Web :: Apps
Last Updated: 23/05/2009 8:58:55 AM

FINGERSV.HTM
1970 bytes. by I. Wade (2000)
"The Finger Server" execute shell commands
Advisory   World Wide Web  
ARCADI~1.HTM
2607 bytes. (2001)
1C:Arcadia Tradecli.dll Show Path, Read Arbitrary Files, DoS
Advisory   Windows   World Wide Web  
B06-2012.HTM
1575 bytes. by d4igoro (2006)
321soft PhP Gallery 0.9 - directory travel & XSS
World Wide Web  
B06-1771.HTM
672 bytes. by qex (2006)
4images <= 1.7 XSS
World Wide Web  
B06-1947.HTM
3650 bytes. by CrAzY.CrAcKeR (2006)
4images<-- 1.7.1 SQL Injection
World Wide Web  
B06-2598.HTM
850 bytes. by CrAzY.CrAcKeR (2006)
4nNukeWare<--V 0.91 SQL Injection exploits
World Wide Web  
B06-1196.HTM
2421 bytes. by alex (2006)
@1 File Store Multiple XSS and SQL Injection Vulnerabilities
World Wide Web  
WEB5444.HTM
1495 bytes. (2002)
Active! mail -Active! mail arbitrary script execution
Exploit   World Wide Web  
WEB1029.HTM
21824 bytes. (2001)
ActivePerl (PerlScript and Perl-ISAPI) inadequate path length checking on open()
Exploit   World Wide Web  
ADCYCLE1.HTM
2205 bytes. by M. Lastdrager (2000)
AdCycle Banner Management System installation insecurity
Advisory   World Wide Web  
ADCYCLE2.HTM
8940 bytes. by Neil K. (2001)
AdCycle Banner Management System installation insecurity
Advisory   World Wide Web  
ADCYCL~1.HTM
1826 bytes. by qDefense (2001)
AdCycle up to 1.15 does not properly validate user input
Advisory   World Wide Web  
WEB5109.HTM
1565 bytes. (2002)
Add2It mailman allow command execution on server
Exploit   World Wide Web  
BT1159.TXT
1417 bytes. (2003)
Admin Access Vulnerability in Community Wizard
World Wide Web  
B06-3226.HTM
1373 bytes. by securityconnection (2006)
aeDating 4.1 XSS
World Wide Web  
WEB4945.HTM
4377 bytes. (2001)
Agoracgi Cross Site Scripting Vulnerability
Exploit   World Wide Web  
B06-1235.HTM
2036 bytes. by Stefan Keller (2006)
AkoComment SQL injection vulnerability
World Wide Web  
ALBUMPL.TXT
1374 bytes. (2003)
Album.pl vuln
World Wide Web  
WEB5456.HTM
3337 bytes. (2002)
AlienForm2 server file access (reading, writing)
Exploit   World Wide Web  
B06-3103.HTM
563 bytes. by s3rv3r_hack3r (2006)
alipager xss attack
World Wide Web  
B06-2407.HTM
2869 bytes. by luny (2006)
Alstrasoft Article Manager Pro v1.6
World Wide Web  
B06-2406.HTM
900 bytes. by luny (2006)
AlstraSoft E-Friends - XSS
World Wide Web  
CLIPPR33.HTM
1043 bytes. by UkR (2001)
Anaconda Clipper 3.3 retrieve artbitrary files
Advisory   Unix   World Wide Web  
ANALOG1.HTM
2385 bytes. by S. Turner (2001)
Analog all versions except 4.16 and 4.90beta3 Buffer Overflow
Advisory   Linux   World Wide Web  
B06-1675.HTM
434 bytes. by qex (2006)
AnimeGenesis <= XSS
World Wide Web  
B06-3108.HTM
586 bytes. by nanoymaster (2006)
animesuki XSS
World Wide Web  
WEB5132.HTM
2117 bytes. (2002)
ans.pl - Avenger's News System permits remote command execution
Exploit   World Wide Web  
PM1.HTM
1397 bytes. by J. Chemas (2000)
Apache::ASP prior to v1.95 write to files local to source.asp
Advisory   World Wide Web  
WEB5511.HTM
798 bytes. (2002)
Argosoft Mail Server Plus/Pro webmail reverse directory traversal
Exploit   Windows   World Wide Web  
SQL6.HTM
2160 bytes. by S. Wilding (2000)
ASP/SQL Inappropriate Permissions
Advisory   World Wide Web  
ASPSEEK1.HTM
5693 bytes. by Neil K. (2001)
Aspseek search engine CGI up to 1.0.3 multiple buffer overflows
Advisory   World Wide Web  
B06-2507.HTM
608 bytes. by zerogue (2006)
Assetman <= 2.4a XSS
World Wide Web  
B06-3491.HTM
1930 bytes. by securityconnection (2006)
ATutor 1.5.3 Cross Site Scripting
World Wide Web  
B06-3474.HTM
1592 bytes. by securitynews.ir (2006)
ATutor : Cross-Site Scripting Vulnerabilities
World Wide Web  
B06-3944.HTM
10799 bytes. by rgod (2006)
ATutor <= 1.5.3.1 'links' blind SQL injection / admin credentials disclosure
World Wide Web  
AUTHIX53.HTM
2575 bytes. by L. Saarloos (2000)
Authentix up to 5.3. - bypass logon, authentication
Advisory   Exploit   World Wide Web  
B06-3419.HTM
3296 bytes. by majorsecurity.de (2006)
AutoRank <= 5.01 - Multiple XSS and cookie disclosure
World Wide Web  
B06-3924.HTM
1047 bytes. by newbinaryfile (2006)
AWBS XSS vuln
World Wide Web  
B06-1607.HTM
2095 bytes. by alex (2006)
aWebNews Multiple XSS and SQL Injection Vulnerabilities
World Wide Web  
B06-1692.HTM
449 bytes. by qex (2006)
axoverzicht.cgi <= XSS
World Wide Web  
B06-1753.HTM
773 bytes. by CrAzY.CrAcKeR (2006)
axoverzicht.cgi<==Remote File Inclusion
World Wide Web  
B06-2451.HTM
1514 bytes. by luny (2006)
AZ Photo Album Script Pro
World Wide Web  
B06-3340.HTM
690 bytes. by CrAzY.CrAcKeR (2006)
AzDGDatingPlatinum<<--v1.1.0 "view.php" SQL Injection
World Wide Web  
B06-1552.HTM
1287 bytes. by selfar2002 (2006)
AzDGVote File inclusion
World Wide Web  
WSWEEP~1.HTM
2091 bytes. by eDvice (2001)
Baltimore Technologies WEBSweeper 4.02 bypass malicious tags
Advisory   World Wide Web  
BT299.TXT
1209 bytes. (2003)
Bandmin 1.4 XSS Exploit
Exploit   World Wide Web  
BANNEROR.HTM
4330 bytes. by Zillion (2000)
Banner rotating 01 CGI Script Cleartext Passwords
Advisory   World Wide Web  
WEB5472.HTM
3415 bytes. (2002)
BasiliX Webmail multiple vulnerabilities
Exploit   World Wide Web  
BASILIX.HTM
2365 bytes. by T. Sahin (2001)
Basilix Webmail System 0.9.7beta retrievable MySQL password
Advisory   World Wide Web  
B06-3125.HTM
2573 bytes. by luny (2006)
Biblenet.net - XSS
World Wide Web  
BIGIP.HTM
1985 bytes. by G. Cohen (1999)
BigIP - bigconf.cgi users retrieve arbitrary files
Advisory   World Wide Web  
BIZDBCGI.HTM
3804 bytes. by Black Watch Labs (2000)
BizDB CGI - run shell commands
Advisory   World Wide Web  
B06-2980.HTM
7638 bytes. by rgod (2006)
blur6ex <= 0.3.462 'ID' blind sql injection
World Wide Web  
B06-1693.HTM
2898 bytes. by h e (2006)
blur6ex Local File Inclusion and SQL injection .
World Wide Web  
B06-3666.HTM
2961 bytes. by gmdarkfig (2006)
boastMachine <= 3.1 SQL Injection Exploit
World Wide Web  
B06-2273.HTM
1491 bytes. (2006)
Boastmachine Cross Site Scripting Vulnerability
World Wide Web  
B06-1542.HTM
2156 bytes. by alex (2006)
Book Multiple Vulnerabilities
World Wide Web  
B06-2714.HTM
2450 bytes. by selfar2002 (2006)
Bookmark4U Remote File Include
World Wide Web  
B06-2601.HTM
824 bytes. by CrAzY.CrAcKeR (2006)
Bratpack Cross Site Scripting Vulnerability
World Wide Web  
BVISION.HTM
1476 bytes. by B. Jurry (2000)
BroadVision One-To-One Enterprise - discover path to server files
Advisory   World Wide Web  
BSSCRIPT.HTM
1827 bytes. by Elf (2000)
BS Scripts Multiple CGI execute arbitrary code
Advisory   World Wide Web  
WEB4970.HTM
5066 bytes. (2002)
BSCW meta character escape allows script execution
Exploit   World Wide Web  
BSCW~1.HTM
3205 bytes. by neovatar (2001)
BSCW Symlinks vulnerability
Advisory   World Wide Web  
B06-3406.HTM
5208 bytes. by luny (2006)
Buddy Zone Version 1.0.1 - XSS
World Wide Web  
BT1297.TXT
1890 bytes. (2003)
ByteHoard Directory Traversal Vulnerability CGI:
Exploit   World Wide Web  
HTTPD99.HTM
2764 bytes. by CDI (2000)
Cached_feed.cgi retrieve arbitrary files
Advisory   World Wide Web  
B06-3243.HTM
973 bytes. by Silitix (2006)
Calendar ( Provided by Codewalkers ) - SQL Injection
World Wide Web  
B06-2795.HTM
890 bytes. by CrAzY.CrAcKeR (2006)
Calendar Express 2 SQL injection
World Wide Web  
B06-3681.HTM
2418 bytes. by matdhule (2006)
Calendar Mambo Module <= 1.5.7 Remote File Include Vulnerabilities
World Wide Web  
B06-3654.HTM
2235 bytes. by matdhule (2006)
Calendar Module <= 1.5.7 Remote File Include Vulnerabilities
World Wide Web  
B06-1664.HTM
738 bytes. by botan (2006)
Calendarix "yearcal.php" XSS Attacking
World Wide Web  
B06-3064.HTM
1332 bytes. by Federico Fazzi (2006)
Calendarix 0.7.20060401, SQL Injection Vulnerabilities
World Wide Web  
B06-2375.HTM
3670 bytes. by omnipresent (2006)
CANews Multiple Vulnerabilities
World Wide Web  
B06-2348.HTM
1358 bytes. by luny (2006)
Captivate 1.0 - XSS Vuln
World Wide Web  
WEB5729.HTM
2338 bytes. (2002)
Carello Remote File Execution
Exploit   World Wide Web  
WHOIS_~1.TXT
4040 bytes. (1999)
cdomain v1.0's whois_raw.cgi allows arbitrary programs to be executed.
Hacking   World Wide Web  
A6101.HTM
1892 bytes. (2003)
Ceilidh testcgi.exe Cross Site Scripting vuln
World Wide Web  
CEILIDH.HTM
1340 bytes. by Delphis (2000)
Ceilidh v2.60a - spawn multiple copies to deplete system resources
Advisory   Denial of Service   Windows   World Wide Web  
CFDECR~1.C
1595 bytes. by M. Chapman (2001)
CFDecrypt - Decrypt Cold Fusion templates encrypted with CFCRYPT
Cryptanalysis   Source Code  
HTTPD56.HTM
3547 bytes. by Xitami (1998)
CGI in Xitami execute arbitrary CGI
Advisory   Multi Platform   World Wide Web  
CIACI024.TXT
10882 bytes. (1998)
CGI Security Hold Ews1 1

CGI-EX_1.TXT
3464 bytes.
CGI Security: Escape Newlines
Hacking   World Wide Web  
CGISEC.TXT
11944 bytes.
CGI Vulnerabilities
Hacking   World Wide Web  
BT681.TXT
2908 bytes. (2003)
CGI.pm vulnerable to Cross-site Scripting

CGIC.HTM
2541 bytes. by J. Ribbens (1999)
CGIc library Exploitable Buffer Overflow
Advisory   World Wide Web  
BT1268.TXT
1734 bytes. (2003)
cgiemail - patch for vulnerability

