CVE Certified
GHDB

Google Hacking Database

Advisories and Vulnerabilities

These searches locate vulnerable servers. These searches are often generated from various security advisory posts, and in many cases are product or version-specific.

DATE Title Summary
2006-08-13 "Powered by sendcard - an advanced PHP e-card... this is for Sendcard remote commands execution,advisory/ poc exploit: http://retrogod.altervist...
2006-06-02 "powered by ubbthreads" forums powered by ubbthreads are vulnerable to file inclusion.You can get more results with yah...
2006-05-30 inurl:wp-login.php +Register Username Password &qu... this is a bit different from the previous one in GHDB, it searches for Wordpress 2.x sites wher...
2006-05-30 intitle:"XOOPS Site" intitle:"Just ... this is the dork for the XOOPS 2.x 'xoopsOption[nocommon]' overwrite vulnerability, advisory &a...
2006-05-30 "Powered by PHP-Fusion v6.00.110" | &quo... this the dork for theese PHP-Fusion exploits:http://retrogod.altervista.org/phpfusion_600306_xp...
2006-05-30 "powered by pppblog v 0.3.(.)" this is for the pppblog 0.3.x system disclosure vulnerability, advisory/poc exploit: http://ret...
2006-05-30 Copyright . Nucleus CMS v3.22 . Valid XHTML 1.0 St... this is for Nucleus 3.22 CMS arbitrary remote inclusion advisory/poc exploit: http://retrogod.a...
2006-05-22 allinurl:tseekdir.cgi tseekdir.cgi?location=FILENAME%00eg:tseekdir.cgi?location=/etc/passwd%00basically any file on t...
2006-05-04 intitle:"X7 Chat Help Center" | "Po... this is for X7 Chat ...
2006-05-04 intext:"Powered by PCPIN.com" -site:pcpi... this is for PCPIN Chat SQL injection/login bypass and arbitrary local inclusion references:http...
2006-05-04 intext:"This site is using phpGraphy" | ... found this: a remote user can have access to some edit functionalities to "modify" ht...
2006-04-28 inurl:database.php | inurl:info_db.php ext:php &qu... this is for Woltlab Burning Board 2.x (Datenbank MOD fileid)exploit:http://seclists.org/lists/b...
2006-04-25 intitle:"HelpDesk" "If you need add... it's another helpdesk application.my exploit:http://fr0zen.no-ip.org/phphelpdesk-0.6.16_rcxcn_x...
2006-04-25 "You have not provided a survey identificatio... sql injection:http://www.securityfocus.com/bid/16077/discussremote command execution:http://ret...
2006-04-25 "This script was created by Php-ZeroNet"... Php-ZeroNet is a script comprised of php allowing webmasters to start a online community. Php-Z...
2006-04-25 inurl:resetcore.php ext:php e107 is a content management system written in php and using the popular open source mySQL data...
2006-04-25 "powered by active php bookmarks" | inur... Active PHP Bookmarks, a web based bookmark manager, was originally developed by Brandon Stone. ...
2006-04-15 "powered by php photo album" | inurl:&qu... dork: "powered by php photo album" | inurl:"main.php?cmd=album" -demo2 -pit...
2006-04-15 inurl:tmssql.php ext:php mssql pear adodb -cvs -a... dork:inurl:tmssql.php ext:php mssql pear adodb -cvs -akbka remote user can execute an arbitrar...
2006-04-15 inurl:perldiver.cgi ext:cgi dork: inurl:perldiver.cgi ext:cgi some interesting info about server and a cross site scripting...