.TXT
1449 bytes. (2003)
BBPro Store Builder Path Disclosure
World Wide Web  
HACK1921.HTM
1830 bytes. by M. Lopez (2004)
A-CART Pro & A-CART 2.0 Input Validation Holes
World Wide Web  
SB5922.HTM
2553 bytes. (2003)
a.shopKart Shopping Cart remote SQL database info leakage
Windows   World Wide Web  
HACK1242.HTM
1147 bytes. by parag0d (2004)
Alan Ward Acart Improper authentication checking
Exploit   World Wide Web  
HACK1244.HTM
1121 bytes. by parag0d (2004)
Alan Ward Acart XSS Vulnerabilities
World Wide Web  
HACK1243.HTM
995 bytes. by parag0d (2004)
Alan Ward Acart XSS vulnerabilities in register.asp
World Wide Web  
SCART4.HTM
2309 bytes. by F0bic (2000)
Bytes Interactive's Web Shopper (shopper.cgi) 1.0, 2.0 retrieve arbitrary files
Advisory   World Wide Web  
BT836.TXT
1279 bytes. (2003)
C-Cart Shopping Cart Path Disclosure
World Wide Web  
HACK0613.HTM
3601 bytes. by S-Quadra (2004)
CactuSoft CactuShop 5.0 Lite shopping cart software backdoor
World Wide Web  
HACK0608.HTM
4828 bytes. by S-Quadra (2004)
CactuSoft CactuShop v5.x shopping cart software multiple security vulnerabilities
World Wide Web  
CARELL~1.HTM
1804 bytes. by P. Grundl (2001)
Carello E-Commerce for NT 1.2.1 - Execute arbitrary code with Web Server privileges
Advisory   Windows   World Wide Web  
CARELLO.HTM
2100 bytes. by R. Horton (2000)
Carello web shopping cart under WinNT/IIS - create files on server
Advisory   Windows   World Wide Web  
WEB5530.HTM
1534 bytes. (2002)
Carello web shopping solution remote file execution
Exploit   Windows   World Wide Web  
CART32.HTM
12298 bytes. by Litchfield, Litchfield (2000)
Cart32 backdoor password!
Advisory   Backdoor   World Wide Web  
HACK3235.HTM
3337 bytes. by Dr. Ponidi (2004)
Cart32 Input Validation Flaw in 'GetLatestBuilds?cart32=' Permits Remote Cross-Site Scripting Attacks
World Wide Web  
CART321.HTM
4379 bytes. by Xato Advisory (2000)
Cart32 v3.5 and below Multiple Vulnerabilities
Advisory   World Wide Web  
CART322.HTM
1627 bytes. by C. Hart (2000)
Cart32 v3.5 build 619 weak admin password encryption, in ini file
Advisory   Cryptography   World Wide Web  
WEB5182.HTM
2879 bytes. (2002)
CaupoShop cross site scripting, leads to local mysql database access
Exploit   World Wide Web  
HACK0361.HTM
2899 bytes. by T. Ryan (2004)
Comersus Cart Cross-Site Scripting Vulnerability
World Wide Web  
HACK0360.HTM
2520 bytes. by T. Ryan (2004)
Comersus Cart Improper Request Handling
World Wide Web  
HACK2073.HTM
1503 bytes. by Maestro (2004)
Comersus Shopping Cart http response splitting hole
World Wide Web  
COMMERC1.HTM
2271 bytes. by Midnight Labs (2001)
Commerce.cgi retrieve arbitrary files
Advisory   World Wide Web  
HACK1860.HTM
978 bytes. by Craig (2004)
CommerceSQL Remote File Read Vulnerability
World Wide Web  
HACK1172.HTM
2470 bytes. by cybercide (2004)
CubeCart 2.0.1 Full path disclosure and sql injection
World Wide Web  
COFFICE2.HTM
2997 bytes. by Delphis (2000)
CyberOffice Shopping Cart v2 - score access to customer order/credit card info
Advisory   Windows   World Wide Web  
COFFICE1.HTM
