MapProxy version 1.11.0 suffers from a cross site scripting vulnerability.
a9aae15cabb9ca5a2a8ed841e7e6c686deeccde29935c21bf129b46604d98da6
WordPress Wordfence plugin version 7.1.12 suffers from bypass, cross site scripting, and path disclosure vulnerabilities.
7bd9c300ee5c12f903f4a443c03eeac48af0e1085041a04c331ee74dccfda5db
WordPress Breadcrumb NavXT plugin version 6.1.0 suffers from a username disclosure vulnerability.
a7d331bc7a3c3c5f71c497eb152d46ea8fb5956444bfa1d2462d1d680b57b936
WordPress FV Flowplayer plugin version 7.2.0.727 suffers from a cross site scripting vulnerability.
fe238bd67c74b6ab772c15bb15bc015aa19431e59fe64ef72c699cbe463baa5f
Saurus CMS version 4.7.1 suffers from cross site scripting, remote file inclusion, local file inclusion, information disclosure, remote SQL injection, HTTP response splitting, cross site request forgery, and directory traversal vulnerabilities.
b52a1c3cfedd7ec254223b0a31cf381969950ec828d4cd8eca7bea868182a7f5
Spider Event Calendar version 1.3.0 is a Wordpress plugin that suffers from multiple cross site scripting, path disclosure, and remote SQL injection vulnerabilities.
e1280c273978d2943c741ebee56c227367b4ac94ad923128afa07f35b1146ed6
Spider Catalog version 1.4.6 is a Wordpress plugin that suffers from multiple cross site scripting, path disclosure, and remote SQL injection vulnerabilities.
37e63ff3e32d65df162db6c051518d4a1fcd556135bdae06ee5a5a69e189c813
This Metasploit module exploits a PREG_REPLACE_EVAL vulnerability in phpMyAdmin's replace_prefix_tbl within libraries/mult_submits.inc.php via db_settings.php. This affects versions 3.5.x below 3.5.8.1 and 4.0.0 below 4.0.0-rc3. PHP versions greater than 5.4.6 are not vulnerable.
cde46aba3bb442a48c277780f2ae183ec296c40bdbad1fb176830924a1405679
phpMyAdmin versions 3.5.8 and 4.0.0-RC2 suffer from multiple remote code execution, local file inclusion, and array overwrite vulnerabilities.
5f5b20d982ae97824512b1c23808b9c17b328dae83d316eee98cdebbab52a1c6
phpMyAdmin version 3.5.7 suffers from a reflective cross site scripting vulnerability.
373323d449040d80cf19a424efb57660421ebce6af076a5b804b8d44f7724af3
mRemote version 1.50 suffers from an update spoofing vulnerability.
c1de31f6f8728351a15b518d67f8c93d6869670704738ea370459b1e5c0cd954
Royal TS version 2.1.5 suffers from an update spoofing vulnerability.
bbdbe2cbd87607168248afc01ef7c42de353e86ceb6dd83377794643f9bbeb09
LibreOffice version 4.0.1.2 suffers from an update spoofing vulnerability due to not using a secure channel nor digital signatures.
0fd0fd152553fcde204b860ae9af883db4511e308c44f058a80c84db259f2843
OpenCart version 1.5.5.1 suffers from a directory traversal vulnerability.
d4fb0138400954a2ffd3deaf9aa1b199b065826234b68bb121e49aa9e20d7686
PHP-Fusion version 7.02.05 suffers from insecure backup handling, cross site scripting, local file inclusion, and remote SQL injection vulnerabilities.
fa7b586afe0a410a0efe0520e47423439ff8a65220c5db6358b160d972751277
Zenphoto version 1.4.3.3 suffers from multiple vulnerabilities including an administrative interface exposure, cross site scripting, file restriction bypass, path disclosure, and remote SQL injection vulnerabilities.
9f53c22a8ac57740fc1010024ab439c0b07a1d45e41292904b2e8ec52af6e23d
WordPress FoxyPress plugin version 0.4.2.5 suffers from cross site request forgery, cross site scripting, path disclosure, remote shell upload, open redirect, and remote SQL injection vulnerabilities.
de830eed195cbfc1599a0dbca00d8fe76804c6bb2f451f88dcf2319725caba6a
WordPress GRAND Flash Album Gallery plugin versions 1.9.0 and 2.0.0 suffer from file disclosure, file overwrite, directory traversal, and remote SQL injection vulnerabilities.
8eac246e079c2e20610ea5b3fb4b19023d217d4774055a243a7bbe5f34191b0c
WordPress Social Discussions plugin version 6.1.1 suffers from local file inclusion, path disclosure, and remote file inclusion vulnerabilities.
6933e3b623f1553697b15b2ffeb7d2791b92487442eb60c7da616d9ff9df1f71
WordPress Slideshow plugin versions 2.1.12 and below suffer from cross site scripting and path disclosure vulnerabilities.
da1af48b7e10782660bd99d291eaed392728e957f960e5ad28cedbd89efdf24e
phpMyBitTorrent version 2.04 suffers from insecure cache handling, remote file disclosure, local file inclusion, and remote SQL injection vulnerabilities.
25fb87d1faed33e02e6892952db60e041cb9171205e8aec0e9f52fbac8d97fb7
Thomson SpeedTouch ST780, by design, has mixed content in the DOM during an SSL encapsulated session.
9f6490ea623fbe7b601d57d1e4cd0577e84849f09b056198d080aee040e37ad6
TorrentTrader version 2.08 suffers from authorization bypass, cross site scripting, path disclosure, and directory traversal vulnerabilities.
7185dd5b6ed5a821ecd9a5ec901d5d961227f2ab65af5e4ed90e84f1cd946946
Joomla version 2.5.4 suffers from a cross site scripting vulnerability in the administrative sysinfo page.
d3e0916a3d65dc13f3285d97784500de31ef52e38715fbb01563ab87c0892607
Joomla version 1.5.26 suffers from a cross site scripting vulnerability in the ja_purity template.
829e40f497b4b9a912618e7d916c1875a88063054d2b245603c57bfe9e1f36a6