WEB5251.HTM
3018 bytes. (2002)
CGIscript.net scripts remote code execution
Exploit   Windows   World Wide Web  
WEB5308.HTM
3937 bytes. (2002)
CGIscript.net's csMailto.cgi remote command execution
Exploit   World Wide Web  
CGIWRAP1.HTM
1672 bytes. by T. Hiromitsu (2001)
CGIWrap - cookies can be stolen
Advisory   World Wide Web  
CGIWRP35.TXT
1263 bytes. (1997)
Cgiwrap 3.5 possible vulnerability
Advisory   World Wide Web  
BT35.TXT
1876 bytes. (2003)
CGIWrap Format strings vuln

BT861.TXT
2060 bytes. (2003)
Chatserver - XSS ( push )
World Wide Web  
B06-2802.HTM
832 bytes. by luny (2006)
Chemical Directory - XSS
World Wide Web  
CSASP1.HTM
3193 bytes. by M. Krenz (2001)
Chili!Soft ASP - inherited mode can be defeated
Advisory   World Wide Web  
CSASP3.HTM
1429 bytes. by J. Sander (2001)
Chili!Soft ASP - license file can be zapped, shutting down ASP services
Advisory   World Wide Web  
CSASP2.HTM
7740 bytes. by S. Bubrouski (2001)
Chili!Soft ASP 3.5.2 default admin password, view sensitive information
Advisory   World Wide Web  
B06-1572.HTM
1394 bytes. by Soothackers (2006)
Clansys Multiple Xss Vulnerabilities
World Wide Web  
B06-3264.HTM
1531 bytes. by bug (2006)
Claroline Cross-Site Scripting Vulnerabilities
World Wide Web  
B06-2072.HTM
1741 bytes. by beford (2006)
Claroline Open Source e-Learning 1.7.5 Remote File Include
World Wide Web  
B06-3095.HTM
2776 bytes. by liz0 (2006)
Cline Communications Sql injection
World Wide Web  
CF16~1.HTM
2737 bytes. by ISS (2001)
Cold Fusion multiple remote vulnerabilities
Advisory   World Wide Web  
CF15.HTM
4454 bytes. by E. Lackey (2001)
Cold Fusion on Linux cfrethrow tag crash
Advisory   Linux   World Wide Web  
BT116.TXT
4978 bytes. by EXPLOIT (2003)
CommuniGatePro 4.0.6
World Wide Web  
B06-3222.HTM
1324 bytes. by addmimistrator (2006)
Coppermine 1.4.8~Parameter Cleanup System ByPass~Registering Global Varables
World Wide Web  
A6119.HTM
10248 bytes. (2003)
Coppermine Photo Gallery remote command execution
World Wide Web  
B06-3923.HTM
1971 bytes. by A-S-T2006 (2006)
Coppermine Photo Gallery v1.2.2b-Nuke Remote File Inclusion Vulnerabilities
World Wide Web  
B06-2913.HTM
1348 bytes. by addmimistrator (2006)
CopperminePhotoGallery1.4.8~ addhit() function~ SQLinjection attack
World Wide Web  
B06-1797.HTM
3335 bytes. by Mustafa Can Bjorn IPEKCI (2006)
CoreNews <= 2.0.1 Multiple Remote Vulnerabilities.
World Wide Web  
WEB5440.HTM
3138 bytes. (2002)
csNews.cgi path disclosure, database access, script injection, command executions
Exploit   World Wide Web  
WEB5405.HTM
3298 bytes. (2002)
csPassword.cgi (from CGIscript.net) multiple vulnerabilities
Exploit   World Wide Web  
BT166.TXT
1574 bytes. (2003)
CSS found in Movable Type CGI:
World Wide Web  
WEB5212.HTM
1723 bytes. (2002)
csSearch.cgi remote code execution
Exploit   World Wide Web  
WEB4917.HTM
1921 bytes. (2001)
CSVForm.pl remote command execution
Exploit   World Wide Web  
WEB5332.HTM
7285 bytes. (2002)
cURL remote buffer overflow exploits
Exploit   World Wide Web  
CVSWEB.HTM
10435 bytes. by J. Hess (2000)
Cvsweb 1.80 remote shell exploit
Advisory   Exploit   World Wide Web  
CSCHED.HTM
9283 bytes. by E. Sanchez (2001)
Cyberscheduler Exploitable Buffer Overflow
Advisory   World Wide Web  
B06-1673.HTM
2077 bytes. by alex (2006)
CzarNews XSS and Multiple SQL Injection Vulnerabilities
World Wide Web  
BT1673.TXT
556 bytes. (2003)
DailyDose v 1.1 CGI:
World Wide Web  
B06-3228.HTM
2109 bytes. by securityconnection (2006)
Dating Agent PRO 4.7.1 Vulnerability
World Wide Web  
B06-3239.HTM
2032 bytes. by luny (2006)
Dating biz@ dating script v1.0 - XSS
World Wide Web  
WEB5700.HTM
2279 bytes. (2002)
DB4Web component bug allows all files on server to be downloaded
Exploit   World Wide Web  
DBMAN1.HTM
3277 bytes. by Black Watch Labs (2000)
DBMan (db.cgi) Script - view environment variables & other info
Advisory   World Wide Web  
B06-2346.HTM
1750 bytes. by luny (2006)
Destiney Links Script v2.1.2
World Wide Web  
B06-2345.HTM
2237 bytes. by luny (2006)
Destiney Rated Images Script v0.5.0 - XSS Vulnv
World Wide Web  
B06-2432.HTM
560 bytes. by a_linuxer (2006)
Diesel Joke Site SQL INJECTION
World Wide Web  
B06-2284.HTM
2474 bytes. by Matt Gibson (2006)
Diesel PHP Job Site Latest Version
World Wide Web  
TXN-012.TXT
2285 bytes. (2001)
directorypro.cgi directory traversal exploit
Exploit   World Wide Web  
B06-3167.HTM
1712 bytes. by soltan_defacer (2006)
display.cgi
World Wide Web  
DMAIL3.HTM
3273 bytes. by C. Wolfe (2000)
DMailWeb 2.6 and prior Buffer Overflow
Advisory   World Wide Web  
DMAIL2.HTM
6133 bytes. by E. Andry (2000)
DMailWeb Buffer Overflow crash
Advisory   World Wide Web  
DMAIL4.HTM
5398 bytes. by C. Wolfe (2000)
DMailWeb exploit
Advisory   Exploit   World Wide Web  
WEB5314.HTM
948 bytes. (2002)
dnstool web authentication bypass
Exploit   World Wide Web  
B06-2850.HTM
1227 bytes. by Federico Fazzi (2006)
Docebo Core 3.0.3, Remote command execution
World Wide Web  
B06-2853.HTM
1394 bytes. by Federico Fazzi (2006)
Docebo Kms 3.0.3, Remote command execution
World Wide Web  
B06-2490.HTM
950 bytes. by beford (2006)
Docebo LMS 2.05 Remote File Include
World Wide Web  
B06-2856.HTM
1544 bytes. by Federico Fazzi (2006)
Docebo Lms 3.0.3, Remote command execution
World Wide Web  
B06-1640.HTM
2277 bytes. by Alvaro Olavarria (2006)
Dokeos 1.6.4 SQL Injection Vulnerability
World Wide Web  
B06-2070.HTM
3116 bytes. by beford (2006)
Dokeos Learning Management System 1.6.4 Remote File Include
World Wide Web  
B06-3157.HTM
3605 bytes. by luny (2006)
Dragons Kingdom v1.0 - XSS & cookie disclosure
World Wide Web  
B06-2730.HTM
2482 bytes. by majorsecurity.de (2006)
DreamAccount <= 3.1 - Remote File Include Vulnerability
World Wide Web  
B06-3234.HTM
3620 bytes. by KARKOR23 (2006)
DREAMACCOUNT V3.1 Remote Command Execution Exploit
World Wide Web  
BT683.TXT
2634 bytes. (2003)
Drupal XSS Vulnerability (main page and sub pages)
World Wide Web  
B06-1223.HTM
1732 bytes. by alex (2006)
DSCounter 'X-Forwarded-For' SQL Injection Vulnerability
World Wide Web  
B06-1224.HTM
1704 bytes. by alex (2006)
DSDownload Multiple SQL Injection Vulnerabilities
World Wide Web  
B06-1244.HTM
1820 bytes. by alex (2006)
DSLogin Authentication Bypass Vulnerability
World Wide Web  
B06-1201.HTM
1712 bytes. by alex (2006)
DSNewsletter SQL Injection Vulnerability
World Wide Web  
B06-1200.HTM
1719 bytes. by alex (2006)
DSPoll Multiple SQL Injection Vulnerabilities
World Wide Web  
B06-2100.HTM
926 bytes. by Dj_ReMix_20 (2006)
DuGallery V2.x SQL Injection
World Wide Web  
B06-3079.HTM
865 bytes. by CrAzY.CrAcKeR (2006)
dvdwolf SQL injection/XSS
World Wide Web  
B06-2807.HTM
2269 bytes. by luny (2006)
E-Dating System from scriptsez.net - XSS
World Wide Web  
ESMITH.HTM
704 bytes. by P. Stinker (2001)
E-smith - insert accounts that are invisible to admin
Advisory   World Wide Web  
B06-3140.HTM
771 bytes. by securityconnection (2006)
e107 v0.7.5 XSS
World Wide Web  
B06-2803.HTM
1521 bytes. by luny (2006)
Easy Ad-Manager
World Wide Web  
B06-1736.HTM
960 bytes. by botan (2006)
EasyGallery Cross-Site Scripting
World Wide Web  
BT1239.TXT
3279 bytes. (2003)
ECHU.ORG Alert #4: GuppY makes XSS attacks easy
World Wide Web  
EGROUP~1.TXT
1669 bytes. (1999)
eGROUPS security flaw
Hacking   World Wide Web  
HYPERM~1.TXT
708 bytes.
Eliminating Hypermart Popup Windows
Hacking   World Wide Web  
WEB5244.HTM
595 bytes. (2002)
emumail.cgi abitrary file disclosure
Exploit   World Wide Web  
B06-2573.HTM
4306 bytes. by Mustafa Can Bjorn IPEKCI (2006)
Enigma Haber <= 4.3 Multiple Remote SQL Injection Vulnerabilities
World Wide Web  
ENTRUST.HTM
2985 bytes. by R. Carell (2001)
Entrust execute arbitrary code
Advisory   Exploit   World Wide Web  
EPERL1.HTM
1391 bytes. by T. Pinto (1998)
ePerl 2.1.12 Security Issues
Advisory   World Wide Web  
EPERL2~1.HTM
2512 bytes. by D. Madison (2001)
ePerl can be made to process untrusted files
Advisory   World Wide Web  
B06-3035.HTM
1011 bytes. by luny (2006)
ePrayver v.Alpha - XSS
World Wide Web  
BT1031.TXT
1805 bytes. (2003)
Escapade Scripting Engine XSS Vulnerability and Path Disclosure
World Wide Web  
UNIFY.HTM
1636 bytes. by A. Nonymous (2000)
EWave ServletExec show source hole
Advisory   World Wide Web  
EXCITEWS.TXT
3487 bytes. (1997)
Excite for web servers CGI
Exploit   World Wide Web  
LS_EXP~1.TXT
2574 bytes. (1997)
Exploiting Net Administration CGIs like nethosting.com, by Lord Somer
Hacking   World Wide Web  
B06-3473.HTM
3705 bytes. by matdhule (2006)
ExtCalendar <== v2.0 Remote File Include Vulnerabilities
World Wide Web  
B06-1091.HTM
1762 bytes. by Soothackers (2006)
ExtCalendar v1.0 Multiple Xss Vuln
World Wide Web  
A6157.HTM
6682 bytes. (2003)
Ez publish info & path disclosure and XSS
World Wide Web  
B06-2809.HTM
1136 bytes. by luny (2006)
Ez Ringtone Manager from scriptez.net - XSS
World Wide Web  
EZMLMCGI.HTM
3411 bytes. by Vort-fu (2000)
Ezmlm-cgi execute arbitrary code
Advisory   Exploit   World Wide Web  
B06-3380.HTM
1046 bytes. by luny (2006)
ezWaiter v3.0 - XSS
World Wide Web  
WEB5104.HTM
1009 bytes. (2002)
FAQ-O-Matic cross-site scripting vulnerability
Exploit   Unix  
WEB4979.HTM
1820 bytes. (2002)
Faqmanager.cgi - read files on the server
Exploit   World Wide Web  
FASTGRAF.HTM
1158 bytes. by M. van Berkum (2001)
Fastgraf CGI colllection - no meta character checking
Advisory   World Wide Web  
FAXSURVY.TXT
1899 bytes. (1998)
faxsurvey - Remote exploit for the faxsurvey CGI that comes with Hylafax.
Exploit   World Wide Web  
FILESEEK.TXT
3094 bytes. (2002)
Fileseek CGI script advisory
Advisory   World Wide Web  
B06-1129.HTM
1773 bytes. by alfy@coders.ch (2006)
Firepass 4100 SSL VPN v.5.4.2 (and probably others) XSS
World Wide Web  
B06-2041.HTM
1023 bytes. by zerogue (2006)
FlexCustomer <= 0.0.4 sql injection
World Wide Web  
WEB5525.HTM
1049 bytes. (2002)
Fluid Dynamics search engine XSS
Exploit   World Wide Web  
B06-2915.HTM
1227 bytes. by darkfire@f4kelive.zzn.com (2006)
Foing (manage_songs.php) Remote File Inclusion
World Wide Web  
B06-2164.HTM
3306 bytes. by botan (2006)
Foing Remote File Include Vulnerability
World Wide Web  
B06-2588.HTM
2941 bytes. by s3rv3r_hack3r (2006)
Foing Remote File Include Vulnerability
World Wide Web  
WEB5031.HTM
64951 bytes. (2002)
FormMail anonymous mail forwarding
Exploit   World Wide Web  
FMAIL2~1.HTM
3233 bytes. by M. Rawls (2001)
FormMail.pl - spam anonymously
Advisory   World Wide Web  
FMAIL2.HTM
3236 bytes. by M. Rawls (2001)
FormMail.pl can be used by spammers to send fakemail
Advisory   World Wide Web  
FREEST~1.TXT
2762 bytes. (1998)
Freestats.com CGI Vulnerability
Hacking   World Wide Web  
WEB4835.HTM
1087 bytes. (2001)
Fuse Talk
Exploit   World Wide Web  
BT887.TXT
1333 bytes. (2003)
Fusen News 3.3 Account Add Vulnerability
Exploit   World Wide Web  
B06-1241.HTM
2352 bytes. by h4cky0u.org (2006)
G-Book 1.0 XSS And Other Vulnerabilities
World Wide Web  
B06-3439.HTM
1041 bytes. by ineal (2006)
galleria <= 1.0 Remote File Inclusion Vulnerability
World Wide Web  
GALL14V.TXT
1413 bytes. (2003)
Gallery 1.4 Including File Vunerability CGI:
Exploit   World Wide Web  
WEB5592.HTM
1384 bytes. (2002)
gallery PHP code injection
Exploit   World Wide Web  
B06-2185.HTM
1349 bytes. by Dj_ReMix_20 (2006)
Gallery Upload Vulnerabilities
World Wide Web  
BT740.TXT
2077 bytes. (2003)
Gallery XSS security advisory (with fix and patch instructions)
World Wide Web  
BT1306.TXT
3096 bytes. (2003)
Gast Arbeiter Privilege Escalation CGI:
World Wide Web  
WEB4992.HTM
818 bytes. (2002)
Geeklog.cgi user restrictions may be bypassed
Exploit   World Wide Web  
GETDOC.HTM
2251 bytes. by Black Watch Labs (2000)
Getdoc.cgi - attackers can read documents that would normally require logon
Advisory   World Wide Web  
CIACI014.TXT
16057 bytes. (1998)
GlimpseHTTP WebGlimpse CGI bin Packages

