Whitepaper called MySQL: Secure Web Apps - SQL Injection Techniques.
baaed42a8dcb554a0f9c9968c3f465fcXChat version 2.8.4-1 suffers from a password disclosure vulnerability.
8859a198df5ac9c75c54cfc73d614c38eForum version 0.4 suffers from a cross site scripting vulnerability.
4fbd9f8fbb08e3378f411a712bd7cf13LightBlog version 9.5 suffers from a remote file upload vulnerability.
a197a8d5da4fbc6f0b169dcb0f298815FTP Admin version 0.1.0 suffers from bypass, local file inclusion, and cross site scripting vulnerabilities.
1e741f922fd81e1ff0a42de723906a5fYA Book version 0.98-alpha suffers from a persistent cross site scripting vulnerability.
879c39b8f7ec47089e95ec70aca6b326turbulence core version 0.0.1 alpha suffers from remote file inclusion and local file inclusion vulnerabilities.
af585bed05646a853d45974c22658a64QDBlog version 0.4 suffers from SQL injection and local file inclusion vulnerabilities.
901e3e776176de59b593756574c2ed5epL-PHP beta version 0.9 suffers from SQL injection, administrative bypass, and local file inclusion vulnerabilities.
b6d2deb59beacf98fb2cf9eac6ba58b1Grayscale Blog version 0.8.0 suffers from SQL injection, security bypass, and cross site scripting vulnerabilities.
2918d72fe508a8bae80cff4f9ea28405Simple one-file Guestbook versions 1.0 and below suffer from an administrative bypass flaw.
b17ef43371f036598e89517fe136983bMicroGuestBook suffers from a cross site scripting flaw.
c71ef6538d06666082b798bac16e8cf3Fantastic GuestBook version 2.0.1 suffers from XSS due to improper input sanitization.
3b834d8408867695194e7e9f60dba0e6vlBook version 1.02 is susceptible to a cross site scripting flaw.
f6f67f524006ceb86fcfb8fc20c40dbaCAForum 1.0 suffers from a SQL injection vulnerability allowing anyone to log in as admin.
b31121b47b2df3e171adb604dfe30176CodeAvalanche News version 1.2 is susceptible to SQL injection and cross site scripting vulnerabilities.
704f380ee1fb03a9e885c2c9fbbe24ecCuteGuestbook is susceptible to cross site scripting attacks.
469ed753fad94168d1fd38fcbe9b87c7bloggage suffers from a SQL injection vulnerability. POC included.
8c7e8ca0f9e6efade9deab1e4f8de09f