1722 bytes. by Delphis (2000)
CyberOffice Shopping Cart v2 Price Modification
Advisory   Windows   World Wide Web  
BT512.TXT
2287 bytes. (2003)
CyberStrong Shopping Cart - Advisory & Exploit Code
World Wide Web  
SCART2.HTM
8332 bytes. by joe@blarg.net (2000)
Dansie Shopping Cart 3.04 covert emails
Advisory   World Wide Web  
BT1331.TXT
2326 bytes. (2003)
Dansie Shopping Cart Discloses Installation Path to Remote Users
World Wide Web  
HACK0610.HTM
2981 bytes. by S-Quadra (2004)
Dogpatch Software CFWebstore 5.0 shopping cart software multiple security vulnerabilities
World Wide Web  
HACK0612.HTM
6127 bytes. by N. Gudov (2004)
EarlyImpact ProductCart shopping cart software multiple security vulnerabilities
World Wide Web  
HACK1581.HTM
4177 bytes. by Fishnet (2004)
FishCart Integer Overflow / Rounding Error
World Wide Web  
BT847.TXT
1553 bytes. (2003)
geeeekShop Shopping Cart Path Disclosure
World Wide Web  
SCART3.HTM
1984 bytes. by F0bic (2000)
Hassan Consulting's shop.cgi 1.18 (possibly others aswell)
Advisory   World Wide Web  
BT322.TXT
4445 bytes. (2003)
iisCart2000 Administration Security Leak
World Wide Web  
WEB5465.HTM
1308 bytes. (2002)
MetaCart2.sql anonymous database access
Exploit   Windows   World Wide Web  
WEB5621.HTM
1036 bytes. (2002)
Midicart remote database download
Exploit   World Wide Web  
MINIVEND.HTM
1206 bytes. by A. Lazic (2000)
MiniVend 4.04 bad parsing
Advisory   World Wide Web  
MINIVND4.TXT
874 bytes. (2000)
MiniVend 4.04 has vulnerable sample code
Advisory   World Wide Web  
HACK1245.HTM
851 bytes. by parag0d (2004)
Plaintext Vulnerability in Alan Ward Acart
World Wide Web  
BT533.TXT
3781 bytes. (2003)
ProductCart SQL Injection Vulnerability
World Wide Web  
HACK0615.HTM
2857 bytes. by S-Quadra (2004)
QuadComm Q-Shop ASP Shopping Cart Software multiple security vulnerabilities
World Wide Web  
SCART5.HTM
2446 bytes. by CGI Security (2000)
Quickstore Shopping cart 2.00, 2.09.05, 2.05.10 Directory traversal vulnerability
Advisory   World Wide Web  
HACK3232.HTM
3795 bytes. by Dr. Ponidi (2004)
QuikStore Shopping Cart Discloses Installation Path & Files to Remote Users
World Wide Web  
WEB5478.HTM
6507 bytes. (2002)
salescart, metacart remote database access
Exploit   Windows   World Wide Web  
HACK0048.HTM
2402 bytes. by g00db0y (2004)
ShopCartCGI v2.3 Remote arbitrary file retrieving
World Wide Web  
HACK0611.HTM
3616 bytes. by S-Quadra (2004)
Spider Sales shopping cart software multiple security vulnerabilities
World Wide Web  
PDGCART1.HTM
1222 bytes. by Cerberus (2000)
UNIX/NT Web servers with PDGSoft's Cart. Buffer Overflow
Advisory   Multi Platform   World Wide Web  
HACK0618.HTM
4286 bytes. by S-Quadra (2004)
Virtual Programming VP-ASP Shopping Cart 5.0 multiple SQL Injection Vulnerabilities
World Wide Web  
HACK0362.HTM
5484 bytes. by T. Ryan (2004)
VP-ASP Shopping Cart Multiple Vulnerabilities
World Wide Web  
WEB5420.HTM
5939 bytes. (2002)
VP-ASP shopping cart software path disclosure and insecure file permissions.
Exploit   World Wide Web  
SHOPCART.HTM
8043 bytes. by ISS (2000)