BT459.TXT
17165 bytes. (2003)
GNATS (The GNU bug-tracking system) multiple buffer overflow vulnerabilities. CGI:
World Wide Web  
GNATSW~1.HTM
2209 bytes. by J. Pol (2001)
Gnatsweb.pl unchecked user input
Advisory   World Wide Web  
WEB5114.HTM
4161 bytes. (2002)
gnujsp is vulnerable to directorylisting, scriptsource disclosure and httpd-restrictions bypass
Exploit   World Wide Web  
WEB5138.HTM
2088 bytes. (2002)
Greymatter remote login/pass exposure
Exploit   World Wide Web  
HACKINCG.HTM
117609 bytes. by b0iler (2002)
Hacking CGI - security and exploitation CGI:
World Wide Web  
CGI_ME~1.TXT
9796 bytes. (1998)
How To Remove Meta-characters From User-Supplied Data In CGI Scripts
Hacking   World Wide Web  
HTGREP1.HTM
2914 bytes. by N30 (2000)
Htgrep retrieve arbitrary files
Advisory   World Wide Web  
HSCRIPT1.HTM
1517 bytes. by D. Moore (1998)
Htmlscript 2.99x CGI Directory traversal vulnerability
Advisory   World Wide Web  
HTMLSCRP.TXT
1677 bytes. (1998)
Htmlscript CGI fileaccess
Exploit   World Wide Web  
HTTPPROT.HTM
1390 bytes. by SNS (2001)
HTTProtect 1.1 - change protected files
Advisory   Exploit   World Wide Web  
HYPSEEK.HTM
1239 bytes. by IcleFire (1999)
Hyperseek - change the whole site's layout!!
Advisory   World Wide Web  
HYPSEEK2.HTM
1147 bytes. by MC Gan (2001)
Hyperseek ../ and %00 vulnerabilities
Advisory   World Wide Web  
B06-2808.HTM
1938 bytes. by majorsecurity.de (2006)
i.List <= 1.5 - XSS
World Wide Web  
BT2005.TXT
8103 bytes. (2003)
IA WebMail 3.x PoC
Exploit   Windows   World Wide Web  
IKEYMAN1.HTM
4416 bytes. by Rude Yak (2000)
IBM HTTPD /usr/bin/ikeyman setuid bug
Advisory   World Wide Web  
DB2WWW.HTM
3237 bytes. by ISS (2000)
IBM Net.Data db2www CGI Exploitable Buffer Overflow
Advisory   World Wide Web  
NETDAT.HTM
2194 bytes. by C. Kalmes (2000)
IBM Net.Data disclose local path of server files
Advisory   World Wide Web  
ICATCA~1.TXT
1159 bytes. (1997)
iCat Carbo Server security bug
Exploit   World Wide Web  
B06-2242.HTM
666 bytes. by LiNuX_rOOt1 (2006)
IceWarp Cross-Site Scripting(XSS)
World Wide Web  
ICHAT3.TXT
2908 bytes. (1998)
iChat 3.0 and below allow remote users to read abritrary files.
Exploit   World Wide Web  
ICHAT.HTM
1143 bytes. by J. Beaton (1998)
IChat 3.0 ROOMS Server Directory traversal vulnerability
Advisory   World Wide Web  
IHTML.HTM
2721 bytes. by Team Asylum (1999)
iHTML Merchant - view sensitive files, possibly including credit card details!!!
Advisory   Windows   World Wide Web  
WEB5408.HTM
4306 bytes. (2002)
Image Display System information disclosure vulnerability
Exploit   World Wide Web  
WEB5447.HTM
3003 bytes. (2002)
ImageFolio Pro weak access control for administration area, path disclosure, and more
Exploit   World Wide Web  
WEB5581.HTM
1497 bytes. (2002)
IMail Web Calendaring service crash using malformed POST request
Exploit   World Wide Web  
WEB5537.HTM
1231 bytes. (2002)
IMHO webmail allows reading other users mail
Exploit   World Wide Web  
IMP3.HTM
2713 bytes. by Secure Reality Advisory (2000)
IMP - email as atatchment any file IMP can read
Advisory   World Wide Web  
IMP4.HTM
7662 bytes. by J. Steube (2000)
IMP - execute commands under the uid/gid of the webserver
Advisory   World Wide Web  
IMP2.HTM
4032 bytes. by J. Steube (2000)
IMP - many weaknesses
Advisory   World Wide Web  
WEB4852.HTM
1806 bytes. (2001)
IMP cross-site script attack
Exploit   World Wide Web  
IMP.HTM
3346 bytes. by J. Nazario (2000)
IMP Inappropriate Permissions
Advisory   World Wide Web  
INDEXU20.HTM
1641 bytes. by Sp4rK (2001)
IndexU 2.0beta cookie vulnerability
Advisory   World Wide Web  
INFO2WWW.TXT
926 bytes. (1998)
info2www - vulnerabilities in some versions
Hacking   World Wide Web  
INFO2W~1.TXT
963 bytes. (1998)
Info2www CGI - blindly allows files to open
Exploit   World Wide Web  
INFOSEEK.HTM
16425 bytes. by USSR, eEye (1999)
Infoseek Ultraseek GET command overflow
Advisory   World Wide Web  
B06-1866.HTM
515 bytes. by qex (2006)
Instant Photo Gallery <= Multiple XSS
World Wide Web  
B06-1867.HTM
490 bytes. by qex (2006)
Instant Photo Gallery <= Multiple XSS
World Wide Web  
WEB5214.HTM
852 bytes. (2002)
Instant Web Mail additional POP3 commands and mail headers
Exploit   World Wide Web  
ISTORY~1.HTM
1577 bytes. by qDefense (2001)
Interactive Story 1.3 read arbitrary file
Advisory   World Wide Web  
B06-3411.HTM
564 bytes. by Breeeeh (2006)
Internet Crna Gora SQL Injection
World Wide Web  
BT271.TXT
2090 bytes. (2003)
iPlanet Messaging Server possible XSS
World Wide Web  
WEB5523.HTM
2742 bytes. (2002)
iPlanet search engine allows remote files access and buffer overflow
Exploit   World Wide Web  
B06-2395.HTM
788 bytes. by zerogue (2006)
IpLogger <= 1.7 XSS
World Wide Web  
IRIXPF~1.TXT
1738 bytes. (1998)
Irix pfdisplay-CGI
SGI/Irix   Exploit   World Wide Web  
B06-3102.HTM
1543 bytes. by majorsecurity.de (2006)
ISO.org - XSS vulnerability
World Wide Web  
TOMCAT3.HTM
947 bytes. by Et Lownoise (2000)
Jakarta Tomcat 3.1 - reveals paths
Advisory   World Wide Web  
TOMCAT1.HTM
1469 bytes. by J. Madsen (2000)
Jakarta Tomcat retrieve arbitrary files
Advisory   World Wide Web  
TOMCAT4.HTM
1264 bytes. by S. Morris (2000)
Jakarta Tomcat retrieve arbitrary files
Advisory   Unix   World Wide Web  
JAVA7.HTM
3290 bytes. by Princeton (1998)
Java implementation-related security hole
Advisory   World Wide Web  
B06-3306.HTM
6678 bytes. by rgod (2006)
Jaws <= 0.6.2 'Search gadget' SQL injection
World Wide Web  
B06-1530.HTM
814 bytes. by root__ (2006)
Jbook Cross Site Scripting
World Wide Web  
WEB5730.HTM
954 bytes. (2002)
Jetty CGIServlet Arbitrary Command Execution
Exploit   World Wide Web  
B06-1938.HTM
684 bytes. by alp_eren@ayyildiz.org (2006)
JMK's Picture Gallery admin login
World Wide Web  
JRUN4.HTM
3281 bytes. by Shah, Shah, McClure (2000)
JRun access to sensitive directories
Advisory   World Wide Web  
JRUN3.HTM
2903 bytes. by Shah, Shah, McClure (2000)
JRun compile and run any file in web document root
Advisory   World Wide Web  
JRUN5.HTM
2199 bytes. by Shah, Shah, McClure (2000)
JRun DoS
Advisory   World Wide Web  
JRUN.HTM
3585 bytes. by Allaire (2000)
JRun sample code vulnerabilities
Advisory   World Wide Web  
JRUN2.HTM
2154 bytes. by Shah, Shah, McClure (2000)
JRun Show Code Vulnerabilities
Advisory   World Wide Web  
JSERVER.HTM
2288 bytes. by J. Testa (2001)
JServer - execute any CGI, arbitrary shell commands
Advisory  
B06-3531.HTM
1539 bytes. by Darren Bounds (2006)
Juniper Networks DX Web Administration Persistent System Log XSS Vulnerability
World Wide Web  
WEB4912.HTM
1934 bytes. (2001)
kebi-Webmail reveals mailbox data
Exploit   World Wide Web  
B06-3438.HTM
4457 bytes. by Marc Ruef (2006)
Kyberna AG ky2help various form fields SQL Injection
World Wide Web  
HTTPD28.HTM
1331 bytes. by C. Shotton (1997)
Lasso CGI retrieve arbitrary files
Advisory   Macintosh/MacOS   World Wide Web  
BT415.TXT
1239 bytes. (2003)
LedNews XSS Vulnerability (CGI/Perl) v0.7
Exploit   World Wide Web  
B06-2694.HTM
5268 bytes. by rgod (2006)
LifeType <=1.0.4 'articleId' SQL injection
World Wide Web  
B06-3838.HTM
5910 bytes. by simo64 (2006)
LinksCaffe 3.0 SQL injection/Command Execution Vulnerabilties
World Wide Web  
B06-1686.HTM
1380 bytes. by d4igoro (2006)
Linpha 1.1.0 - XSS Vulnerabilities
World Wide Web  
B06-2688.HTM
1048 bytes. by ajannhwt (2006)
LocazoList Classifieds <= v1.05e(viewmsg.asp) Remote SQL Injection Vulnerability
World Wide Web  
B06-2725.HTM
1048 bytes. by ajannhwt (2006)
LocazoList Classifieds <= v1.05e(viewmsg.asp) Remote SQL Injection Vulnerability
World Wide Web  
B06-2971.HTM
1049 bytes. by SpC-x (2006)
Ltwcalendar 4.1.3 version - Remote File Include Vulnerabilities
World Wide Web  
B06-1267.HTM
1687 bytes. by alex (2006)
Maian Events SQL Injection Vulnerability
World Wide Web  
B06-1268.HTM
1721 bytes. by alex (2006)
Maian Support Authentication Bypass
World Wide Web  
MAILFILE.HTM
3078 bytes. by D. Brockhausen (2000)
Mail File CGI POST security hazard
Advisory   World Wide Web  
BT648.TXT
1443 bytes. (2003)
Mail System Ver. 0.9 Beta CGI:
World Wide Web  
MAIL2WEB.HTM
1480 bytes. by P. Oonk (2000)
Mail2web - read other peoples' email!
Advisory   World Wide Web  
MAILFORM.HTM
2204 bytes. by K. Hanmore (2000)
Mailform.pl - access any file by email
Advisory   Unix   World Wide Web  
MAILMAN.HTM
2718 bytes. by S. Jared (1999)
Mailman - read/write/delete other users' webmail!
Advisory   Unix   World Wide Web  
MAILMAN3.HTM
4845 bytes. by C. Lindsey (2000)
Mailman execute arbitrary code
Advisory   Unix   World Wide Web  
MAILMAN4.HTM
2963 bytes. by Secure Reality (2000)
Mailman execute arbitrary code
Advisory   Unix   World Wide Web  
MAILMAN2.HTM
8193 bytes. by S. Bubrouski (2000)
Mailman fatal() weakness
Advisory   Unix   World Wide Web  
MNEWS1.HTM
1713 bytes. by K. Bohater (2001)
Mailnews.cgi 1.1, 1.3 - add or delete users from maillist without admin password!
Advisory   World Wide Web  
MSTUDIO2.HTM
13060 bytes. by Naif, Vecna, FuSyS (2000)
MailStudio2000 CGI retrieve arbitrary files (as root!)
Advisory   World Wide Web  
MAILTO.HTM
3583 bytes. by K. Hanmore (2000)
Mailto.cgi execute arbitrary code
Advisory   World Wide Web  
BT418.TXT
6531 bytes. (2003)
Mailtraq Multiple Vulnerabilities (DoS, Password Decryption, Directory Traversal) CGI:
World Wide Web  
WEB5086.HTM
1864 bytes. (2002)
MakeBid CGI cross site scripting vulnerability and insecure cookie usage
Exploit   World Wide Web  
B06-2426.HTM
3274 bytes. by rgod (2006)
Mambo <= 4.6. RC1 xss
World Wide Web  
B06-3094.HTM
9532 bytes. by rgod (2006)
Mambo <= 4.6rc1 sql injection
World Wide Web  
B06-3927.HTM
2272 bytes. by A-S-T2006 (2006)
Mambo Gallery Manager v095.r3 Remote File Inclusion Vulnerabilities
World Wide Web  
B06-1700.HTM
4008 bytes. by alireza hassani (2006)
Mambo/Joomla rss component vulnerability
World Wide Web  
B06-1544.HTM
1339 bytes. by d4igoro (2006)
Manila <= 9.5 - XSS Vulnerabilities
World Wide Web  
B06-1642.HTM
3479 bytes. by Aaron Kaplan (2006)
manila.userland cross site scriptable
World Wide Web  
WEB5641.HTM
19107 bytes. (2002)
mantis Multiple Vulnerabilities
Exploit   World Wide Web  
B06-3387.HTM
1278 bytes. by mac68k (2006)
Massting Cross-Site Scripting Vulnerability
World Wide Web  
MASTCGI.TXT
9907 bytes. (2002)
Mastergate/add.cgi - an In Depth Look
Hacking   World Wide Web  
FORMMAIL.HTM
5449 bytes. by Black Watch Labs (2000)
Matt's FormMail.cgi - view useful environment variables
Advisory   World Wide Web  
B06-3142.HTM
4608 bytes. by Fixer (not AOH's Fixer) (2006)
Maximus SchoolMAX XSS vuln
World Wide Web  
HACK1918.HTM
