AuraCMS versions 2.2.2 and below arbitrary edit/add/delete exploit that makes use of pages_data.php.
810ddbcac4efa2468c1abbc04747966ed7eb5ebb3dab2539cc484f0dc6d73d17
Exploit for TOKOKITA which suffers from multiple SQL injection vulnerabilities in barang.php.
d8807ae0bf7b8183885eeeb9b930ca525aaf48256ef2cdcc3df5d4138544a265
AuraCMS version 1.62 remote code execution exploit that makes use of stat.php.
fa03aa2a62d66d11a42ec416aec031df445550d663229d10533e40c5ec38decf
AuraCMS version 2.2 remote administrator addition exploit that makes use of admin_users.php.
49838712be9f3249508ab1ba9853a8e6d8ce7a74a95390f28b9cf01a4d4c8b33
FreeWebShop versions 2.2.7 and below remote admin password grabber exploit.
d7d88ab38b5769de456c878d45893e4515fa013bdfcb5240adfbaf5ea40cf5aa
Toko Instan version 7.6 suffers from multiple remote SQL injection vulnerabilities.
7643ac9d76db4e0059315d60efcebcfaed11260ebbdc22bd7baabf320d149df3
MultiCart version 1.0 remote blind SQL injection exploit.
1d1dfba1995d57b6e36fbc02102584dbacbaac106c099e2169d410e6d0d72b5d
AuraCMS version 2.1 suffers from remote file attachment and local file inclusion vulnerabilities.
701c6da9045815b7b14d3950421c198c9ea721b4f767519a29d154f07e3791eb
AuraCMS version 1.5rc suffers from multiple SQL injection vulnerabilities.
d291e1fad41c9e31d3a7a17b45897a630f335055edcdf87ccd0cdd65d0adbd93
RW::Download version 2.0.3 lite suffers from a remote SQL injection vulnerability in index.php.
918e4f0238ade0cac70aaa0a1df292b7be74bf883de15b21be5e4e641dab0e7c
Webace-Linkscript version 1.3 SE suffers from a remote SQL injection vulnerability in start.php.
c9757e44d3ab3ea8df866970cd82661abe7a70966b0d74228b41f6a7d006858f
Yvora CMS version 1.0 suffers from a remote SQL injection vulnerability in error_view.php.
167aba48b8282197572ab2b11a24b646d395d11aec88a3368c0427733c58aa71
CKGold Shopping Cart version 2.0 blind SQL injection exploit that makes use of category.php.
125896323e5bef320e45ca5b2c0039cab9444bc4cdf037cffe80629b3a8b6c0d
ABC estore version 3.0 remote blind SQL injection exploit.
d8ed12a63916f6aa1eb19d14645b32b8a44dfaa53f28735d0f12e8378777158c
litecommerce 2004 suffers from a SQL injection vulnerability.
1c093e100935dac2acddf87a0ec3d571bed23c8bdf79df6a6761c001bcf49f28
The Mambo component SimpleFAQ version 2.11 suffers from a SQL injection vulnerability.
cc8180b0ac13fe5d8fe0618486105ff943a8388a1de21f8b292cff5fcfe8f5df
la-nai CMS version 1.2.14 suffers from multiple remote SQL injection vulnerabilities.
3b757f45d2b0927f2db3e25f40395ff8e27f92a150a2a8ffdfd65208fc3f4733
Envolution versions 1.1.0 and below remote SQL injection exploit.
19f0d7b47e5230250ff389f4377e401cc8d3ccc31ed7baa1b762505de3023cd7
The forum module in AuraCMS suffers from a remote SQL injection vulnerability.
71601fe992e05b866c729f802d71a0aa5f593355cbe8ecdb95cf70107b35d918
wolioCMS suffers from a SQL injection and administrative bypass vulnerability.
76994001bb53177f84c17136934aa018600ec94b190431a7390cc844aa11d1c6
The Magic Photo Storage website suffers from a remote file inclusion vulnerability.
1f1cacd6e29c1b8d3661d861dfa1fcf11b77247dc9ba0e9af1a5452c23673897
If magic_quotes_gpc is off opendocman 1.2rc3 suffers from an authentication bypass vulnerability.
8f2ad0e6bf6b1cbaf3b99b60430ea6396ad0d977528510c3fcaaf782a043aa4b
speedberg 1.2beta1 and prior have multiple remote file inclusion bugs.
558c9bb999ca093b381ac7e5856908164c17c2ab293c8918f86347e286bbea9d
trawler versions 1.8.1 and prior suffer from multiple remote file inclusion vulnerabilities.
3c695298559f032d90d3389fe15ef6ee6a10a784e72212cdeb8514e70c672a9f
Open Conference Systems 1.1.3 and prior suffer from a remote file inclusion vulnerability in theme.inc.php and footer.inc.php.
b134a8d617c8ccafcb8f467e5e15bc5172d2d1df2170e45acd32681f9cf23057