Web-Based Shopping Cart Applications - Price tampering
Advisory   World Wide Web  
HACK1116.HTM
1775 bytes. (2004)
X-Cart vulnerability
World Wide Web  
HACK1314.HTM
1012 bytes. (2004)
Zen Cart login.php SQL Injection Vulnerability
World Wide Web  
WEB4946.HTM
1207 bytes. (2001)
Aktivate Shopping System Cross Site Scripting Vulnerability
Exploit   World Wide Web  
EZSHOP.HTM
3892 bytes. by NSFocus (2000)
Alex Heiphetz Group EZshopper 2.0, 3.0 for Unix - read arbitrary files
Advisory   World Wide Web  
DCSHOP1.HTM
10885 bytes. by P. Helms (2001)
DCShop - retrieve cleartext credit cards
Advisory   World Wide Web  
DCSHOP~1.HTM
2306 bytes. by P. Helms (2001)
DCShop can be made to give out customer credit cards in plain text
Advisory   World Wide Web  
EIS.HTM
1570 bytes. by Securax (2000)
Element InstantShop - modify unit price
Advisory   World Wide Web  
JIS1.HTM
2506 bytes. by Security Point (2000)
Java Internet Shop user changeable prices
Advisory   World Wide Web  
HACK3234.HTM
2669 bytes. by Dr. Ponidi (2004)
JShop Input Validation Hole in 'page.php' Permits Cross-Site Scripting Attacks
World Wide Web  
HACK2575.HTM
6441 bytes. by JeiAr (2004)
phpShop Vulnerabilities
World Wide Web  
BT576.TXT
1434 bytes. (2003)
QShop priviledge escalation CGI:
World Wide Web  
USKEEPER.HTM
1746 bytes. by UkR (2001)
UStorekeeper(tm) Online Shopping System - ustorekeeper.pl version 1.6 Read Arbitrary Files
Advisory   World Wide Web  
WEB5603.HTM
1049 bytes. (2002)
Web Shop Manager remote command execution
Exploit   World Wide Web  
BT1449.TXT
1523 bytes. (2003)
Happymall - One more flaw in Happymall CGI:
World Wide Web  
BT1451.TXT
1243 bytes. (2003)
Happymall - One more flaw in Happymall CGI:
World Wide Web  
BT152.TXT
4042 bytes. (2003)
Happymall E-Commerce Remote Command Execution CGI:
Exploit   World Wide Web  
AUKTION1.HTM
1379 bytes. by UkR (2001)
HIS Auktion 1.62 Directory traversal vulnerability
Advisory   Exploit   World Wide Web  
HACK1001.HTM
4897 bytes. by R. Ivgi (2004)
NextPlace.com E-Commerce ASP Engine
World Wide Web  
HACK0943.HTM
900 bytes. by l0om (2004)
oscommerce 2.2 file_manager.php file browsing
World Wide Web  
HACK2590.HTM
1681 bytes. by JeiAr (2004)
osCommerce 2.2-MS1 SQL Injection Vulnerability
World Wide Web  
A6109.HTM
9384 bytes. (2003)
OsCommerce CVS Security Analysis
World Wide Web  
HACK2582.HTM
1988 bytes. by JeiAr (2004)
osCommerce Malformed Session ID XSS Vuln
World Wide Web  
HACK2579.HTM
4617 bytes. by JeiAr (2004)
osCommerce SQL Injection && DoS && Cross Site Scripting
World Wide Web  
WEAVER1.HTM
891 bytes. by M. Ozoral (2000)
Auction Weaver Read Arbitrary Files
Advisory   World Wide Web  
WEAVER3.HTM
5764 bytes. by S. Christey (2000)
Auction Weaver read, write, delete arbitrary files
Advisory   World Wide Web  
BT646.TXT
1753 bytes. (2003)
Auction Works XXS Vulnerability
World Wide Web  
ACF~1.HTM
9745 bytes. by I. Dobrovitski (2001)
Active Classifieds Free Edition 1.0 CGI fails to authenticate administrators
Advisory   World Wide Web  
BT1308.TXT
2058 bytes. (2003)
FuzzyMonkey MyClassifieds SQL Injection Vuln

