security

Over the time I have discovered and reported some security issues:

Disclosure dateProgramSeverityURL
2011/07/06 PHP-Barcode Remote code execution Vendor [1] [2]
2011/01/31 Dokeos/Chamilo LMS File disclosure Chamilo [1]
2011/01/29 Dokeos/Chamilo LMS File disclosure Chamilo [1]
2009/11/09 Google Docs Viewer XSS Flaw explained
2008/10/06 Gforge SQL Injection Gforge
2008/10/06 Gforge SQL Injection Gforge
2008/10/06 Gforge SQL Injection Gforge
2008/08/01 RealVNC Viewer Memory corruption Exploit
2008/01/20Claroline e-LearningMultiple flaws (SQL Injection, Remote code execution, XSS)Claroline
2008/01/19SIVeLXSSSIVeL report
2007/11/10Mozilla Firefox JAR: RedirectSOP bypass Mozilla advisory [1] [2]
2007/07/02Microsoft Online ServicesXSSMicrosoft's Acknowledgment [1][2]
2006/08/02Kayako eSupportRemote file includeexploit
2006/05/08Dokeos LMSRemote file includeexploit
2006/05/08Claroline e-LearningRemote file includeexploit
2006/04/30Genius VideoCAM NBLocal privilege elevationCVE-2006-1484 [1] [2]