TheHostingTool version 1.2.x suffers from multiple cross site scripting vulnerabilities.
b8ff28cc399a94a530cfdfd2f9d7d3a6540e7c41b39dc57e51fa08a0112da645
This perl script leverages /proc/self/environ to attempt getting code execution out of a local file inclusion vulnerability.
7ce9af081371d3aac6a99db29aef3d8887c46d12ee280d8061b70faa5799c0f2
WordPress Photosmash plugin suffers from a remote shell upload vulnerability.
f3d3fc56e3bf61eb9e674dc6ae973601f1ef3fb057e3103babced81c67ec6f72
WordPress FormCraft Premium plugin suffers from a remote SQL injection vulnerability. Note that this advisory has site-specific information.
2d9d0b60b3915fab78e22b6c8d2bffd4ca8c0b8f9667e42b5debc52b781d0349
Joomla Flexicontent component suffers from a code execution vulnerability due to the inclusion of phpthumb.
c420d44bcbccfa07f1cc718d8e71b7f4694db8ff878f20b384431b23ab5c659b
Subway Ordering for California (ZippyYum) version 3.4 suffers from an insecure data storage vulnerability. The application stores sensitive data insecurely to cache files located within ../Caches/com.ZippyYum.SubwayOC/ directory on the device.
1c75b1db4256cdea358d879ada7fbd0109d71b901133ca6deaf8588bd78926c8