3061 bytes. by M. Lopez (2004)
MaxWebPortal XSS, Sql Injection and Avatar ScriptCode Injection
Exploit   World Wide Web  
B06-1742.HTM
1882 bytes. by alex (2006)
MD News Authentication Bypass and SQL Injection Vulnerabilities
World Wide Web  
B06-1319.HTM
1457 bytes. by simo64 (2006)
MediaSlash Gallery 'rub' variable Remote File inlcusion Vulnerability
World Wide Web  
BT504.TXT
2789 bytes. (2003)
Megabook 2.0 -XSS & UA execution
World Wide Web  
MERCNTYL.HTM
1090 bytes. by M. O'Neill (1998)
Mercantyle vulnerable to simple URL attacks
Advisory   Windows   World Wide Web  
MERCUR.HTM
6986 bytes. by USSR Labs (2000)
MERCUR WebMail-Client DoS
Advisory   Denial of Service   World Wide Web  
WEB5291.HTM
2044 bytes. (2002)
MHonArc script filtering bypass vulnerability
Exploit   World Wide Web  
B06-1774.HTM
908 bytes. by CrAzY.CrAcKeR (2006)
Mini-NUKE v2.3<<--- SQL Injection
World Wide Web  
B06-1136.HTM
1698 bytes. by dabdoub_mosikar@forislam.com (6)
Mini-Nuke<=1.8.2 SQL injection (2006)
World Wide Web  
B06-2570.HTM
3980 bytes. by Mustafa Can Bjorn IPEKCI (2006)
MiniNuke v2.x Multiple Remote Vulnerabilities
World Wide Web  
B06-2788.HTM
2893 bytes. by Federico Fazzi (2006)
MiraksGalerie <= 2.62 Multiple Remote command execution
World Wide Web  
B06-2806.HTM
2908 bytes. by Federico Fazzi (2006)
MiraksGalerie <= 2.62 Multiple Remote command execution
World Wide Web  
B06-2854.HTM
1747 bytes. by luny (2006)
MobeSpace v2.0 - XSS
World Wide Web  
DDIRECT1.HTM
5327 bytes. by Litchfield, Litchfield (2000)
Mobius DocumentDirect for the Internet 1.2 buffer overflows
Advisory   World Wide Web  
B06-3393.HTM
687 bytes. by CrAzY.CrAcKeR (2006)
Module's Name "Classifieds" SQL Injection
World Wide Web  
B06-3173.HTM
922 bytes. by CrAzY.CrAcKeR (2006)
Module's Name Content<<--V1.0 SQL injection
World Wide Web  
B06-3172.HTM
887 bytes. by CrAzY.CrAcKeR (2006)
Module's Name Downloads <<--V 7 SQL injection
World Wide Web  
B06-2025.HTM
689 bytes. by Mster-X (2006)
modules name(Downloads)SQL Injection Exploit
World Wide Web  
B06-2024.HTM
688 bytes. by Mster-X (2006)
modules name(Sections)SQL Injection Exploit
World Wide Web  
MOJOXSS.TXT
706 bytes. (2002)
Mojo Mail Signup Form XSS
World Wide Web  
B06-2851.HTM
1346 bytes. by luny (2006)
mole.com.ua Booking Script
World Wide Web  
B06-2852.HTM
922 bytes. by luny (2006)
mole.com.ua Ticket Booking Script - XSS
World Wide Web  
B06-1321.HTM
1328 bytes. by undefined1 (2006)
MonAlbum 0.8.7 SQL Injection
World Wide Web  
WEB5769.HTM
863 bytes. (2002)
MondoSearch show source of files
Exploit   World Wide Web  
BT1189.TXT
1785 bytes. (2003)
MondoSoft File Creation vulnerability
World Wide Web  
B06-3040.HTM
1517 bytes. by luny (2006)
MP3 Search/Archive v1.2 - XSS
World Wide Web  
MP3M~1.HTM
951 bytes. by Nemesystm (2001)
MP3Mystic dot-dot directory traversal
Advisory   World Wide Web  
MHTML.HTM
1683 bytes. by N. Heinen (2000)
MultiHTML allows SSI calls to retrieve arbitrary files
Advisory   World Wide Web  
B06-2114.HTM
4944 bytes. by Brian Gallagher (2006)
Multiple SQL Injection Vulnerabilities in Dreamweaver Generated Code
World Wide Web  
B06-2960.HTM
1924 bytes. by black code (2006)
multiple Xss exploits in 35mmslidegallery V6
World Wide Web  
B06-2594.HTM
1630 bytes. by black code (2006)
multiple Xss exploits in : vCard 2.9
World Wide Web  
B06-3816.HTM
2384 bytes. by securityconnection (2006)
MusicBox <= 2.3.4 XSS SQL injection Vulnerability
World Wide Web  
BT1327.TXT
10985 bytes. (2003)
Musicqueue multiple local vulnerabilities CGI:
World Wide Web  
B06-1780.HTM
1965 bytes. by alex (2006)
MWNewsletter SQL Injection and XSS Vulnerabilities
World Wide Web  
B06-1836.HTM
2090 bytes. by Mustafa Can Bjorn IPEKCI (2006)
My Gaming Ladder Combo System <= 7.0 Remote File Inclusion Vulnerability.
World Wide Web  
B06-1666.HTM
1677 bytes. by botan (2006)
MyEvent Remote File Execution And XSS Attacking
World Wide Web  
B06-3261.HTM
1899 bytes. by botan (2006)
MyMail Directory Traversal And XSS Attacking Vulnerability
World Wide Web  
MYMKXSS.TXT
1023 bytes. (2002)
MyMarket 1.71 XSS
World Wide Web  
B06-3959.HTM
2494 bytes. by philipp.niedziela@gmx.de (2006)
MyNewsGroups <= 0.6b (myng_root) Remote Inclusion Vulnerability
World Wide Web  
B06-2737.HTM
2680 bytes. by farhadkey (2006)
myNewsletter 1.1.2 SQL_Injection
World Wide Web  
B06-2909.HTM
2124 bytes. by luny (2006)
Myscrapbook v3.1 - XSS
World Wide Web  
BT1671.TXT
287 bytes. (2003)
nCUBE Server Manager CGI:
World Wide Web  
NETAUTH1.HTM
889 bytes. by M. Maiffret (2000)
Netauth CGI Directory traversal vulnerability
Advisory   World Wide Web  
NETBEANS.HTM
2095 bytes. by H. Skinner (1999)
NetBeans/ Forte' Java IDE HTTP Directory traversal vulnerability
Advisory   World Wide Web  
NCBOOK~1.HTM
859 bytes. by digitalseed (2001)
NetCode NC Book 0.2b remote command execution
Advisory   World Wide Web  
WEB4878.HTM
1939 bytes. (2001)
NetDynamics Session ID Reusable
Windows   World Wide Web  
SMINDER.HTM
4160 bytes. by Litchfield, Litchfield (2000)
Netegrity SiteMinder 3.6, 4.0 URL Parsing flaws allow protected pages to be viewed directly
Advisory   World Wide Web  
BT1177.TXT
6051 bytes. (2003)
Netup UTM Multiple Security Issues CGI:
World Wide Web  
WEB5115.HTM
1943 bytes. (2002)
Netwin's WebNews remotely exploitable buffer overrun
Exploit   Windows   World Wide Web  
B06-3397.HTM
4460 bytes. by gmdarkfig (2006)
News <= 5.2 XSS, SQL Injection, Full Path Disclosure
World Wide Web  
NEWSDESK.HTM
2796 bytes. by B10Z (2001)
News Desk - retrieve arbitrary files
Advisory   World Wide Web  
NPUBLISH.HTM
4862 bytes. by N30 (2000)
News Publisher CGI - add user into authors file
Advisory   World Wide Web  
NUPDATE.HTM
15023 bytes. by Morpheus{bd} (2000)
News Update change admin password without knowing old one!
Advisory   World Wide Web  
B06-2663.HTM
858 bytes. by CrAzY.CrAcKeR (2006)
newsfactory Cross Site Scripting & SQL injection
World Wide Web  
B06-3962.HTM
2026 bytes. by tr_zindan@wolfsecurity.org (2006)
NewsLetter v3.5 <= (NL_PATH) Remote File Inclusion Exploit
World Wide Web  
B06-3963.HTM
1113 bytes. by botan (2006)
newsReporter v1.0 Remote Command Execution
World Wide Web  
B06-1079.HTM
1918 bytes. by alex (2006)
NMDeluxe XSS & SQL Injection Vulnerabilities
World Wide Web  
B06-1099.HTM
2982 bytes. by raphael.huck@free.fr (2006)
Noah's Classifieds Multiple Path Disclosure and Cross Site Scripting Vulnerabilities
World Wide Web  
NOCCXSS.TXT
3600 bytes. (2002)
NOCC Cross Site Scripting
World Wide Web  
B06-2817.HTM
3328 bytes. by gmdarkfig (2006)
NPDS <= 5.10 Local Inclusion, XSS, Full path disclosure
World Wide Web  
NPH-MLST.HTM
7248 bytes. by K. Bohater (2001)
Nph-maillist.pl exploit
Advisory   Exploit   World Wide Web  
B06-1237.HTM
799 bytes. by dabdoub_mosikar@forislam.com (2006)
nuked-klan<=1.7.5 SQL Injection
World Wide Web  
B06-2595.HTM
1644 bytes. by farhadkey@kapda.ir (2006)
Nukedit Unauthorized Admin Add
World Wide Web  
B06-1444.HTM
1748 bytes. by alex (2006)
Null news SQL Injection Vulnerability
World Wide Web  
BT915.TXT
2067 bytes. (2003)
Omail Webmail 0.98.4 remote command exec CGI:
World Wide Web  
B06-2612.HTM
4307 bytes. by enji@seclab.tuwien.ac.at (2006)
Open Searchable Image Catalogue: XSS and SQL Injection Vulnerabilities
World Wide Web  
B06-2037.HTM
1810 bytes. by Kamil Sienicki (2006)
OpenFAQ - HTML injection and XSS (Cross Site Scripting)
World Wide Web  
WEB5300.HTM
1525 bytes. (2002)
OpenKeyServer cross site scripting allows code insertion in keys
Exploit   World Wide Web  
B06-1320.HTM
718 bytes. by dabdoub-mosikar@moroccan-security.com (2006)
Oxygen<=1.x.x SQL injection
World Wide Web  
B06-1078.HTM
1458 bytes. by r00t3rr0r (2006)
Oxynews Sql İnjection
World Wide Web  
B06-2095.HTM
925 bytes. by Dj_ReMix_20 (2006)
OzzyWork Gallery SQL Injection
World Wide Web  
B06-2111.HTM
1120 bytes. by Dj_ReMix_20 (2006)
OzzyWork Gallery Upload Vulnerabilities
World Wide Web  
BT306.TXT
2621 bytes. (2003)
P-Synch Password Management Multiple Vulnerabilities CGI:
World Wide Web  
PAGELOG1.HTM
1360 bytes. by M. Stratman (2000)
Pagelog.cgi Directory traversal vulnerability
Advisory   World Wide Web  
PALS.HTM
1107 bytes. by UkR (2001)
PALS Library System "pine pipe bug" yields arbitrary files, command execution
Advisory   Exploit   World Wide Web  
PAMMYS1.HTM
2929 bytes. by Secure Reality (2000)
Pam_mysql up to 0.4.7 escape character attacks may yield plaintext passwords
Advisory   World Wide Web  
B06-3488.HTM
6426 bytes. by rgod (2006)
PAPOO <=3RC3 sql injection / admin credentials disclosure
World Wide Web  
B06-2747.HTM
1119 bytes. by luny (2006)
Particle Gallery v1.0.0
World Wide Web  
B06-2043.HTM
1163 bytes. by zerogue (2006)
PassMasterFlex (and PassMasterFlex+) XSS injection
World Wide Web  
BT1715.TXT
3174 bytes. (2003)
PeopleSoft Gateway Administration servlet path disclosure issue
World Wide Web  
BT1712.TXT
3018 bytes. (2003)
PeopleSoft IScript XSS issue CGI:
World Wide Web  
BT1709.TXT
3488 bytes. (2003)
PeopleSoft PeopleBooks Search CGI multiple argument issues CGI:
World Wide Web  
PERL2.HTM
3704 bytes. by S. Kenton (2000)
Perl with databases - input overflows
Advisory   Denial of Service   World Wide Web  
BT827.TXT
3964 bytes. by OpenPKG (2003)
perl-www XSS
Advisory   Linux   World Wide Web  
WEB4892.HTM
2832 bytes. (2001)
PGPMail.pl
Exploit   World Wide Web  
B06-3579.HTM
735 bytes. by luny (2006)
Photocycle v1.0 - XSS
World Wide Web  
B06-1845.HTM
1128 bytes. by Dr-Jr7 (2006)
photokorn 1.53 , 1.542 << Sql
World Wide Web  
WEB5681.HTM
3809 bytes. (2002)
phpGB mysql injection, cross site scripting, DoS, and arbitrary code execution
Denial of Service   Exploit   World Wide Web  
B06-1299.HTM
1166 bytes. by dabdoub-mosikar@moroccan-security.com (2006)
PhxContacts <= 0.93.1 beta Multiple SQL injection & xss
World Wide Web  
PICSERVR.HTM
845 bytes. by J. Testa (2001)
Picserver - break out of web root
Advisory   World Wide Web  
B06-1939.HTM
656 bytes. by tugr (2006)
planetGallery admin login
World Wide Web  
B06-1631.HTM
1249 bytes. by d4igoro (2006)
planetSearch+ - XSS Vulnerabilities
World Wide Web  
POLL_IT1.HTM
4539 bytes. by E. Levy (2000)
Poll_It 2.0 pipe attack
Advisory   World Wide Web  
POLL_IT.TXT
1465 bytes. (2000)
Poll_It CGI arbitrary file retrieval vulnerability
Advisory   World Wide Web  
POLL_IT2.HTM
1884 bytes. by A. Daminato (2000)
Poll_It CGI v2.0 retrieve arbitrary files
Advisory   World Wide Web  
B06-3426.HTM
546 bytes. by BoNy-m (2006)
popup Vacation Rentals SQL Injection
World Wide Web  
BT1382.TXT
792 bytes. (2003)
possible issue with IPv4 mapped address and $REMOTE_ADDR in CGI

