Planet Source code suffers from URL redirection, cross site scripting, remote file upload, and remote SQL injection vulnerabilities.
08ccbd2d051bcbffef50f9d6c06e60df15faee3476135babf9dd60a3950d3d1c
MyBB MyBBlog plugin version 1.0 suffers from a cross site scripting vulnerability. Note that this finding houses site-specific data.
1578e5289a6b5a76e304563e9345edf564380d58be23670d28152abc4de59330
XAMPP version 3.2.1 suffers from a cross site scripting vulnerability.
7e4de4aa57bfb79c844e7b693a14cc3809880e3e4222a8e2b4765d28905bc3cf
The Joomla Aclassfb component suffers from a remote shell upload vulnerability.
9d0fb8ff59906454f8f77b6cd1a8d6cbd5c42f068d8b4fc058718a4e32f3316f
Joomla AceSearch component version 3.0 suffers from a cross site scripting vulnerability.
e7a05ee0db5238182077cb146d0bce90318ec17be3495461f1abfbfc7421e6d8
SNES9x ReRecording Emulator version 1.x.x suffers from a DLL hijacking vulnerability in codec_mpeg.dll.
945b33dd757b0e6ca21b6b7e518b606145f1374aca82fe60f91eb3410fb7e412
TheHostingTool version 1.2.x suffers from multiple cross site scripting vulnerabilities.
b8ff28cc399a94a530cfdfd2f9d7d3a6540e7c41b39dc57e51fa08a0112da645
Joomla Hotornot2 component suffers from a remote code execution vulnerability via a shell upload.
57c6ef0042333393f7da14f257ea50e899e05e9b18c943bee6131f7ad579b185
Joomla Alphauserpoints includes phpThumb.php which is known to suffer from a remote shell upload vulnerability.
b1b62d78c9a946b12fbc9346386e404c8afdbb136f42bc7b7e23ba2424f3cc08
Joomla Alphacontent includes phpThumb.php which is known to suffer from a remote shell upload vulnerability.
bb78cd69bf5df77bcb7dfc0f5fc0d9ef668f897f60696a4839fd5a0db52962dd
WordPress Suco theme suffers from a remote shell upload vulnerability.
b2e22a3f07d33f211c40421e70052bfe57231643ebd7db5e5c627b99e766b408
WordPress iThemes2 theme suffers from a remote shell upload vulnerability.
3c8e828548de930258ea049c0dae805645ae3dbb203c5a025c444e419760cbeb
WordPress Euclid theme suffers from a cross site request forgery vulnerability.
49fde0a1248fb3f261935e7861a803f31c5996379e540c4452c31d2caa41d47d
WordPress Dimension theme suffers from a cross site request forgery vulnerability.
c79f4bdf46ea63e7957d6c6e13d78d30ac7c626decaf17605d13c77d8d8b5370
WordPress Amplus theme suffers from a cross site request forgery vulnerability.
90cdcb8d4e659c08cee7021e9bc9fa3135983a4188217e174de3a055e42dd6f1
WordPress Make A Statement theme suffers from a cross site request forgery vulnerability.
bc164cec434beccdd48ac4cb8f5fac9449eb0916b078caa972f7ac7fe5464bbc
WordPress Highlight Premium theme suffers from cross site request forgery and remote shell upload vulnerabilities.
6ba9001b821f72576be89bb61ca27cae28a676975f79d85643de67f92a4a20eb
WordPress WP-Checkout plugin suffers from cross site scripting and remote shell upload vulnerabilities. Note that this advisory has site-specific information.
8b75a731806da2c71e99adf68bf4ec4bcc441e9e2a626f2793e02907deffc994
WordPress MoneyTheme suffers from cross site scripting and remote shell upload vulnerabilities.
118f2518be3ef83f488608e39f34988f8e8d867943df4d1309be1c8476a48492
BalkanSys suffers from default credentials, arbitrary file upload, and open redirection vulnerabilities. Note that this advisory has site-specific information.
8f26c405b63c9567a1ce3478b4d6d560ea287f16b230a9696b659a3b5169206f
WordPress GeoPlaces theme version 4.x suffers from a remote shell upload vulnerability.
4bb5ca362685571ea46f9b60300a56f3aa737abbf2c8551c66c53798de33803e
LiveCart version 1.4 suffers from a remote PHP shell upload vulnerability.
e2a41ce6de3c4aa60db5b72a6cd923cfb719186f387af0bad1c8e9c450c3fe2c
The WordPress DailyDeal theme suffers from a remote shell upload vulnerability.
25e1be2c8c9b97be0f84118170063bb8eed0a22e212c8a9be4176e00df086f59
Sites designed by MNET Solution suffer from cross site scripting, html injection, remote shell upload, and remote SQL injection vulnerabilities. Note that this advisory has site-specific information.
b8a92e2dbe7f7eb98856ebc26a7aa2fb0838c901e135f2a0969a831c7662780c
Sites using the Chiangraientersoft code base suffer from a html injection vulnerability that can allow for cross site scripting attacks. Note that this advisory has site-specific information.
d38dda3ba4898e2f3f8c1b2ef87a8eeca9e35edf1c91e895409139fe5385b109