Whitepaper from Phrack called .NET Instrumentation via MSIL bytecode injection.
acb5753e7c1dd5a8761e4b64c287b722c9aa218dd3067cfe164c91339c03b03b
Veeam Backup and Replications versions 6 through 8 suffer from log disclosure and broken password security vulnerabilities.
297149a77606ab6deac1de2bb98b0f033747ba6db8266944dfe68b46fdffd256
Jetty versions 6.x and 7.x suffer from cross site scripting, injection, and information disclosure vulnerabilities.
5f6bdd64a6596d46cbd0a5ae2448106b4656a8543eb8f07317ef5d4b92ae82d9
Vtiger CRM version 5.0.4 suffers from code execution, local file inclusion, cross site scripting, and cross site request forgery vulnerabilities.
a0599a490c531c182849299f81372c277f5eeeadc04bccdc6e9da1eb256e8a74
SugarCRM versions 5.2.0e and below suffer from a remote code execution vulnerability.
b46bbb1752deb1c9295ffea5807d2e474bb3c4c6de135549995c2c9d75270085
FormMail version 1.92 suffers from cross site scripting, header injection, and HTTP response splitting vulnerabilities.
dda541988029f268bc02136426254f2b6bbc63e0e3c487848827415005cc289e
Zabbix version 1.6.2 suffers from remote code execution, cross site request forgery, and local file inclusion vulnerabilities.
6fc6a1f1b3df47f2608e299ed5ea4014c5c4b5292607adb72d978c18e293dc26
Moodle version 1.9.3 suffers from a remote code execution vulnerability. Full details provided.
604fed1136c665e395b41c51641f80c673942dba92e616551632c7f5f1aac44e
Collabtive version 0.4.8 suffers from cross site scripting, authentication bypass, and shell upload vulnerabilities.
79b3e4b4ba18d65ce36a36f1ab3e00c7d5d25169f28c965cb0522f75f65a1536
Mantis Bug Tracker version 1.1.1 suffers from remote code execution, cross site scripting, and cross site request forgery vulnerabilities.
f69ef268367fecefac3205565ba9c1d3f5e36237f4b833741139a9350750a069
WiKID wClient-PHP versions 3.0-2 and below suffer from multiple cross site scripting vulnerabilities.
67d10cd0b31c2647b3ef2d33f5dd1920c1101c3453e62e3516e332f15ae75f08
Multiple security vulnerabilities such as cross site scripting and SQL injection have been discovered in Cacti versions 0.8.7a and below. Full exploitation details provided.
40eeb2e3bd758718bab24d1dda1ef1a8de3acea488b2f6daa45622393b146ba0
Canonicalization issues in Adobe Macromedia Flash Player version 9.0 r31 allow for the manipulation of the cross domain policy file source.
87de7baafc1ba6b87ba85639942cf7f8fa75ef6b7d153a6b96995dfb7d594a4a
Original Photo Gallery versions 0.11.2 and below suffer from a remote command execution vulnerability.
6b9f382d9d8b5fa95f99764ba3fda63a36150fe8da621a53e0b5a82ae7f6bb06