Thomas Pollet 

This page lists some vulnerabilites I discovered 

  • CVE-2008-2064: phpGedView script insertion
  • CVE-2008-1965: Lotus expeditor cai uri handler command execution 
  • CVE-2008-1833: ClamAV Heap corruption
  • CVE-2008-1722: CUPS PNG Filter Integer Overflow Vulnerability
  • CVE-2008-1469: Gallarific Multiple Vulnerabilities
  • CVE-2008-0516: SQLiteManager "spaw_root" File Inclusion Vulnerability
  • CVE-2007-2434: Aventail Connect Hostname Buffer Overflow Vulnerability
  • CVE-2006-4563: PHP-Nuke MyHeadlines Module "myh_op" Cross-Site Scripting 
  • CVE-2006-4299: TikiWiki "highlight" Cross-Site Scripting Vulnerability 
  • CVE-2006-0886: DEV web management system Cross-Site Scripting and Script Insertion 
  • CVE-2006-0933: PHPX "url" XCode Script Insertion Vulnerability 
  • CVE-2006-0934: WEBInsta Limbo Contact Form Script Insertion Vulnerability 
  • CVE-2006-0842: @Mail Webmail Image Tag Script Insertion Vulnerability 
  • CVE-2006-0796: Clever Copy Private Message "Subject" Script Insertion Vulnerability 
  • CVE-2006-0682: e107 script insertion
  • CVE-2006-0499: phpBB Rlink Module "url" Cross-Site Scripting Vulnerability
  • CVE-2006-0091: Open-Xchange Webmail HTML Attachment Script Insertion Vulnerability
  • osCmax Cross-Site scripting  
  • Papoo Username Script Insertion Vulnerability
  • Exponent Cms script insertion
  • EncapsGallery Cross-Site Scripting and File Upload