| 29870 | XoopsGallery init_basic.php GALLERY_BASEDIR 參數遠端檔案引入 | high |
| 29869 | Loudblog/inc/parse_old.php 範本參數任意遠端程式碼執行 | medium |
| 29868 | RunCMS Newbb_plus 模組標頭 SQL 插入 | medium |
| 29867 | RunCMS 偵測 | info |
| 29854 | Bitweaver wiki/edit.php Suck_url 參數遍歷原始程式碼洩漏 | medium |
| 29853 | RunCMS 多個指令碼 Lid 參數 SQL 插入 | high |
| 29852 | Mort Bay Jetty URL 多個斜線字元資訊洩漏 | medium |
| 29835 | Site@School Slideshow_full.php patches_name 參數 SQL 插入 | medium |
| 29833 | PHP < 4.4.8 多種弱點 | high |
| 29832 | Zenphoto rss.php patchesnr 參數 SQL 插入 | high |
| 29829 | CMS Made Simple modules/TinyMCE/content_css.php templateid 參數 SQL 插入 | high |
| 29802 | CuteNews search.php files_arch 陣列任意檔案存取 | medium |
| 29800 | PMOS 服務台 form.php 任意程式碼執行 | high |
| 29799 | Tikiwiki tiki-listmovies.php movie 參數遍歷任意檔案存取 | medium |
| 29746 | Plogger plog-rss.php id 參數 SQL 插入 | high |
| 29745 | WordPress 'query.php' is_admin() 函式資訊洩漏 | medium |
| 29728 | RaidenHTTPD workspace.php ulang 參數本機檔案引入 | high |
| 29722 | Centreon 'fileOreonConf' 參數檔案引入弱點 | high |
| 29252 | Firefly Media Server Limited 目錄遍歷系統管理員憑證洩漏 | high |
| 29249 | HP OpenView Network Node Manager 多個 CGI 遠端溢位 | high |
| 29187 | Plumtree 入口網站使用者物件使用者列舉 | medium |
| 28375 | Seditio plug.php pag_sub 參數 SQL 插入 | medium |
| 28373 | Plumtree 入口網站預設認證 | high |
| 28293 | GWExtranet gwextranet/scp.dll 多個參數遍歷本機檔案引入 | medium |
| 28291 | RunCMS xoopsOption 參數本機檔案引入 | medium |
| 28181 | PHP < 5.2.5 多種弱點 | medium |
| 27803 | IBM WebSphere Application Server navigateTree.do 多個弱點 | medium |
| 27802 | HP OpenView Client Configuration Manager 預設憑證 | high |
| 27620 | GuppY inc/includes.inc selskin 參數遍歷本機檔案引入 | high |
| 27597 | Module Builder DownloadModule 遍歷任意檔案洩漏 | medium |
| 27585 | Simple Machines Forum Search.php SQL 插入 | medium |
| 27575 | TikiWiki < 1.9.8.2 多個指令碼本機檔案引入 | medium |
| 27526 | CA Host-Based Intrusion Prevention System 伺服器預設憑證 | high |
| 27523 | LiteSpeed Web 伺服器 MIME 類型插入 Null 位元組指令碼原始程式碼洩漏 | medium |
| 26968 | TikiWiki tiki-graph_formula.php f 參數任意命令執行 | high |
| 26926 | SWAT 未經驗證的存取 (示範模式) | high |
| 26924 | Cart32 c32web.exe ImageName 遍歷任意檔案存取 | medium |
| 26199 | 原始 inc/exif.inc.php exif_prog 參數任意命令執行 | medium |
| 26072 | ADOdb Lite adodb-perf-module.inc.php last_module 參數任意程式碼執行 | medium |
| 26065 | Shop-Script admin.php 管理面板安全性繞過 | high |
| 26059 | Mambo/Joomla! 多個元件 'mosConfig_live_site' 參數遠端檔案引入 | high |
| 26056 | AWStats 可公開存取 | info |
| 26021 | Adobe Connect Enterprise Server 資訊洩漏 | medium |
| 26011 | Claroline inc/lib/language.lib.php language 參數遍歷本機檔案引入 | medium |
| 26010 | MapServer 多個遠端弱點 | high |
| 26001 | QuickEStore insertorder.cfm CFTOKEN 參數 SQL 插入 | high |
| 25994 | SecurityReporter < 4.6.3p1 多個弱點 | medium |
| 25993 | MDPro index.php topicid 參數 SQL 插入 | high |
| 25992 | Joomla! CMS com_search 元件 'searchword' 參數 RCE | critical |
| 25990 | VHCS PHPSESSID Cookie 工作階段固定 | medium |