Esac

8 exploits Active since Jul 2006
CVE-2008-0089 EXPLOITDB WORKING POC
ClipShare - SQL Injection via UID Parameter
SQL injection vulnerability in uprofile.php in ClipShare allows remote attackers to execute arbitrary SQL commands via the UID parameter.
CVE-2006-3823 EXPLOITDB text WORKING POC
GeodesicSolutions GeoAuctions Premier and GeoClassifieds Basic 2.0.3 - SQL Injection via Index.php b Parameter
SQL injection vulnerability in index.php in GeodesicSolutions (1) GeoAuctions Premier 2.0.3 and (2) GeoClassifieds Basic 2.0.3 allows remote attackers to execute arbitrary SQL commands via the b parameter.
EIP-2026-112743 EXPLOITDB text WORKING POC
TomatoCart 1.1.8.2 - 'class' Local File Inclusion
EIP-2026-111231 EXPLOITDB text WRITEUP
PhpVibe 3.1 - Multiple Vulnerabilities
EIP-2026-109588 EXPLOITDB text WRITEUP
mooSocial 1.3 - Multiple Vulnerabilities
CVE-2014-3871 EXPLOITDB text WORKING POC
Geodesic Solutions GeoCore MAX 7.3.3 - SQL Injection via Register.php Parameters
Multiple SQL injection vulnerabilities in register.php in Geodesic Solutions GeoCore MAX 7.3.3 (formerly GeoClassifieds and GeoAuctions) allow remote attackers to execute arbitrary SQL commands via the (1) c[password] or (2) c[username] parameter. NOTE: the b parameter to index.php vector is already covered by CVE-2006-3823.
EIP-2026-105943 EXPLOITDB text WORKING POC
ClipShare 4.1.1 - 'gid' Blind SQL Injection
CVE-2008-5489 EXPLOITDB text WORKING POC
ClipShare Pro <2008 - SQL Injection
SQL injection vulnerability in channel_detail.php in ClipShare Pro 4, and 2006 through 2007, allows remote attackers to execute arbitrary SQL commands via the chid parameter.