PQUERY.HTM
7939 bytes. by Proton (2001)
Post-query (CGI) Exploitable Buffer Overflow
Advisory   World Wide Web  
POSTACW1.HTM
2105 bytes. by M. Rudel (2000)
PostACI Webmail - retrieve passwords
Advisory   World Wide Web  
POSTACW2.HTM
6227 bytes. by B. Demir (2001)
PostACI Webmail lacks checks for malicious SQL
Advisory  
BT854.TXT
2678 bytes. (2003)
PostNuke Downloads & Web_Links ttitle variable XSS
World Wide Web  
BT868.TXT
2678 bytes. (2003)
PostNuke Downloads & Web_Links ttitle variable XSS
World Wide Web  
B06-1605.HTM
1153 bytes. by d4igoro (2006)
PowerClan 1.14 - SQL Injection
World Wide Web  
PLUSMAIL.HTM
5190 bytes. by YT Cracker (2000)
PowerScripts PlusMail password file exploit
Advisory   Exploit   World Wide Web  
B06-2672.HTM
1607 bytes. by Soothackers (2006)
Pro Publish SQL Injection and XSS Vulnerabilities
World Wide Web  
PSIT.HTM
1430 bytes. by UkR (2001)
Processit.pl - environment and setup variables can be viewed
Advisory   World Wide Web  
PROSPERO.HTM
2740 bytes. by Darkyoda (2001)
Prospero 1.3.5 CGI trivial PIN bruteforcing
Advisory   Exploit   World Wide Web  
BT970.TXT
1197 bytes. (2003)
PtHProductions Gastenboek - XSS
World Wide Web  
B06-2424.HTM
2978 bytes. by luny (2006)
Publicist v0.95 - XSS And Full Path Errors
World Wide Web  
PWC.HTM
1458 bytes. by W. Pawlikowski (2001)
Pwc exploitable buffer overrun
Advisory   Exploit   World Wide Web  
B06-3221.HTM
31684 bytes. by enji@seclab.tuwien.ac.at (2006)
QaTraq 6.5 RC: Multiple XSS Vulnerabilities
World Wide Web  
B06-1579.HTM
1725 bytes. by alex (2006)
qliteNews SQL Injection Vulnerability
World Wide Web  
B06-2330.HTM
693 bytes. by Mster-X (2006)
RaceEventManagement <--v0.7.6 SQL injection & XSS
World Wide Web  
B06-3174.HTM
902 bytes. by CrAzY.CrAcKeR (2006)
RahnemaCo "page.php" Remote File Inclusion
World Wide Web  
B06-3127.HTM
947 bytes. by Breeeeh (2006)
RahnemaCo Remote File Inclusion Exploit
World Wide Web  
B06-3170.HTM
4962 bytes. by majorsecurity.de (2006)
Ralf Image Gallery <=0.7.4 - Multiple XSS, Remote File Include and directory traversal vulnerabilities
World Wide Web  
B06-1818.HTM
1645 bytes. by alex (2006)
RateIt SQL Injection Vulnerability
World Wide Web  
RMEDIA2.HTM
4300 bytes. by Bow (1999)
RealMedia Server Buffer Overflow
Advisory   Multi Platform  
RMEDIA1.HTM
1881 bytes. by F. Alonso (1999)
RealMedia Server Cleartext Passwords
Advisory   Multi Platform  
RSERVER6.HTM
1910 bytes. by Core SDI (2000)
RealNetworks RealServer 7 and below gives up random pieces of core memory
Advisory   Multi Platform  
RSERVER5.HTM
4915 bytes. by USSR Labs (2000)
RealNetworks RealServer 7 Denial of Service
Advisory   Denial of Service   Linux  
RSERVER4.HTM
1573 bytes. by USSR Labs (2000)
RealNetworks RealServer 7 memory problem/Denial of Service
Advisory   Denial of Service   Linux   Windows  
RSERVER3.HTM
14589 bytes. by Dark Spyrit (1999)
RealNetworks RealServer G2 Buffer Overflow
Advisory   Exploit   Unix  
B06-1717.HTM
3948 bytes. by info@g-0.org (2006)
RechnungsZentrale V2 - SQL injection and Remote PHP inclusion vulnerabilities
World Wide Web  
REDI.HTM
1913 bytes. by D. Nakatomi (2001)
REDI Cleartext Passwords
Advisory   Windows   World Wide Web  
B06-3741.HTM
5149 bytes. by RedTeam Pentesting (2006)
Remote command execution in planetGallery
World Wide Web  
B06-3904.HTM
710 bytes. by R0t-K33Y (2006)
Remote Include Vulnerability ====> in Dr.Jr7 Gallery 3.2 RC1
World Wide Web  
MACOSX.TXT
2795 bytes. (1999)
Repeated calls to CGI's under MacOS X will cause a "system panic".
Hacking   World Wide Web  
SEXEC5.HTM
1430 bytes. by Benjurry (2000)
RESIN ServletExec show source using URL encoded characters
Advisory   World Wide Web  
SEXEC4.HTM
1841 bytes. by Benjurry (2000)
RESIN ServletExec show source vulnerability
Advisory   Windows   World Wide Web  
RESPON~1.HTM
5806 bytes. by D. Irvine (2001)
Respondus v1.1.2 weak encryption
Advisory   World Wide Web  
B06-2883.HTM
1116 bytes. by luny (2006)
Ringlink v3.2 - XSS
World Wide Web  
ROADS1.HTM
1593 bytes. by UkR (2001)
ROADS search system %00 read abritrary files vulnerability
Advisory   World Wide Web  
BT566.TXT
2460 bytes. (2003)
Rockliffe Mailsite Express - mail attachments retrievable without proper authentication CGI:
World Wide Web  
SAFE-CGI.TXT
13758 bytes. by Paul P. (1995)
Safe CGI Programming
World Wide Web  
CIACG017.TXT
24479 bytes. (1996)
Sample HTTPD CGI Vulnerabilities

