Browse Database - By Creditee Russ McRee

Researcher Name: Russ McRee
Researcher Company: holisticinfosec.org
Researcher Country: United States
Vulnerabilities Types:
XSS:73
CSRF:21
SQLInjection:10
Other:4

Displaying vulnerabilities 1 - 40 of 108 in total

<< Back to Browse
OSVDB IDDisclosure DateTitle
58417 2009-09-30 BIGACE Web CMS Admin Account Creation CSRF
59078 2009-09-19 AgoraCart protected/manager.cgi Setting Manipulation CSRF
57574 2009-08-31 BIGACE Web CMS public/index.php id Parameter XSS
56791 2009-08-05 SmarterTrack frmKBSearch.aspx search Parameter XSS
56792 2009-08-05 SmarterTrack frmTickets.aspx email address Parameter XSS
56802 2009-07-20 signkorn Guestbook admin/admin.php qc Parameter XSS
56803 2009-07-20 signkorn Guestbook Unspecified CSRF
56804 2009-07-19 Photokorn Gallery search.php Multiple Parameter SQL Injection
56805 2009-07-19 Photokorn Gallery admin/admin.php qc Parameter XSS
56806 2009-07-19 Photokorn Gallery Unspecified CSRF
56831 2009-06-30 Application for Incident Response Teams (AIRT) incident.php status Parameter XSS
56832 2009-06-30 Application for Incident Response Teams (AIRT) users.php User Addition CSRF
56346 2009-06-18 concrete5 index.php/dashboard/users/search Multiple Parameter XSS
56347 2009-06-18 concrete5 index.php/dashboard/users/groups gKeywords Parameter XSS
56348 2009-06-18 concrete5 Search Block search_paths[] Parameter XSS
56349 2009-06-18 concrete5 Arbitrary User Account Deactivation CSRF
54885 2009-06-04 NETGEAR RP614 Multiple Unspecified Admin Function CSRF
55728 2009-05-28 ATutor Documentation Frameset documentation/index.php p Parameter Cross-site Framing
54600 2009-05-20 IPplan admin/usermanager grp Parameter XSS
54601 2009-05-20 IPplan Multiple Unspecified CSRF
54798 2009-05-19 ACollab sign_in.php f Parameter XSS
54799 2009-05-19 ACollab profile.php address Parameter XSS
54800 2009-05-19 ACollab events/add_event.php description Parameter XSS
54801 2009-05-19 ACollab Personal Agenda Item Addition CSRF
54530 2009-04-16 Dokeos main/auth/courses.php search_term Parameter XSS
54531 2009-04-16 Dokeos Personal Agenda Item Multiple Parameter XSS
54532 2009-04-16 Dokeos Personal Agenda Item Unspecified CSRF
54533 2009-04-16 Dokeos New Course Addition Multiple Parameter XSS
54534 2009-04-16 Dokeos main/mySpace/myStudents.php Multiple Parameter SQL Injection
54535 2009-04-16 Dokeos main/mySpace/myStudents.php Multiple Parameter XSS
53418 2009-04-08 OpenGoo index.php search_for Parameter XSS
53419 2009-04-08 OpenGoo Web Link Addition webpage[url] Parameter Arbitrary Code Injection
55264 2009-04-08 Interspire Website Publisher Arbitrary User Creation CSRF
53414 2009-04-05 Cisco Linksys WRT160N Admin Interface CSRF
53780 2009-04-01 WebCollab tasks.php selection Parameter XSS
53781 2009-04-01 WebCollab User Credential Manipulation CSRF
53705 2009-03-15 WikkaWiki wikka.php Multiple Parameter XSS
53706 2009-03-15 WikkaWiki wikka.php Multiple Parameter SQL Injection
53707 2009-03-15 WikkaWiki wikka.php Site Setting Manipulation CSRF
52919 2009-03-08 dotProject User Account Creation CSRF

The database information may change without any notice. Use of the information constitutes acceptance for use in an AS IS condition, and there are NO warranties, implied or otherwise, with regard to this information or its use. Any use of this information is at the user's risk. In no event shall the copyright holder or distributor (OSVDB or OSF) be held liable for any damages whatsoever arising out of or in connection with the use or spread of this information.

© Copyright 2002 - 2013 Open Source Vulnerability Database (OSVDB), All Rights Reserved.
Privacy Statement - Terms of Use