B06-3735.HTM
1387 bytes. by sledge@paradise.net.nz (2006)
AFCommerce Shopping Cart

B06-2639.HTM
8803 bytes. by bugtraq@fbi.gov (2006)
ishopcart cgi 0day and multiple vulnerabilities

B06-1846.HTM
2388 bytes. by AminRayden@yahoo.com (2006)
NextAge Shopping Cart Software XSS

B06-3238.HTM
2342 bytes. by soltan_defacer@yahoo.com (2006)
productcart soltan_defacer

B06-2683.HTM
6103 bytes. by eufrato@gmail.com (2006)
SCart 2.0 Remote Code Execution

B06-3449.HTM
824 bytes. by luny@youfu**ktard.com (2006)
Shopping Cart V0.9

B06-3384.HTM
1372 bytes. by o.y.6@hotmail.com (2006)
Zen-Cart 1.3.0.2 Full Path Disclosure

B06-1612.HTM
2372 bytes. by rgod@autistici.org (2006)
osCommerce "extras/" information/source code disclosure


Blogs

C07-1678.HTM
4384 bytes. by Stefan Esser (2007)
Advisory 01/2007: WordPress CSRF Protection XSS Vulnerability
World Wide Web  
C07-1672.HTM
5778 bytes. by Stefan Esser (2007)
Advisory 02/2007: WordPress Trackback Charset Decoding SQL Injection Vulnerability
World Wide Web  
C07-1525.HTM
1704 bytes. by xorontr@gmail.com (2006)
Enigma WordPress Bridge (boarddir) Remote File Include
World Wide Web  
C07-2086.HTM
7409 bytes. by bmatheny@mobocracy.net (2007)
Wordpress multi remote vulns
World Wide Web  
C07-2593.HTM
791 bytes. by Omid (2007)
Sql injection in WordPress 2.1.2
World Wide Web  
C07-2481.HTM
5484 bytes. by Stefan Friedli (2007)
Wordpress 2.1.1 - Multiple Script Injection Vulnerabilities
World Wide Web  
C07-1639.HTM
3216 bytes. by kadaj-diabolik@hotmail.fr (2007)
Wordpress <= 2.x dictionnary & Bruteforce attack
World Wide Web  
C07-2541.HTM
647 bytes. by ciri@virtuax.be (2007)
Wordpress <= v2.1.0
World Wide Web  
C07-2476.HTM
3476 bytes. by SaMuschie (2007)
WordPress AdminPanel CSRF/XSS - 0day
World Wide Web  
C07-1868.HTM
1598 bytes. by process@cnbct.org (2007)
Wordpress disclosure of Table Prefix Weakness
World Wide Web  
C07-2485.HTM
2402 bytes. by SaMuschie (2007)
WordPress Search Function SQL-Injection
World Wide Web  
C07-2519.HTM
2249 bytes. by ifsecure@gmail.com (2007)
WordPress source code compromised to enable remote code execution
World Wide Web  
C07-2602.HTM
2569 bytes. by g30rg3_x (2007)
WordPress XSS under function wp_title()
World Wide Web  
C07-1907.HTM
4838 bytes. by Raphael Marichez (2007)
WordPress: Multiple vulnerabilities
World Wide Web  
C07-1535.HTM
862 bytes. by Advisory@Aria-Security.net (2007)
BattleBlog Database Download Vulnerability
World Wide Web  
C07-1293.HTM
830 bytes. by security@soqor.net (2006)
BLOG:CMS Remote file include Vulnerability
World Wide Web  
C07-1003.HTM
863 bytes. by Advisory@Aria-Security.Net (2006)
Clickblog Sql Injection
World Wide Web  
C07-1714.HTM
1137 bytes. by ShaFuq31@HoTMaiL.CoM (2007)
Dayfox Blog Remote File Include Vuln.
World Wide Web  
C07-1081.HTM
1732 bytes. by infection@mail.kz (2006)
Invision Community Blog Mod 1.2.4 .PHP SQL Injection Vulnerability
World Wide Web  
C07-1558.HTM
857 bytes. by Advisory@aria-security.net (2007)
lblog Remote Password Disclosure
World Wide Web  
C07-2104.HTM
1201 bytes. by ajannhwt@hotmail.com (2007)
makit news/blog poster <=v3(news_page.asp) Remote SQL Injection Vulnerability
World Wide Web  
C07-1949.HTM
2089 bytes. by corrado.liotta@alice.it (2007)
myBloggie 2.1.5 XSS exploit
World Wide Web  
C07-2666.HTM
2190 bytes. by UniquE@UniquE-Key.Org (2007)
Orion-Blog v2.0 Version Remote Privilege Escalation Exploit
World Wide Web  
C07-2688.HTM
2576 bytes. by UniquE@UniquE-Key.Org (2007)
Particle Blogger All Version Post.PHP (PostID) Remote SQL Injection Exploit
World Wide Web  
C07-1539.HTM
931 bytes. by Advisory@Aria-Security.net (2007)
rblog Database Download Vulnerability
World Wide Web  
C07-1676.HTM
998 bytes. by ShaFuq31@HoTMaiL.CoM (2007)
RI Blog 1.3 XSS Vuln.
World Wide Web  
C07-2214.HTM
2131 bytes. by DoZ@HackersCenter.com (2007)
Ublog Reload Admin Panel Multiple HTML Injections
World Wide Web  
B06-3420.HTM
