Author : joss
Page 1 of 144 exploits
Title Author Platform Source Description Date
Simple Document Management System 1.1.5 / 2.0 SQL Injection JosS na hack0wn.com Simple Document Management System versions 1.1.5 and 2.0 suffer from remote SQL injection and bypass vulnerabilities. June 16, 2012
vBseo 3.1.0 Remote Command Execution JosS na packetstormsecurity.org vBseo version 3.1.0 remote command execution exploit that leverages injecting code into log files. June 24, 2011
Symphony 2.0.7 SQL Injection / Cross Site Scripting JosS na packetstormsecurity.org Symphony version 2.0.7 suffers from remote SQL injection and cross site scripting vulnerabilities. September 11, 2010
Symphony 2.0.7 Multiple Vulnerabilities JosS php exploit-db.com Symphony 2.0.7 Multiple Vulnerabilities bug found by Jose Luis Gongora Fernandez (a.k.a) JosS contact: sys-project[at]hotmail.com website: http://www.hack0wn.com/ - download: http://downloads.symphony-cms.com/symphony-package/36030/symphony-2.0.7.zip - CMS: XSLT-powered open sourc September 10, 2010
Multi-lingual E-Commerce System 0.2 Remote File Inclusion JosS na packetstormsecurity.org Multi-lingual E-Commerce System version 0.2 suffer from multiple remote file inclusion vulnerabilities. August 30, 2010
Multi-lingual E-Commerce System 0.2 Multiple Remote File Inclusion Vulnerabilities JosS php exploit-db.com Multi-lingual E-Commerce System 0.2 Multiple Remote File Inclusion Vulnerabilities bug found by Jose Luis Gongora Fernandez (a.k.a) JosS contact: sys-project[at]hotmail.com website: http://www.hack0wn.com/ - download: http://sourceforge.net/projects/mlecsphp/ - CMS: A multi-lingual mu August 29, 2010
AJ HYIP MERIDIAN SQL Injection JosS na packetstormsecurity.org AJ HYIP MERIDIAN suffers from a remote SQL injection vulnerability. July 23, 2010
AJ HYIP MERIDIAN (news.php id) Blind SQL Injection Vulnerability JosS php exploit-db.com AJ HYIP MERIDIAN (news.php id) Blind SQL Injection Vulnerability bug found by Jose Luis Gongora Fernandez (a.k.a) JosS contact: sys-project[at]hotmail.com website: http://www.hack0wn.com/ - site: http://www.ajsquare.com/products/ajhyip/index.php - about AJ HYIP: AJ HYIP is a complete f July 22, 2010
AJ HYIP PRIME (welcome.php id) Blind SQL Injection Vulnerability JosS php exploit-db.com AJ HYIP PRIME (welcome.php id) Blind SQL Injection Vulnerability bug found by Jose Luis Gongora Fernandez (a.k.a) JosS contact: sys-project[at]hotmail.com website: http://www.hack0wn.com/ - site: http://www.ajsquare.com/products/ajhyip/index.php - about AJ HYIP: AJ HYIP is a complete f July 22, 2010
SIESTTA 2.0 (LFI/XSS) Multiple Vulnerabilities JosS php exploit-db.com SIESTTA 2.0 (LFI/XSS) Multiple Vulnerabilities download: http://ramoncastro.es/siestta_old/ Author: Jose Luis Gongora Fernandez 'aka' JosS mail: sys-project[at]hotmail[dot]com site: http://www.hack0wn.com/ team April 16, 2010
Siestta 2.0 Cross Site Scripting / Local File Inclusion JosS na packetstormsecurity.org Siestta version 2.0 suffers from cross site scripting and local file inclusion vulnerabilities. April 16, 2010
xwine 1.0.1 Crash Proof Of Concept JosS na packetstormsecurity.org xwine version 1.0.1 .exe file local crash proof of concept exploit. March 30, 2010
xwine v1.0.1 (.exe file) Local Crash PoC Exploit JosS linux exploit-db.com xwine v1.0.1 (.exe file) Local Crash PoC Exploit Install: sudo apt-get install xwine Author: JosS mail: sys-project[at]hotmail[dot]com site: http://hack0wn.com/ team: Spanish Hackers Team - [SHT] This was written for educational purpose. Use it March 29, 2010
Simple Machines Forum 1.1.8 PHP File Execution JosS na spanish-hackers.com Simple Machines Forum versions 1.1.8 and below avatar related remote php file execution proof of concept exploit. March 28, 2010
Simple Machines Forum <= 1.1.8 (avatar) Remote PHP File Execute PoC JosS php exploit-db.com Simple Machines Forum <= 1.1.8 (avatar) Remote PHP File Execute PoC bug found by Jose Luis Gongora Fernandez (a.k.a) JosS contact: sys-project[at]hotmail.com website: http://www.hack0wn.com/ - About Vulnerability: This vulnerability allow execute a php external file in any visitor of the March 27, 2010