dynaliens versions 2.0 and 2.1 suffer from admin bypass and cross site scripting vulnerabilities.
dc59cafd849865443635ea2b98d3af1bBJ Webring suffers from a cross site scripting flaw.
b2bf61a76f253dc9651d72ba528f4b2dIt appears that JBrowser may allow arbitrary access to admin/config files.
76269815469d0ef8356da349250ddacePics Navigator is susceptible to a directory traversal flaw.
0ad39343fdf4c7b4802fc2bf79f29d0bMyCalendar suffers from cross site scripting flaws.
d761e8f55ef0bde8e963cd4ae3d13cedEzboo webstats allows direct download access to sensitive files.
05d117d6b2280c57a5b1f8bd96a7200cDem_trac allows direct download access to the system's log file without authentication.
0100d8835d01c2eafa42d293244d19e2CedStat version 1.31 suffers from a cross site scripting flaw.
72035b6f9493e72a8b4a5d3ae3f0aee2RBL ASP suffers from a SQL injection vulnerability in its login/password fields.
9b073e4919e53d41e8b63eca597b6f77AdMentor suffers from a SQL injection vulnerability that allows for login bypass.
255ca22fc52604dc52d49c8054b99032phpQuiz suffers from a flaw that leaks sensitive information about the system.
9c55fc99341ca2463828526229cbedb7