3132 bytes. by xzerox@linuxmail.org (2006)
WordPress 2.0.3 SQL Error and Full Path Disclosure
World Wide Web  
B06-2473.HTM
17903 bytes. by rgod@autistici.org (2006)
Wordpress <=2.0.2 'cache' shell injection
World Wide Web  
B06-2862.HTM
3796 bytes. by Sune Kloppenborg Jeppesen (2006)
WordPress: Arbitrary command execution
World Wide Web  
B06-1087.HTM
1935 bytes. by nukedx@nukedx.com (2006)
BetaParticle Blog <= 6.0 Multiple Remote SQL Injection Vulnerabilities
World Wide Web  
B06-1955.HTM
500 bytes. by qex@bsdmail.org (2006)
Blog Mod <= 0.2.x SQL Injection
World Wide Web  
B06-1247.HTM
1089 bytes. by dabdoub_mosikar@forislam.com (2006)
Blog Pixel Motion<=1.xx Authentication Bypass Vulnerability & SQL injection
World Wide Web  
B06-3453.HTM
2571 bytes. by securityconnection@gmail.com (2006)
BLOG:CMS 4.1.0 SQL injection File Include Vulnerability
World Wide Web  
B06-3797.HTM
2743 bytes. by admin@majorsecurity.de (2006)
BLOG:CMS <= 4.0.0j - XSS and cookie disclosure
World Wide Web  
B06-3336.HTM
6488 bytes. by rgod@autistici.org (2006)
BLOG:CMS <= 4.0.0k sql injection
World Wide Web  
B06-1782.HTM
578 bytes. by omnipresent@email.it (2006)
bloggage Remote SQL Injection
World Wide Web  
B06-2766.HTM
1914 bytes. by Federico Fazzi (2006)
BloggIT <= 1.01 (admin.php) Arbitrary code execution
World Wide Web  
B06-2039.HTM
994 bytes. by zerogue@gmail.com (2006)
ChipmunkBlogger improper input sanitizing
World Wide Web  
B06-1162.HTM
985 bytes. by farhadkey@kapda.ir (2006)
CoMoblog XSS
World Wide Web  
B06-2575.HTM
2496 bytes. by Mustafa Can Bjorn IPEKCI (2006)
Eggblog <= 3.x Multiple Remote Vulnerabilities
World Wide Web  
B06-1967.HTM
1273 bytes. by admin@subjectzero.net (2006)
geoBlog Mutiple XSS Vulnerability
World Wide Web  
B06-3754.HTM
5118 bytes. by rgod@autistici.org (2006)
LoudBlog <=0.5 Sql injection
World Wide Web  
B06-2800.HTM
1816 bytes. by simo64@gmail.com (2006)
Mafia Moblog Full Path Disclosure / SQL injection
World Wide Web  
B06-1245.HTM
1823 bytes. by alex@evuln.com (2006)
Maian Weblog Multiple SQL Injection Vulnerabilities
World Wide Web  
B06-2549.HTM
1972 bytes. by black-cod3@hotmail.com (2006)
Multiple Xss exploits in ar-blog v 5.2
World Wide Web  
B06-2673.HTM
1435 bytes. by erne ayaz (2006)
MyBloggie 2.1.1 version Remote File Include Vulnerabilit
World Wide Web  
B06-2275.HTM
3445 bytes. by h4cky0u.org@gmail.com (2006)
myBloggie 2.1.3 CRLF & SQL Injection
World Wide Web  
B06-2042.HTM
662 bytes. by zerogue@gmail.com (2006)
myBloggie <= 2.1.3 XSS
World Wide Web  
B06-1672.HTM
479 bytes. by qex@bsdmail.org (2006)
Neuron Blog <= 1.1 XSS
World Wide Web  
B06-3466.HTM
1373 bytes. by Juha-Matti Laurio (2006)
Major updates to Excel 0-day Vulnerability FAQ at SecuriTeam Blogs
World Wide Web  
B06-3472.HTM
4945 bytes. by OS2A BTO (2006)
PHP-Blogger Multiple Cross Site Scripting Vulnerabilities
World Wide Web  
B06-2617.HTM
5241 bytes. by rgod@autistici.org (2006)
pppBlog <= 0.3.8 administrative credentials/system disclosure
World Wide Web  
B06-1590.HTM
723 bytes. by botan@linuxmail.org (2006)
QuickBlogger v1.4 Cross-Site Scripting
World Wide Web  
B06-2906.HTM
643 bytes. by irc0d3r@yahoo.com (2006)
RCblog 1.03 Directory Traversal
World Wide Web  
B06-1824.HTM
2502 bytes. by omnipresent@email.it (2006)
RIblog Remote SQL Injection Exploit
World Wide Web  
B06-1968.HTM
1311 bytes. by admin@subjectzero.net (2006)
sBlog SQL Injection and Path Disclosure Vulnerability
World Wide Web  
B06-1616.HTM
1595 bytes. by moep (2004)
Serendipity Blog vuln
World Wide Web  
B06-2126.HTM
1683 bytes. by SnoBMSN@Hotmail.De (2006)
UBlog Remote XSS Exploit
World Wide Web  
B06-2660.HTM
616 bytes. by luny@youfucktard.com (2006)
Weblog Oggi v1.0
World Wide Web  
B06-1682.HTM
1685 bytes. by alex@evuln.com (2006)
Wire Plastik wpBlog SQL Injection Vulnerability
World Wide Web  
B06-1628.HTM
831 bytes. by W3._@hotmail.com (2006)
Xss In ar-blog v 5.2
World Wide Web  