CA-9725.TXT
6236 bytes. (1998)
Sanitizing User-Supplied Data in CGI Scripts

BT958.TXT
5376 bytes. (2003)
SAP Internet Transaction Server CGI:
Windows   World Wide Web  
SAP1.HTM
1510 bytes. by A. Cabezon (2001)
SAP Internet Transaction Server Cross Site Scripting Vulnerability
World Wide Web  
B06-3609.HTM
700 bytes. by Breeeeh (2006)
saphp "add.php" forumid Parameter SQL Injection
World Wide Web  
B06-1596.HTM
2131 bytes. by selfar2002 (2006)
SaphpLesson 2.0 (forumid) Remote SQL Injection Exploit
World Wide Web  
B06-2032.HTM
3060 bytes. by o.y.6 (2006)
SaPHPLesson 3.0 Multbugs
World Wide Web  
B06-3147.HTM
843 bytes. by CrAzY.CrAcKeR (2006)
SaphpLesson<<--1.1 "misc.php" SQL injection
World Wide Web  
BT1209.TXT
2376 bytes. (2003)
sbox path disclosure problem
World Wide Web  
WEB5021.HTM
1311 bytes. (2002)
scoadminreg.cgi local root exploit
Exploit   SCO Unixware   World Wide Web  
B06-1786.HTM
1518 bytes. by simo64 (2006)
Scry Gallery Directory Traversal & Full Path Disclosure Vulnerabilites
World Wide Web  
B06-1815.HTM
1011 bytes. by arko.dhar (2006)
Scry Gallery XSS Vulnerability
World Wide Web  
HTTPD81.HTM
4909 bytes. (2000)
Search.cgi Directory traversal vulnerability
Advisory   Exploit   World Wide Web  
B06-2860.HTM
5841 bytes. by Secunia Research (2006)
SelectaPix Cross-Site Scripting and SQL Injection Vulnerabilities
World Wide Web  
WEB5582.HTM
3098 bytes. (2002)
sendform.cgi directory traversal leading to arbitrary file reading
Exploit   World Wide Web  
UNIFY2.HTM
2302 bytes. (2000)
ServletExec 3.0c Multiple Vulnerabilities
Advisory   Exploit   World Wide Web  
UNIFY3.HTM
2516 bytes. (2000)
ServletExec 3.0c Overwrite Files
Advisory   World Wide Web  
UNIFY4.HTM
5474 bytes. (2000)
ServletExec 3.0c show source hole
Advisory   World Wide Web  
WWW-CG~1.TXT
6032 bytes. (1998)
Several New CGI Vulnerabilities
Hacking   World Wide Web  
B06-1970.HTM
868 bytes. by zerogue (2006)
SF-Users V1.0 XSS injection
World Wide Web  
SGIPFD~1.TXT
1303 bytes. (1998)
Sgi pfdisplay2 CGI holes
SGI/Irix   Exploit   World Wide Web  
SIMPCGI.TXT
4028 bytes. (2002)
Simple CGI Exploiting
Hacking   World Wide Web  
B06-3153.HTM
2170 bytes. by simo64 (2006)
singapore gallery <= 0.10.0 Multiple Vulnerabilities
World Wide Web  
B06-2073.HTM
1225 bytes. by alp_eren@ayyildiz.org (2006)
singapore v0.9.7 XSS Vulnerabilities
World Wide Web  
B06-1446.HTM
1707 bytes. by simo64 (2006)
Sire 2.0 Nws Remote File inclusion & Arbitary Files Upload
World Wide Web  
B06-3316.HTM
992 bytes. by botan (2006)
SiteBar Cross-Site Scripting
World Wide Web  
BT971.TXT
889 bytes. (2003)
Sitebuilder 1.4 Directory Traversal CGI:
World Wide Web  
B06-1348.HTM
776 bytes. by ali (2006)
SiteMan <= All version SQL injection in admin_login.asp
World Wide Web  
WEB5117.HTM
3598 bytes. (2002)
SiteNews remote add user exploit
Exploit   World Wide Web  
B06-1296.HTM
1824 bytes. by alex (2006)
Skull-Splitter's PHP Downloadcounter for Wallpapers SQL Injection
World Wide Web  
B06-2399.HTM
616 bytes. by zerogue (2006)
SkyeShoutbox <= v.1.2.0 XSS
World Wide Web  
SCODE.HTM
2011 bytes. by B. Aker (2000)
Slashcode 2.0-Alpha default password
Advisory   World Wide Web  
WEB5113.HTM
2189 bytes. (2002)
SlashCode login vulnerability (through cross site scripting)
Exploit   World Wide Web  
B06-2711.HTM
806 bytes. by CrAzY.CrAcKeR (2006)
SMS "messages.php" SQL injection
World Wide Web  
B06-3412.HTM
597 bytes. by Breeeeh (2006)
SmS Script SQL Injection
World Wide Web  
B06-1657.HTM
1107 bytes. by qex (2006)
Snipe Gallery <= 3.1.4 Multiple XSS
World Wide Web  
SNPSRVLT.TXT
335 bytes. (2000)
Snoop Servlet gives up too much info
Advisory   World Wide Web  
TOMCAT.HTM
696 bytes. by Et Lownoise (2000)
Snoop Servlet gives up too much sensitive site info
Advisory   World Wide Web  
B06-3365.HTM
1682 bytes. by securityconnection (2006)
Softbiz Banner Exchange 1.0 XSS
World Wide Web  
B06-3257.HTM
1732 bytes. by securityconnection (2006)
Softbiz Dating 1.0 SQL injection
World Wide Web  
SOJOURN1.HTM
2292 bytes. by Cerberus Security (2000)
Sojourn Search Engine - retrieve arbitrary files
Advisory   Multi Platform   World Wide Web  
B06-3760.HTM
2482 bytes. by chris_hasibuan (2006)
SolpotCrew Advisory #2 - Advanced Poll ver 2.02 (base_path) Remote File Inclusion
World Wide Web  
B06-3789.HTM
2050 bytes. by mail@sipplah.com (2006)
SolpotCrew Advisory #3 - com_trade Remote File Inclusion (mosConfig_absolute_path)
World Wide Web  
SEARCH~1.TXT
6727 bytes. (2000)
SolutionScripts.com Home Free CGI package search.cgi allows remote users to view directory listings on the server.
Hacking   World Wide Web  
BT406.TXT
6437 bytes. (2003)
Sphera Hosting Director Control Panel Multiple Vulnerabilities
World Wide Web  
SPINBOX1.HTM
1363 bytes. by T. Heen (2000)
SpinBox/1.1 CGI Buffer Overflows
Advisory   World Wide Web  
B06-2283.HTM
1919 bytes. by innate@gmx.de (2006)
sql injection + view all files as admin user
World Wide Web  
B06-1905.HTM
2279 bytes. by satanchild123 (2006)
SQL injection exploit IPB <= 2.1.4
World Wide Web  
B06-3413.HTM
1939 bytes. by black code (2006)
Sql injection in Diesel joke site script
World Wide Web  
B06-1744.HTM
3172 bytes. by susam_pal@yahoo.co.in (2006)
SQL Injection in incredibleindia.org
World Wide Web  
B06-1706.HTM
2076 bytes. by ak (2006)
SQL Injection in package SYS.DBMS_LOGMNR_SESSION
World Wide Web  
B06-2550.HTM
967 bytes. by black-cod3 (2006)
sql injection in PHPcafe.net Tutorial Manager
World Wide Web  
B06-2456.HTM
965 bytes. by help-users (2006)
sql injection in phpWebSite 0.8.3
World Wide Web  
B06-1233.HTM
1084 bytes. by xx_hack_xx_2004 (2006)
SQL Injection in SaphpLesson2.0
World Wide Web  
B06-1363.HTM
1262 bytes. by xx_hack_xx_2004 (2006)
SQL Injection in Softbiz Image Gallery
World Wide Web  
B06-1236.HTM
1008 bytes. by mfoxhacker (2006)
SQL injection in VGM Forbin.
World Wide Web  
B06-3947.HTM
5358 bytes. by vulnerabilities@mail.ru (2006)
SQL injection Seir Anphin v666 Community Management System
World Wide Web  
B06-2204.HTM
2008 bytes. by socsam (2006)
SQL-Injection in e107 allows attacker to become a site admininstrator
World Wide Web  
B06-1341.HTM
3360 bytes. by uid0@exploitercode.com (2006)
SQuery <= 4.5 Remote File Inclusion Exploit
World Wide Web  
B06-3549.HTM
1722 bytes. by SHiKaA- (2006)
SQuery <= 4.5(libpath) Remote File Inclusion Exploit
World Wide Web  
B06-3822.HTM
3210 bytes. by saudi.unix (2006)
SQuery v.x (devi.php) (armygame.php) Remote File Inclusion
World Wide Web  
WEB5065.HTM
1750 bytes. (2002)
Squid - cachemgr.cgi shipped with Squid can be fooled to scan hosts besides firewalls
Exploit   Linux   World Wide Web  
SQMAIL~1.HTM
17343 bytes. by Secure Reality (2001)
SquirrelMail webmail Insecure include() calls
Advisory   World Wide Web  
BT1987.TXT
2705 bytes. (2003)
Sqwebmail Session Hijacking CGI:
World Wide Web  
CGIMAIL.HTM
2237 bytes. by S. Huseby (2000)
Stalker's CGImail retrieve arbitrary files
Advisory   World Wide Web  
SS502X.TXT
14687 bytes. (2000)
Statistics Server 5.02x buffer overflow as shipped
Advisory   World Wide Web  
SDBS~1.HTM
4354 bytes. by M. Prodeus (2001)
SuSE 6.x, 7.x sdbsearch.cgi misplaced environment variable trust
Advisory   Linux   World Wide Web  
SWISH.HTM
4499 bytes. by J. de Haas (1998)
Swish search engine package indexer vulnerabilities
Advisory   World Wide Web  
TALKBACK.HTM
1727 bytes. by ThePike (2001)
Talkback.cgi retrieve arbitrary files
Advisory   World Wide Web  
THUSBAND.HTM
3221 bytes. by Rpc (2000)
Tammie's HUSBAND scripts ad.cgi insecure input validation vulnerability
Advisory   Exploit   World Wide Web  
TEST-CGI.TXT
3262 bytes.
test-cgi vulnerability in certain setups
Hacking   World Wide Web  
TCOUNTER.HTM
3760 bytes. by D. Petrescu (1998)
Textcounter.pl - execute arbitrary code
Advisory   Unix   World Wide Web  
TFODOC.HTM
1727 bytes. by Cgisecurity.com (2001)
The Free On-line Dictionary of Computing execute arbitrary code
Advisory   World Wide Web  
VALISEHA.TXT
2721 bytes. (1998)
The New Valise Email Hack
