Online DJ Booking Management System Project Report version 1.0 remote SQL injection exploit that achieves code execution.
>> AUTHOR: deepcore
http://civil.sakaeocity.go.th/pr.php notified by ZoRRoKiN
http://donphothong.go.th/y.php notified by ZoRRoKiN
http://www.samtambon.go.th/silence.html notified by ZoRRoKiN
http://secondary34.go.th/robh.htm notified by SW1337
Park Ticketing Management System 1.0 – Authentication Bypass
Park Ticketing Management System 1.0 – ‘viewid’ SQL Injection
Barangay Management System version 1.0 suffers from a remote SQL injection vulnerability that allows for authentication bypass.
Webtareas versions 2.1 and 2.1p suffer from multiple cross site scripting vulnerabilities.
HelloWeb version 2.0 suffers from an arbitrary file download vulnerability.