Guestbooks

HACK2840.HTM
1484 bytes. by LostNoobs (2004)
@lex Guestbook (PHP) Include file
Exploit   World Wide Web  
HACK2365.HTM
563 bytes. by JQ (2004)
Advanced Guestbook 2.2 -- SQL Injection Exploit
Exploit   World Wide Web  
HACK1247.HTM
2194 bytes. by TechTeam (2004)
AllMyGuests PHP Code Injection vulnerability
Exploit   World Wide Web  
WEB4837.HTM
1122 bytes. (2001)
Book of guest & Post it!
Exploit   World Wide Web  
WEB5239.HTM
1990 bytes. (2002)
Dynamic Guestbook cross site scripting and arbitrary command execution vulnerabilities
Exploit   World Wide Web  
WEB5566.HTM
3106 bytes. (2002)
Easy Guestbook user priviledge escalation
Exploit   World Wide Web  
A6161.HTM
764 bytes. (2003)
FipsGuestbook script injection
Exploit   World Wide Web  
BT1323.TXT
1552 bytes. (2003)
GuestBook 1.51 Code Injection CGI:
World Wide Web  
WEB5497.HTM
3010 bytes. (2002)
guestbook cgi - E-Guest & ZAP Book XSS and remote shell execution
Exploit   World Wide Web  
BT474.TXT
1728 bytes. (2003)
GuestBookHost : Cross Site Scripting CGI:
World Wide Web  
A6134.HTM
876 bytes. (2003)
ISC guestbook script injection vulnerability
World Wide Web  
HACK0718.HTM
8532 bytes. by shaun2k2 (2004)
Jason Maloney's CGI Guestbook Remote Command Execution Vulnerability.
Exploit   World Wide Web  
HACK0716.HTM
28241 bytes. by shaun2k2 (2004)
Jason Maloney's Guestbook XSS Vulnerability.
Exploit   World Wide Web  
GSERVE.HTM
14634 bytes. by Fish Stigz (2001)
Lars Ellingsen's guestserver.cgi execute arbitrary code
Advisory   World Wide Web  
BT18.TXT
1250 bytes. (2003)
MPCSoftWeb Guest Book vulnerabilities. CGI:
World Wide Web  
A6144.HTM
1139 bytes. (2003)
Ocean12 ASP Guestbook script injection
World Wide Web  
A6127.HTM
853 bytes. (2003)
Orplex guestbook script injection
World Wide Web  
BT1478.TXT
968 bytes. (2003)
Orplex guestbook script injection. CGI:
World Wide Web  
HACK3848.HTM
4831 bytes. by BrainRawt (2004)
RNN's Guestbook 1.2 Multiple Vulnerabilities
World Wide Web  
BT975.TXT
1100 bytes. (2003)
TSguestbook Ver. 2.1 Cross-Site Scripting Vulnerability
World Wide Web  
C07-1077.HTM
1012 bytes. by mr_kaliman@msn.com (2006)
@lex Guestbook 4.0.1 : Full Path Disclosure & XSS
World Wide Web  
C07-1703.HTM
5844 bytes. by gmdarkfig@gmail.com (2007)
@lex Guestbook <= 4.0.2 Remote Command Execution Exploit
World Wide Web  
C07-2058.HTM
1752 bytes. by me you (2007)
Advanced Guestbook <=- 2.4.2 (include_path) Remote File Include Vulnerability
World Wide Web  
C07-1915.HTM
3338 bytes. by jesper.jurcenoks@netvigilance.com (2007)
dt_guestbook version 1.0f XSS vulnerability
World Wide Web  
C07-1578.HTM
1140 bytes. by Advisory@aria-security.net (2007)
GuestBook v0.3a Remote Password Disclosure
World Wide Web  
C07-2296.HTM
777 bytes. by crazy_king@eno7.org (2007)
KvGuestbook Remote Add Admin Exploit
World Wide Web  
C07-2569.HTM
886 bytes. by c_r_ck@hotmail.com (2007)
Lazarus Guestbook (admin.php)Remote File Include Expliot
World Wide Web  
C07-2537.HTM
1642 bytes. by bugtraq@belsec.com (2007)
LI-Guestbook SQL Injection Vulnerability
World Wide Web  
C07-2536.HTM
1744 bytes. by bugtraq@belsec.com (2007)
Sava's GuestBook Multiple Vulnerabilities
World Wide Web  
C07-1710.HTM
821 bytes. by beks@bsdmail.org (2007)
Uguestbook Remote Password Disclosure Vulnerability
World Wide Web  
C07-2658.HTM
2556 bytes. by UniquE@UniquE-Key.Org (2007)
WSN Guest 1.21 Version Comments.PHP "ID" SQL Injection Exploit
World Wide Web  
C07-2007.HTM
976 bytes. by xx_hack_xx_2004@hotmail.com (2007)
XSS in Guestbook ( v.4.00 beta )
World Wide Web  
C07-1149.HTM
2042 bytes. by nj@hackerz.ir (2006)
XSS in JAB Guest Book
World Wide Web  