Hacking   World Wide Web  
OCCWEB.TXT
16159 bytes. (2002)
The Occasional Hacking of Web Applications
World Wide Web  
B06-1652.HTM
592 bytes. by qex (2006)
Tiny Web Gallery <= 1.4 XSS
World Wide Web  
TIVOLI.HTM
1984 bytes. by Duct Tape (2001)
Tivoli Management Framework problem
Advisory   Windows   World Wide Web  
SECWAY1.HTM
2591 bytes. by iXsecurity (2001)
Tivoli SecureWay Policy Director incorrect URL-Encoding handling
Advisory   World Wide Web  
TWT~1.HTM
1502 bytes. (2001)
ttawebtop.cgi read arbitrary files
Advisory   World Wide Web  
BT458.TXT
4286 bytes. (2003)
Tutos Multiple vulnerabilities
Exploit   World Wide Web  
TWIG2~1.HTM
8811 bytes. by L. Rustianto (2001)
Twig 2.6.2 free webmail system Unquoted SQL Query String problem
Advisory   World Wide Web  
UDIR~1.HTM
5555 bytes. by I. Dobrovitski (2001)
udirectory.pl remote command execution
Advisory   Unix   World Wide Web  
USEEK3.HTM
1528 bytes. by Chinansl (2000)
Ultraseek Directory Traversal Vulnerability
Advisory   World Wide Web  
USEEK2.HTM
3885 bytes. by USSR Labs (2000)
Ultraseek Search Engine DoS
Advisory   Denial of Service   World Wide Web  
UNCGI.HTM
4943 bytes. by K. Staring (2001)
Uncgi directory traversal
Advisory   World Wide Web  
WEB4896.HTM
25195 bytes. (2001)
ValiCert Multiple Vulns
Exploit   World Wide Web  
VALUEC~1.TXT
3326 bytes. (1998)
ValueClick CGI Vulnerability
Hacking   World Wide Web  
B06-3330.HTM
714 bytes. by CrAzY.CrAcKeR (2006)
vCard PRO SQL Injection
World Wide Web  
B06-1472.HTM
1718 bytes. by alex (2006)
vCounter - sourceworkshop SQL Injection Vulnerability
World Wide Web  
B06-1527.HTM
2143 bytes. by king_purba@yahoo.co.uk (2006)
Vegadns blind sql injection and cross site scripting
World Wide Web  
B06-2777.HTM
796 bytes. by CrAzY.CrAcKeR (2006)
Vice Stats 0.5b SQL injection
World Wide Web  
VIEW-S~1.TXT
740 bytes.
view-source - ugly hole in the view-source cgi script
Hacking   World Wide Web  
WEB5353.HTM
4757 bytes. (2002)
ViewCVS cross-site scripting bug
Exploit   World Wide Web  
VIEWSR~1.HTM
1341 bytes. by Joe Testa (2001)
viewsrc.cgi - view any file on server
Advisory   World Wide Web  
A6120.HTM
3934 bytes. (2003)
Vignette Story Server sensitive informations leakage
World Wide Web  
WEB4834.HTM
1334 bytes. (2001)
viralator create arb file
Exploit   World Wide Web  
VNDBCGI.TXT
2145 bytes. (2001)
vndb.cgi can display arb files
Exploit   World Wide Web  
B06-2520.HTM
996 bytes. by try_og (2006)
Vodafone XSS vuln
World Wide Web  
BT534.TXT
4795 bytes. (2003)
VPASP SQL Injection Vulnerability & Exploit CODE CGI:
Exploit   World Wide Web  
VPOPM1.TXT
1655 bytes. (2002)
vpopmail CGIapps vadddomain multiple vulnerabilities
World Wide Web  
VPOPM.TXT
1712 bytes. (2002)
vpopmail CGIapps vpasswd vulnerabilities
World Wide Web  
WEB5450.HTM
1801 bytes. (2002)
W-Agora remote file injection
Exploit   World Wide Web  
SENDTEMP.HTM
1901 bytes. by T. Parker (2001)
W3.ORGS sendtemp.pl directory traversal vulnerability
Advisory   Unix   World Wide Web  
WEB5025.HTM
6892 bytes. (2002)
w3perl succeptible to cookie theft, faked logs and more
Exploit   World Wide Web  
B06-1891.HTM
1803 bytes. by alex (2006)
warforge.NEWS SQL Injection and Multiple XSS Vulnerabilities
World Wide Web  
BT64.TXT
2047 bytes. (2003)
WebAdmin Path disclosure and file access CGI:
World Wide Web  
WBANNER.HTM
1128 bytes. by J. Westerink (2000)
WebBanner directory traversal vulnerability
Advisory   Exploit   World Wide Web  
B06-3155.HTM
782 bytes. by entrika_fs (2006)
WeBBoA Hosting Script SQL Injection
World Wide Web  
BT996.TXT
6614 bytes. (2003)
Webcalendar <= 0.9.42 Cross Site Scripting Attacks and Potential SQL Injection Attack
World Wide Web  
BT689.TXT
352 bytes. (2003)
WebCalendar Include File
World Wide Web  
B06-2023.HTM
1152 bytes. by David Maciejak (2006)
WebCalendar User Account Enumeration Weakness
World Wide Web  
B06-2611.HTM
1603 bytes. by socsam (2006)
WebCalendar-1.0.3 reading of any files
World Wide Web  
SB5934.HTM
593 bytes. (2003)
WebCollection Plus directory traversal
Windows   World Wide Web  
WEBGAIS.TXT
3145 bytes.
WebGais CGI exploit
Hacking   World Wide Web  
WEBMAIL3.HTM
2374 bytes. by P. Stoev (2000)
WebMail - hijack others' attachments
Advisory   World Wide Web  
WEBMAIL1.HTM
12579 bytes. by CDI (2000)
WebMail sites - Multiple Vulnerabilities
Advisory   World Wide Web  
WEB5122.HTM
931 bytes. (2002)
WebNews default hardcoded passwords
Exploit   Windows   World Wide Web  
WOBJECTS.HTM
2195 bytes. by B. Potter (2000)
WebObjects with development licence DoS, possible remotely execu8table exploit
Advisory   Denial of Service   World Wide Web  
WEBPAGE.HTM
1324 bytes. by UkR (2001)
Webpage.cgi - view environment variables
Advisory   World Wide Web  
WEBSPIRS.HTM
1542 bytes. by UkR (2001)
WebSPIRS CGI 3.1 (at least) Directory traversal vulnerability
Advisory   World Wide Web  
HTTPD80.HTM
1144 bytes. by hhp (1999)
WebWho+ (a whois cgi) shell escape characters vulnerability
Advisory   World Wide Web  
ANHTTPD.HTM
1007 bytes. by Unyun (1999)
Windows98J with AN-HTTPd 1.20b CGI remote command exploit
Advisory   Windows   World Wide Web  
B06-3303.HTM
945 bytes. by luny (2006)
Winged Gallery v1.0
World Wide Web  
WINWRA~1.HTM
1355 bytes. by SNS (2001)
WinWrapper Professional 2.0 read arbitrary files
Advisory   Windows   World Wide Web  
WC21VULN.TXT
1392 bytes. (2000)
WorldClient 2.1 vulnerability
Advisory   World Wide Web  
B06-3970.HTM
1482 bytes. by AG Spider (2006)
WoW Roster <= 1.5.x Remote File Include (hsList.php)
World Wide Web  
B06-3978.HTM
1537 bytes. by AG Spider (2006)
WoW Roster <= 1.5.x Remote File Include (hsList.php)
World Wide Web  
WRENZOOM.TXT
2380 bytes. (2003)
Wrensoft Zoom Search Engine XSS
World Wide Web  
WEB5222.HTM
4207 bytes. (2002)
wwwisis remote command execution and get files
Exploit   World Wide Web  
B06-1306.HTM
915 bytes. by dabdoub-mosikar@moroccan-security.com (2006)
X-Changer <=v0.2 Demo SQL injection
World Wide Web  
B06-2060.HTM
516 bytes. by alp_eren@ayyildiz.org (2006)
X-POLL admin By-Pass
World Wide Web  
A6076.HTM
2968 bytes. (2003)
XOOPS path disclosure
World Wide Web  
WEB5208.HTM
4888 bytes. (2002)
Xpede cookie password decode
Exploit   World Wide Web  
WEB5297.HTM
8694 bytes. (2002)
Xpede multiple remote vulnerabilities
Exploit   World Wide Web  
B06-1253.HTM
1919 bytes. by xx_hack_xx_2004 (2006)
XSS & SQL Injection in Music Box v2.3
World Wide Web  
B06-1933.HTM
1641 bytes. by outlaw@aria-security.net (2006)
XSS Attack On DirectAdmin Hosting Managment
World Wide Web  
B06-1820.HTM
1786 bytes. by Aditya@Metaeye.Org (2006)
XSS Bug in OpenGear Server Website
World Wide Web  
B06-2615.HTM
1188 bytes. by black code (2006)
Xss exploit in Chipmunk directory
World Wide Web  
B06-2582.HTM
1185 bytes. by black-cod3 (2006)
Xss exploit in Photoalbum B&W v1.3
World Wide Web  
B06-1271.HTM
1220 bytes. by xx_hack_xx_2004 (2006)
XSS in AL-Caricatier
World Wide Web  
B06-1662.HTM
1114 bytes. by W3._ (2006)
Xss In bMachine 2٫7
World Wide Web  
B06-3270.HTM
2002 bytes. by preth00nker (2006)
XSS in Cpanel 10
World Wide Web  
B06-2217.HTM
1099 bytes. by bonsite (2006)
XSS in FreeTextBox and FCKEditor Basic Toolbar Selection
World Wide Web  
B06-3096.HTM
637 bytes. by nanoymaster (2006)
XSS in GardenWeb
World Wide Web  
B06-2492.HTM
1181 bytes. by V8f3 (2006)
XSS in Monster Top List | MTL 1.4
World Wide Web  
B06-3889.HTM
621 bytes. by R0t-K33Y (2006)
Xss in MttKe-php v2.6
World Wide Web  
B06-2489.HTM
764 bytes. by MC Iglo (2006)
XSS in Omegasoft's Insel
World Wide Web  
B06-1291.HTM
598 bytes. by badnet_xoopiter (2006)
XSS in PHPKIT Version 1.6.03
World Wide Web  
B06-1252.HTM
1508 bytes. by D.Snezhkov (2006)
XSS in Raindance Communications Web Conferencing Pro
World Wide Web  
B06-1436.HTM
1027 bytes. by w3._ (2006)
Xss In SaphpLesson3.0
World Wide Web  
B06-2776.HTM
1154 bytes. by spymeta (2006)
XSS on LarkinWEB & Company
World Wide Web  
B06-2427.HTM
646 bytes. by Breeeeh (2006)
YLZH(right.php)Cross Site Scripting
World Wide Web  

