Scry Gallery v1.1 suffers from XSS.
5927b3444ab2aa0d898c26b0ef9d345e7a28559c508e8b4b9e55d5d95279ff1f
The recent exploit provided by aliHackers for VWar (VWar ver 1.21 Remote Code Execution Exploit ) has also another affect on the higher unptached versions of vWAR such as v1.5 and also on versions less than 1.2 . Apart from the successful code execution exploit even if the exploit fails still running the following code on the web browser shows the full path of the installed modules even if the remote php shell is not achieved.
d98282e373a41ebc4911fdf1334453f7ce03792cd17661405fcdf8ac04983e8a
phpWebFTP versions less than v3.2 are vulnerable to sql injection and directory transversal attacks
51401673cdb258d52d5fb6cedd67b2b2cdaf1b8d82d9eb65daf9b16b60ed49d5