Whitepaper called MySQL: Secure Web Apps - SQL Injection Techniques.
0930f3a77eb458da8c9b9a814769e7cd4e1235ac3871a8c0be819bd5167283ff
XChat version 2.8.4-1 suffers from a password disclosure vulnerability.
03761d56dabf4d589196b54e429b5573f4c4e4b3945864e93bd1843f91fee6dd
eForum version 0.4 suffers from a cross site scripting vulnerability.
afa135572b9c94e85b00f680f3090f9760e6b23981278b16b9f2b5c5c2f299cd
LightBlog version 9.5 suffers from a remote file upload vulnerability.
9d290fc5671ba5010bb3b57294afd72899f920b52a472e8c226106ec937b96f5
FTP Admin version 0.1.0 suffers from bypass, local file inclusion, and cross site scripting vulnerabilities.
1859291e1795d3ac49baf5fb6e89514071d68e63fd16ad1c63999b6d2caab4aa
YA Book version 0.98-alpha suffers from a persistent cross site scripting vulnerability.
402b570826e1cdc2982bcf108c60b73131fe089afc7eb556a360aa1e0b86360c
turbulence core version 0.0.1 alpha suffers from remote file inclusion and local file inclusion vulnerabilities.
e30c71c88effdaac4c0b9cd2265624e82a25c78401430fabf981e626fa2f6113
QDBlog version 0.4 suffers from SQL injection and local file inclusion vulnerabilities.
c78dc88b3206d4fb988353cddbcd15c9adece4747b1dd715bacb1798924847b7
pL-PHP beta version 0.9 suffers from SQL injection, administrative bypass, and local file inclusion vulnerabilities.
55781adadecc25967793eb70dfce2465b352aec8c5eb04c30ed289f92567a30e
Grayscale Blog version 0.8.0 suffers from SQL injection, security bypass, and cross site scripting vulnerabilities.
645903ad556da0bc3a0748ca86238ce02c8e413ec53b4ddbd76691e38a5cdfce
Simple one-file Guestbook versions 1.0 and below suffer from an administrative bypass flaw.
03c48e5cf2943901784568167172e7b38a60b06ba29d03fb02f195cce05038d6
MicroGuestBook suffers from a cross site scripting flaw.
8ed0dca4560aa0bc7dd5e706737062f3c99e5799c368920947cb7273e945cc24
Fantastic GuestBook version 2.0.1 suffers from XSS due to improper input sanitization.
7c86243db7e915d333495525d6984f897b4c10ccaa62dbac9813d3482e6686cf
vlBook version 1.02 is susceptible to a cross site scripting flaw.
b9e67425e6d0a14d0a086b1f5f9007251b1544af20d0fdedce59683c1aa662b6
CAForum 1.0 suffers from a SQL injection vulnerability allowing anyone to log in as admin.
e299bd93dcd999f3b4614efb95c9da7092ad71335bf46dddb6f6c268d08ab47d
CodeAvalanche News version 1.2 is susceptible to SQL injection and cross site scripting vulnerabilities.
3d1489034a99d622b55fef374c33ff774077e39a220c3512261729e7a4dd0741
CuteGuestbook is susceptible to cross site scripting attacks.
02b73543425bd93a8ea0cef739a024abdf91289a44c374148431fbf3f71ed1b5
bloggage suffers from a SQL injection vulnerability. POC included.
7a2ffb82807a4c80dfb88bf703c3f20e81c36ea5204da378e2d297a46d82a022