SQL

MYSQL7.TXT
1322 bytes. (2000)
MySQL File Structure Weakness
Advisory   World Wide Web  
IN200204.HTM
9710 bytes. (2002)
Exploitation of Vulnerabilities in Microsoft SQL Server
Windows   World Wide Web  
WEB5553.HTM
15028 bytes. (2002)
Microsoft SQL server buffer overrun in resolution service
Exploit   Windows  
WEB5460.HTM
948 bytes. (2002)
Microsoft SQL Server pwdencrypt() buffer overflow
Exploit   Windows  
MICROSQL.TXT
1674 bytes. (2002)
Microsoft SQL Server Webtasks privilege elevation
Windows   World Wide Web  
WEB5445.HTM
3163 bytes. (2002)
Microsoft SQLXML ISAPI Overflow and Cross Site Scripting
Exploit   World Wide Web  
WEB5655.HTM
3069 bytes. (2002)
SQL server
Exploit   Windows  
WEB5126.HTM
4872 bytes. (2002)
SQL Server - Sql Server buffer overflow
Exploit   Windows  
WEB5560.HTM
4159 bytes. (2002)
SQL Server 2000 Buffer Overflows and SQL Inyection vulnerabilities
Exploit   Windows  
WEB5489.HTM
1017 bytes. (2002)
SQL server 2000 hex padding to fool trustees
Exploit   Windows  
WEB5529.HTM
1672 bytes. (2002)
SQL Server BULK INSERT command remote overflow
Exploit   Windows  
WEB5283.HTM
5568 bytes. (2002)
SQL server extended procedure buffer overflow
Exploit   Windows  
WEB4956.HTM
2242 bytes. (2001)
SQL Server functions format strings and buffer overflows issues
Exploit   Windows  
WEB5533.HTM
2238 bytes. (2002)
SQL Server may leave passwords in files afther install or patch
Exploit   Windows  
WEB5637.HTM
3788 bytes. (2002)
SQL server priviledge escalation via the helper agent
Exploit   Windows  
WEB5470.HTM
4670 bytes. (2002)
SQL server remote exploit via OpenDataSource function overflow
Exploit   Windows  
WEB4947.HTM
4665 bytes. (2001)
SQL Server stored procedure encryption == NULL
Exploit   Windows  
WEB5521.HTM
2315 bytes. (2002)
SQL Server users passwords cryptanalysis whitepaper and tool
Exploit   Windows  
WEB5636.HTM
1001 bytes. (2002)
SQL user priviledge escalation via stored procedures
Exploit   Windows  
BT1718.TXT
6739 bytes. by Conectiva (2003)
postgresql buffer overflow
Advisory   Linux   World Wide Web  
BT1685.TXT
4615 bytes. (2003)
postgresql remote code exec
Advisory   Linux   World Wide Web  
N-125.TXT
18564 bytes. by LLNL (2003)
Cumulative Patch for Microsoft SQL Server (CIAC N-125)
Advisory   Windows   World Wide Web  
BT592.TXT
3242 bytes. (2003)
Pipe Filename Local Privilege Escalation FAQ
Windows   World Wide Web  
DSA-381.HTM
11920 bytes. by Debian (2003)
mysql - buffer overflow
Advisory   Linux  
DSA-303.HTM
15520 bytes. by Debian (2003)
mysql - privilege escalation
Advisory   Linux  
BT1428.TXT
3444 bytes. (2003)
Microsoft SQL Server DoS
Windows   World Wide Web  
BT1426.TXT
3428 bytes. (2003)
Microsoft SQL Server local code execution
Windows   World Wide Web  
BT1155.TXT
6060 bytes. by CLA-2003:743 (2003)
MySQL (Conectiva)
Advisory   Linux   World Wide Web  
FLAWSQLS.TXT
2038 bytes. (2003)
Hunting Flaws in Microsoft SQL Server
Windows   World Wide Web  
A6058.HTM
1941 bytes. (2003)
MySQL configuration injection makes it runs as root
Unix   World Wide Web  
A6055.HTM
1864 bytes. (2003)
PostgreSQL Remote DoS condition
Unix   World Wide Web  
A6088.HTM
1781 bytes. (2003)
paFileDB SQL Injection Vulnerability
World Wide Web  
NAMEPEX.TXT
1933 bytes. (2003)
@Stake Named Pipe Exploit (mySQL)
World Wide Web  
BT1430.TXT
3958 bytes. by OpenPKG (2003)
postgresql remote code exec
Advisory   Linux   World Wide Web  
BT931.TXT
3965 bytes. (2003)
AppSecInc Security Alert: Buffer Overflow in UDP broadcasts for Microsoft SQL Server client utilities
World Wide Web  
BT1060.TXT
5879 bytes. (2003)
Buffer overflow in MySQL
World Wide Web  
BT726.TXT
3726 bytes. (2003)
exp for Microsoft SQL Server DoS(MS03-031) By Xfocus
World Wide Web  
BT1114.TXT
4310 bytes. (2003)
mysql
World Wide Web  
BT1140.TXT
3379 bytes. (2003)
MySQL buffer overflow.
World Wide Web  
BT721.TXT
3800 bytes. (2003)
paFileDB 3.1
World Wide Web  
BT303.TXT
894 bytes. (2003)
PAFileDB SQL Injection Vulnerability & Ratings Cheat Fix
World Wide Web  
BT989.TXT
2713 bytes. (2003)
SQL-injection defensively
World Wide Web  
BT1501.TXT
17184 bytes. (2003)
SuSE: mysql (SuSE-SA:2003:042)
World Wide Web  
M-094.TXT
10897 bytes. by LLNL (2002)
Microsoft SQL Server 2000 OpenDataSource Buffer Overflow (CIAC M-094)
Windows   World Wide Web  
M-102.TXT
13481 bytes. by LLNL (2002)
Microsoft SQL Server 2000 Resolution Service Buffer Overflow Vulnerabilities (CIAC M-102)
Windows   World Wide Web  
M-069.TXT
12490 bytes. by LLNL (2002)
Microsoft SQL Server Unchecked Buffer Vulnerabilities (CIAC M-069)
Windows   World Wide Web  
M-101.TXT
14113 bytes. by LLNL (2002)
Microsoft Unchecked Buffer in SQL Server 2000 Utilities Could Allow Code Execution (CIAC M-101)
Windows   World Wide Web  
M-091.TXT
14147 bytes. by LLNL (2002)
Microsoft Unchecked Buffer in SQLXML Vulnerability (CIAC M-091)
Windows   World Wide Web  
M-099.TXT
14905 bytes. by LLNL (2002)
Microsoft Cumulative Patch for SQL Server (CIAC M-099)
Advisory   Windows   World Wide Web  
N-003.TXT
16924 bytes. by LLNL (2002)
Microsoft Cumulative Patch for SQL Server (CIAC N-003)
Advisory   Windows   World Wide Web  
N-008.TXT
12880 bytes. by LLNL (2002)
Microsoft Elevation of Privilege in SQL Server Web Tasks (CIAC N-008)
Advisory   Windows   World Wide Web  
BT1303.TXT
1840 bytes. (2003)
Multiple SQL Injection Vulnerabilities in DeskPRO
World Wide Web  
SQL2.HTM
1764 bytes. by L. Owen (1999)
PostgreSQL plaintext password
Advisory   Unix   World Wide Web  
SQL4.HTM
2986 bytes. by J. Lopez (2000)
SQL Security Issues
Advisory   Multi Platform  
SQL1.HTM
3730 bytes. by B. Coverett (1999)
SQL Server 7.0 cleartext passwords
Advisory   Multi Platform   World Wide Web  
SQL5.HTM
1817 bytes. by J. Gunther (2000)
SQL Server EM - view others' passwords
Advisory   Multi Platform  
SQL3.HTM
29596 bytes. by Rain Forest Puppy (2000)
SQL systems - how Packetstorm's wwwthreads system was compromised by the author
Advisory   World Wide Web  
HACK0703.HTM
4254 bytes. (2004)
mysqlbug tmpfile/symlink vulnerability.

HACK0438.HTM
4204 bytes. by GLSA 200405-20 (2004)
Insecure Temporary File Creation In MySQL

HACK0412.HTM
4019 bytes. by GLSA 200409-02 (2004)
MySQL: Insecure temporary file creation in mysqlhotcopy

HACK1112.HTM
1377 bytes. (2004)
BENCHMARK() is not the only way to determine successfull MySQL injection

HACK1422.HTM
6675 bytes. (2004)
MySQL Authentication Bypass

HACK1289.HTM
5358 bytes. by OpenPKG-SA-2004.014 (2004)
OpenPKG Security Advisory (mysql)

HACK1259.HTM
6342 bytes. by OpenPKG-SA-2004.045 (2004)
OpenPKG Security Advisory (mysql)

HACK3537.HTM
6922 bytes. by CLA-2004:892 (2004)
Conectiva Security Announcement - MySQL

B06-1977.HTM
20383 bytes. by Stefano Di Paola (2006)
MySQL COM_TABLE_DUMP Information Leakage and Arbitrary command execution.

B06-3309.HTM
6571 bytes. by Martin Pitt (2006)
MySQL 4.1 vulnerability

B06-1976.HTM
10000 bytes. by Stefano Di Paola (2006)
MySQL Anonymous Login Handshake - Information Leakage.

B06-3021.HTM
752 bytes. by Kanatoko (2006)
MySQL DoS

B06-2079.HTM
15893 bytes. by Martin Pitt (2006)
MySQL vulnerabilities

B06-1898.HTM
15755 bytes. by Martin Pitt (2006)
MySQL vulnerability

B06-2212.HTM
11384 bytes. by Martin Pitt (2006)
MySQL vulnerability

B06-3054.HTM
15697 bytes. by Martin Pitt (2006)
MySQL vulnerability

B06-3748.HTM
6649 bytes. by Martin Pitt (2006)
mysql-dfsg-4.1 vulnerability

B06-2155.HTM
3889 bytes. by Sune Kloppenborg Jeppesen (2006)
MySQL: Information leakage

B06-2898.HTM
3972 bytes. by Sune Kloppenborg Jeppesen (2006)
MySQL: SQL Injection

B06-3046.HTM
3741 bytes. by Sune Kloppenborg Jeppesen (2006)
PAM-MySQL: Multiple vulnerabilities

TB12948.HTM
24528 bytes. by Kees Cook (2007)
MySQL vulnerabilities

TB10060.HTM
15275 bytes. by Kees Cook (2007)
MySQL vulnerability

TB12152.HTM
4284 bytes. by Raphael Marichez (2007)
MySQL: Denial of Service and information leakage

TB13478.HTM
3556 bytes. by Pierre-Yves Rofes (2007)
MySQL: Denial of Service

TB10768.HTM
4224 bytes. by Raphael Marichez (2007)
MySQL: Two Denial of Service vulnerabilities


Java / JavaScript

A6116.HTM
1995 bytes. (2003)
Java Agent freezes Lotus Notes and Domino 6.0.1 JAV:
World Wide Web  
A6070.HTM
12510 bytes. (2003)
JDK Denial-Of-Service holes JAV:
World Wide Web  
BT1305.TXT
3798 bytes. (2003)
Cross Site Java applets JAV:
Windows   World Wide Web  
N-141.TXT
8881 bytes. by LLNL (2003)
Timing based attack vulnerabilities in the JAVA Secure Socket Extension (CIAC N-141) JAV:
World Wide Web  
BT1337.TXT
1939 bytes. (2003)
Java 1.4.2_02 InsecurityManager JVM crash JAV:
World Wide Web  
BT326.TXT
825 bytes. (2003)
JBOSS 3.2.1: JSP source code disclosure JAV:
World Wide Web  
BT1314.TXT
4298 bytes. (2003)
Security vulnerability in SUN's Java Virtual Machine implementation JAV:

BT480.TXT
7871 bytes. (2003)
Privilege escalation applet, Java Media Framework JAV:

WEB5189.HTM
1221 bytes. (2002)
java - JRE Bytecode Verifier may be exploited to escalate privileges.
Exploit   World Wide Web  
WEB5193.HTM
1807 bytes. (2002)
Java Applet Can Redirect Browser Traffic
Exploit   World Wide Web  
WEB5578.HTM
13044 bytes. (2002)
JavaScript's "Same Origin Policy" circumvention allows bypassing firewall rules
Exploit   World Wide Web  
WEB4846.HTM
2044 bytes. (2001)
Entrust - getAccess
Exploit   World Wide Web  

Fake Caller ID?
Now you can create a Caller ID signal containing any name and number you want! Free Download!

Felis Nox Adult Games is back! Always free, no signup ever! Over 21 only, please!

It's back! TUCoPS H/P Text Archive

Hacking - General Information - Hacking Techniques - Password Security - Internet - Web - Web Servers - Apache - IIS - Sites - Web Apps - CMS, Portals - e-Commerce - Blogs - Wiki - Guestbooks - Adminware - PHP - Web Forums - Popular Web Forums - Networks - Wireless - Unix - HP/UX - SGI - BSD - SCO - SunOS/Solaris - Unix-like Platforms - Cisco - Oracle - VMWare - Citrix - Network Appliances - Macintosh - Handhelds - Games - Linux - Linux Apps A-M - Linux Apps N-Z - Red Hat/Fedora - Slackware - Debian - Mandriva/Mandrake - Gentoo - SuSE - Conectiva - Trustix - Retro Linux - Antique Systems - Dialup BBSes Windows Windows Apps Windows Network Vulns
Phreaking - General Phreaking - Phreak Boxes - Major Cellular Brands - Other Cellular Brands - Cellular Misc. - Number Lists - Caller ID - Public Phones - Voice Mail - Asterisk - Technical System Info
/etc - Hardware Hacks - Crypto - Malware - PC Hacks - Radio Hacks - Television Hacks - Scams - Physical Security - Espionage - Privacy - Wetware Hacks - Hacker Counterculture - The Law - Totally Miscellaneous


Hardware 99
Are you working with older hardware like us? If you're using the same equipment we are, you probably need service information complete with vacuum tube pinouts and daily coal requirements. This archive isn't quite that old but it is a definite help to anyone who has a PC that is not brand-new anymore. And it's free!

It's Back!
PC Game Sniper 2007
Thousands of cheats, hints, hacks and walkthroughs for PC Games!

Also New: AOH Food!
Our parent site, THC BBS, has returned and brought a huge new text archive with it, containing over 60,000 recipes! And like everything at the AOH complex, it's free!

Security and Computing Freedom Archives

InfoSec News 2005
InfoSec News 2006
InfoSec News 2007
InfoSec News 2008
InfoSec News 2009

PoliTech 2005
PoliTech 2006
PoliTech 2007
PoliTech 2008
PoliTech 2009


/etc/passwd - 3,400 default passwords
Updated Jul.31/2007

Recover Passwords
Recover Outlook Express Mail & News passwords, IE and Netscape website passwords, dialup (RAS) passwords and more!



Bored? Play some Games!


Text files by
The Fixer, El Oscuro
AOH Staff
and AOH Contributors
!
Phone Sounds
More Phone Sounds
The Fixer's Phreak Box Review
Box Review Handy Index!
Orange Boxing FAQ
Beating Caller ID FAQ
S.O.B. Orange Box
(NEW Version 1.94 2009)

More Caller ID Info
Phrack, Inc.!
Latest (final???) Issue: #63

Updated Nov.26/2006
More Payphone Info

Click here to get it!


It's Back! Check it out now!
New Site: Things I Shot!
Put your cell cam to good use!

The Web Page You Have Reached is now...
This is a Recording (formerly The Web Page You Have Reached)
And you thought we had a lot of telephone sounds!

Rancho Nevada - the biggest, baddest, best BBS game ever written!


easter egg #71

Site design & layout copyright © 1986-2009 AOH
We do not send spam. If you have received spam bearing an artofhacking.com email address, please forward it with full headers to abuse@artofhacking.com.