Gekko CMS appears to suffer from a file disclosure vulnerability.
fc10d007f192d991f48cc9832fb49312YDFramework version 2.0-Beta1 suffers from a local file disclosure vulnerability.
2e0a865b7df93b06e07bffc87eb32d85RuubikCMS version 1.1.0 Beta suffers from cross site scripting, information disclosure, and directory traversal vulnerabilities.
dbca1c445b9b9049982dc2e17c9a37bePHPCollab version 2.5 suffers from an unauthenticated database backup download vulnerability.
623f9337b445786a8bea01daf76fcf2cDrupal Advertisement third party module version 6.x suffers from cross site scripting and information disclosure vulnerabilities.
6a1466cac29a5eb2698cb99aa26147f8Liferay version 6.1 suffers from a vulnerability where it is possible to retrieve the names and email addresses of all users. Proof of concept code included.
1c9db5e006b9833dda17ca6d031cba9bKerio WinRoute Firewall Embedded Web Server version prior to 6 suffer from a source code disclosure vulnerability.
a333e67402eb80bcbccaf7967b59714dSQLite databases stored on Android suffer from an insecure permission vulnerability. Version 2.3.7 is affected.
64654c20829d05716e2aff1208cffd22Yaqas CMS version Alpha1 suffers from an information disclosure vulnerability.
c7bc66470767b41e89f7d78e83674a72Concrete CMS version 5.5.2.1 suffers from an information disclosure vulnerability.
59e3335a828ee44f3d831dc899e9a76aQuick.Cart version 5.0 suffers from an information disclosure vulnerability.
5940579d75669f3105e35208eee0bca9eFront CMS version 3.6.10 suffers from an information disclosure vulnerability.
3442b1504be28fb0d27e988c58dd35ebThe Joomla Virtuemart component version 2.0.2 suffers from an information disclosure vulnerability.
918d7035cea40da6dcf1055578a7f70fjNews version 7.5.1 suffers from an information disclosure vulnerability.
c555251bb06401cdc8bfa16dae5a4464VirtueMart version 2.0.2 suffers from an information disclosure vulnerability.
4eddcc18f492c00600239adf1c2ecedeJoomla version 2.5.3 suffers from an information disclosure vulnerability.
5bae1b87db292bf66a455803963b7636Drupal Site Documentation version 6.x suffers from an information disclosure vulnerability.
0bac11feb0fcbe0ae73e84fba799428aWordPress Organizer version 1.2.1 suffers from cross site scripting and path disclosure vulnerabilities.
25e439707bb58172d9ad4385ffb38677The WordPress Zingiri Tickets plugin suffers from a file disclosure vulnerability that holds administrative username and password hashes.
76c955763e6192235b9a5760e824be7bAdobe Flash Player versions prior to 10.3.183.16 and 11.x before 11.1.102.63 suffer from an information disclosure vulnerability. This archive has research related to this issue, proof of concept source code, and a swf that demonstrates the issue.
6be90ad746ffeeba186321995dcd9978Secunia Research has discovered a security issue in RealNetworks Helix Server, which can be exploited by malicious, local users to disclose sensitive information. The security issue is caused due to the user and administrative credentials being insecurely stored in the flat file database (\Program Files\Real\Helix Server\adm_b_db\users\). This can be exploited by local users to disclose the clear text passwords. RealNetworks Helix Server version 14.2.0.212 is affected.
698cd5f4d0e7c3a41acb7d561335f8b9w-CMS version 2.0.1 suffers from cross site request forgery, cross site scripting, file disclosure and shell upload vulnerabilities.
cb0e721747d1bb9b991c9a540f125ba9HP Security Bulletin HPSBMU02759 SSRT100817 - Potential security vulnerabilities have been identified with HP Onboard Administrator (OA). The vulnerabilities could be exploited remotely resulting in unauthorized access, unauthorized information disclosure, Denial of Service (DoS), and URL redirection. Revision 1 of this advisory.
67d52edab1202ff6d29589a6ffa42304PTK version 1.0.5 suffers from cross site scripting and direct access bypass vulnerabilities.
98fdf253d0acd63cd486dcc7ecbf8621Havalite CMS suffers from database disclosure, shell upload, and remote SQL injection vulnerabilities.
95348caad568aa110e8a188446038792