Wikis, Collaborationware

B06-2728.HTM
5105 bytes. by Stefan Esser (2006)
DokuWiki PHP code execution vulnerability in spellchecker
World Wide Web  
B06-3013.HTM
3856 bytes. by Sune Kloppenborg Jeppesen (2006)
DokuWiki: PHP code injection
World Wide Web  
B06-2721.HTM
759 bytes. by luny@youfucktard.com (2006)
LabWiki v1.0
World Wide Web  
B06-1395.HTM
3886 bytes. by Stefan Cornelius (2006)
MediaWiki: Cross-site scripting vulnerability
World Wide Web  
B06-3386.HTM
1619 bytes. by mac68k@gmail.com (2006)
MoniWiki 1.1.1 Cross-Site Scripting Vulnerability
World Wide Web  
B06-2500.HTM
7255 bytes. by blwood@skynet.be (2006)
Multiple XSS Vulnerabilities in Tikiwiki 1.9.x
World Wide Web  
B06-2274.HTM
559 bytes. by LiNuX_rOOt1@hotmail.com (2006)
OpenWiki<--v0.78 Cross-Site Scripting
World Wide Web  
B06-2751.HTM
782 bytes. by luny@youfucktard.com (2006)
ParticleSoft Wiki v1.0.2
World Wide Web  
B06-2811.HTM
597 bytes. by marc@marclaporte.com (2006)
Tikiwiki 1.9.3.2 security release
World Wide Web  
B06-2977.HTM
1520 bytes. by bug@securitynews.ir (2006)
TikiWiki Sql injection & XSS Vulnerabilities
World Wide Web  
B06-3362.HTM
3850 bytes. by Sune Kloppenborg Jeppesen (2006)
Tikiwiki: SQL injection and multiple XSS vulnerabilities
World Wide Web  
B06-2590.HTM
1327 bytes. by raphael.huck@free.fr (2006)
WikiNi Persistent Cross Site Scripting Vulnerability
World Wide Web  
C07-2401.HTM
2269 bytes. by eyal@BugSec.com (2007)
MediaWiki Cross-site Scripting
World Wide Web  
C07-2294.HTM
2066 bytes. by raphael.huck@free.fr (2007)
MediaWiki Full Path Disclosure Vulnerability
World Wide Web  
C07-2625.HTM
1648 bytes. by DoZ@HackersCenter.com (2007)
Wiki Remote Authentication Bypass Vulnerability
World Wide Web  
C07-1996.HTM
1783 bytes. by iamtheevil1@gmail.com (2007)
Wiki-how path disclosure
World Wide Web  
BUGZILLA.HTM
9057 bytes. by F. van Vliet (2000)
Bugzilla 2.8 CGI remote exploit
Advisory   World Wide Web  
DSA173-1.TXT
3470 bytes. (2002)
bugzilla privilege escalation
Linux   World Wide Web  
WEB5723.HTM
1194 bytes. (2002)
Bugzilla remote command injection
Exploit   World Wide Web  
BT1667.TXT
2500 bytes. (2003)
BUGZILLA Security Advisory - information leak CGI:
World Wide Web  
BT1625.TXT
4859 bytes. (2003)
BUGZILLA Security Advisory - SQL injection, information leak CGI:
World Wide Web  
BT58.TXT
5884 bytes. (2003)
Bugzilla Security Advisory - XSS, insecure temporary filenames
World Wide Web  
WEB4972.HTM
11231 bytes. (2002)
bugzilla security issues includes : file access, remote script execute ...
Exploit   World Wide Web  
WEB5448.HTM
3493 bytes. (2002)
Bugzilla Various security issues of varying importance
Exploit   World Wide Web  

Adminware, Status Monitors

BB4.HTM
1300 bytes. by Loki (2000)
Big Brother CGI scripts prior to v1.5d3 - Read sensistive files
Advisory   World Wide Web  
BBD2.HTM
1345 bytes. by Big Brother (2000)
Big Brother (bbd) prior to 1.4g execute arbitrary code
Advisory   World Wide Web  
BIGBRO~1.TXT
1763 bytes. (1999)
Big Brother 1.09 CGI Vulnerability
Hacking   World Wide Web  
BB1.HTM
909 bytes. by S. MacGuire (1999)
Big Brother 1.09b/c as CGI retrieve arbitrary files
Advisory   World Wide Web  
BB3.HTM
1386 bytes. by Xternal (2000)
Big Brother execute arbitrary code
Advisory   World Wide Web  
BBD23.HTM
2313 bytes. by A. Dalgleish (2000)
Big Brother Systems and Network Monitor (All prior to 1.5c2) execute arbitrary code
Advisory   World Wide Web  
BB2.HTM
5815 bytes. by E. Hines (2000)
Big Brother up to and including 1.4H retrieve files vulnerability
Advisory   Exploit   Unix   World Wide Web  
HACK0399.HTM
2198 bytes. by T. Adams (2004)
CA UniCenter Management Portal Username Enumeration Vulnerability
Exploit   World Wide Web  

