Datum A V Name/Beschreibung Platform Author
24.11.2011
HP Network Node Manager (NMM) i 9.10 - nnm/protected/statuspoll.jsp nodename Parameter Cross-Site Scripting
6 JSP Paul Phillips
20.01.2012
Syneto Unified Threat Management 1.3.3/1.4.2 - Multiple Cross-Site Scripting / HTML Injection Vulnerabilities
6 PHP Gerardo Vazquez, Eduardo Arriols
01.02.2012
OpenEMR 4.1 - Interface/patient_file/encounter/load_form.php formname Parameter Traversal Local File Inclusion
6 PHP Gerardo Vazquez, Eduardo Arriols
11.02.2012
Basic Analysis and Security Engine (BASE) 1.4.5 - base_stat_ports.php base_path Parameter Remote File Inclusion
6 PHP Gerardo Vazquez, Eduardo Arriols
11.02.2012
Basic Analysis and Security Engine (BASE) 1.4.5 - base_stat_time.php base_path Parameter Remote File Inclusion
6 PHP Gerardo Vazquez, Eduardo Arriols
26.03.2008
BlackBoard Academic Suite 6/7 - webapps/BlackBoard/execute/viewCatalog searchText Parameter Cross-Site Scripting
6 CGI Knight4vn
12.09.2007
BOINC 5.10.20 - forum_forum.php id Parameter Cross-Site Scripting
7 PHP Gerardo Vazquez, Eduardo Arriols
09.01.2008
Sun Java System Identity Manager 6.0/7.0/7.1 - /idm/help/index.jsp helpUrl Variable Remote Frame Injection
7 JSP Paul Phillips
17.01.2014
SmarterMail Enterprise and Standard 11.x - Persistent Cross-Site Scripting
7 ASP Saeed reza Zamanian
24.03.2008
Quick Classifieds 1.0 - controlpannel/alterFeatured.php3 DOCUMENT_ROOT Parameter Remote File Inclusion
7 PHP Gerardo Vazquez, Eduardo Arriols
03.04.2008
mcGallery 1.1 - admin.php lang Parameter Cross-Site Scripting
7 PHP K-9999
16.02.2014
mbDriveHD 1.0.7 iOS - Multiple Vulnerabilities
7 iOS Jungseok Roh
28.06.2011
Joomla! 1.6.3 - Multiple Cross-Site Scripting Vulnerabilities
7 PHP Gerardo Vazquez, Eduardo Arriols
28.07.2011
HP Network Automation 9.10 - SQL Injection
7 PHP Gerardo Vazquez, Eduardo Arriols
23.11.2011
PrestaShop 1.4.4.1 - /modules/mondialrelay/kit_mondialrelay/SuiviExpedition_ajax.php Expedition Parameter Cross-Site Scripting
7 PHP Gerardo Vazquez, Eduardo Arriols
23.11.2011
Prestashop 1.4.4.1 - 'displayImage.php' HTTP Response Splitting
7 PHP RGouveia
24.11.2011
Balitbang CMS 3.3 - alumni.php hal Parameter SQL Injection
7 PHP Gerardo Vazquez, Eduardo Arriols
28.11.2011
Manx 1.0.1 - admin/tiny_mce/plugins/ajaxfilemanager/ajax_get_file_listing.php Multiple Parameter Cross-Site Scripting
7 PHP Gerardo Vazquez, Eduardo Arriols
05.12.2011
Elxis CMS 2009 - 'index.php' task Parameter Cross-Site Scripting
7 PHP Ewerson Guimaraes
11.02.2012
Basic Analysis and Security Engine (BASE) 1.4.5 - base_stat_iplink.php base_path Parameter Remote File Inclusion
7 PHP Gerardo Vazquez, Eduardo Arriols
11.02.2012
Basic Analysis and Security Engine (BASE) 1.4.5 - base_stat_sensor.php base_path Parameter Remote File Inclusion
7 PHP Gerardo Vazquez, Eduardo Arriols
11.02.2012
Basic Analysis and Security Engine (BASE) 1.4.5 - admin/index.php base_path Parameter Remote File Inclusion
7 PHP Gerardo Vazquez, Eduardo Arriols
29.02.2012
Dotclear 2.4.1.2 - /admin/plugin.php page Parameter Cross-Site Scripting
7 PHP Gerardo Vazquez, Eduardo Arriols
08.05.2015
SynaMan 3.4 Build 1436 - Multiple Vulnerabilities
7 PHP Gerardo Vazquez, Eduardo Arriols
08.05.2015
WordPress Plugin Ad Inserter 1.5.2 - Cross-Site Request Forgery
7 PHP Gerardo Vazquez, Eduardo Arriols