dynaliens versions 2.0 and 2.1 suffer from admin bypass and cross site scripting vulnerabilities.
7ba86a132b64ef2603f7d81fe45715ad0422256df5f5da3b27ad3b7c7e64ec30
BJ Webring suffers from a cross site scripting flaw.
b2d1f90bffbe032f022a3e17b4bd6644751dc808374a207f9de684cabad91a9a
It appears that JBrowser may allow arbitrary access to admin/config files.
163a53866c4d1a2a6661658c02b315252b9f2ed5699f413d10c1fb1b0fb29dbb
Pics Navigator is susceptible to a directory traversal flaw.
22365dcfa2b91457530a4cdf15d896a826c758cbf6841b973dff2018ecca8527
MyCalendar suffers from cross site scripting flaws.
022b3fbb5958f55d1a4df7aaa680b919b379627f7db81c304230a6db3ddc3581
Ezboo webstats allows direct download access to sensitive files.
98b971822d83371daf9e1ac87f57779dddec2f1b9466acc9bd00b32bce1b5101
Dem_trac allows direct download access to the system's log file without authentication.
0a6ee88fe524abf3237707f4d054281e61b1be6a067851da17ec3b1e5cf68970
CedStat version 1.31 suffers from a cross site scripting flaw.
7c369dd26b74e39e355b50e8e14bfd987b7e85fe167c1a3e059f17026773fa54
RBL ASP suffers from a SQL injection vulnerability in its login/password fields.
94614eedde2fbeecdce895b3842c83d37a6d5eef8cf867b8ccf97c93c2d80c38
AdMentor suffers from a SQL injection vulnerability that allows for login bypass.
963c580bc9e516ab4a0a77b6412697f0b757200ddd54f6e66e93392c639e7af7
phpQuiz suffers from a flaw that leaks sensitive information about the system.
09205ce1e9a97700b6765568130b3d61a5d9fb1caa21eecf4093a6326afe5a04