/etc

FINGERSV.HTM
1970 bytes. by I. Wade (2000)
"The Finger Server" execute shell commands
Advisory   World Wide Web  
ARCADI~1.HTM
2607 bytes. (2001)
1C:Arcadia Tradecli.dll Show Path, Read Arbitrary Files, DoS
Advisory   Windows   World Wide Web  
A1STAT~1.HTM
1658 bytes. by Nemesystem (2001)
A1Stats CGI view files, overwrite files bug
Advisory   World Wide Web  
AMANAGER.HTM
5376 bytes. by N30 (2000)
Account Manager CGI - access admin control panel
Advisory   World Wide Web  
WEB5444.HTM
1495 bytes. (2002)
Active! mail -Active! mail arbitrary script execution
Exploit   World Wide Web  
WEB1029.HTM
21824 bytes. (2001)
ActivePerl (PerlScript and Perl-ISAPI) inadequate path length checking on open()
Exploit   World Wide Web  
ADCYCLE1.HTM
2205 bytes. by M. Lastdrager (2000)
AdCycle Banner Management System installation insecurity
Advisory   World Wide Web  
ADCYCLE2.HTM
8940 bytes. by Neil K. (2001)
AdCycle Banner Management System installation insecurity
Advisory   World Wide Web  
ADCYCL~1.HTM
1826 bytes. by qDefense (2001)
AdCycle up to 1.15 does not properly validate user input
Advisory   World Wide Web  
WEB5109.HTM
1565 bytes. (2002)
Add2It mailman allow command execution on server
Exploit   World Wide Web  
BT1159.TXT
1417 bytes. (2003)
Admin Access Vulnerability in Community Wizard
World Wide Web  
BT1018.TXT
2866 bytes. (2003)
Advisory: Incorrect Handling of XSS Protection in ASP.Net
Windows   World Wide Web  
WEB4945.HTM
4377 bytes. (2001)
Agoracgi Cross Site Scripting Vulnerability
Exploit   World Wide Web  
ALBUMPL.TXT
1374 bytes. (2003)
Album.pl vuln
World Wide Web  
WEB5456.HTM
3337 bytes. (2002)
AlienForm2 server file access (reading, writing)
Exploit   World Wide Web  
CLIPPR33.HTM
1043 bytes. by UkR (2001)
Anaconda Clipper 3.3 retrieve artbitrary files
Advisory   Unix   World Wide Web  
ANALOG1.HTM
2385 bytes. by S. Turner (2001)
Analog all versions except 4.16 and 4.90beta3 Buffer Overflow
Advisory   Linux   World Wide Web  
WEB5132.HTM
2117 bytes. (2002)
ans.pl - Avenger's News System permits remote command execution
Exploit   World Wide Web  
PM1.HTM
1397 bytes. by J. Chemas (2000)
Apache::ASP prior to v1.95 write to files local to source.asp
Advisory   World Wide Web  
WEB5511.HTM
798 bytes. (2002)
Argosoft Mail Server Plus/Pro webmail reverse directory traversal
Exploit   Windows   World Wide Web  
SQL6.HTM
2160 bytes. by S. Wilding (2000)
ASP/SQL Inappropriate Permissions
Advisory   World Wide Web  
ASPSEEK1.HTM
5693 bytes. by Neil K. (2001)
Aspseek search engine CGI up to 1.0.3 multiple buffer overflows
Advisory   World Wide Web  
AUTHIX53.HTM
2575 bytes. by L. Saarloos (2000)
Authentix up to 5.3. - bypass logon, authentication
Advisory   Exploit   World Wide Web  
WSWEEP~1.HTM
2091 bytes. by eDvice (2001)
Baltimore Technologies WEBSweeper 4.02 bypass malicious tags
Advisory   World Wide Web  
BT299.TXT
1209 bytes. (2003)
Bandmin 1.4 XSS Exploit
Exploit   World Wide Web  
BANNEROR.HTM
4330 bytes. by Zillion (2000)
Banner rotating 01 CGI Script Cleartext Passwords
Advisory   World Wide Web  
WEB5472.HTM
3415 bytes. (2002)
BasiliX Webmail multiple vulnerabilities
Exploit   World Wide Web  
BASILIX.HTM
2365 bytes. by T. Sahin (2001)
Basilix Webmail System 0.9.7beta retrievable MySQL password
Advisory   World Wide Web  
BIGIP.HTM
1985 bytes. by G. Cohen (1999)
BigIP - bigconf.cgi users retrieve arbitrary files
Advisory   World Wide Web  
BIZDBCGI.HTM
3804 bytes. by Black Watch Labs (2000)
BizDB CGI - run shell commands
Advisory   World Wide Web  
BVISION.HTM
1476 bytes. by B. Jurry (2000)
BroadVision One-To-One Enterprise - discover path to server files
Advisory   World Wide Web