Sid3^effects

115 exploits Active since Jan 2007
EIP-2026-110661 EXPLOITDB text WORKING POC
PHP Car Rental Complete System 1.2 - SQL Injection
EIP-2026-110573 EXPLOITDB text WRITEUP
PGAUTOPro - SQL Injection / Cross-Site Scripting (2)
EIP-2026-110034 EXPLOITDB text WRITEUP
Omnistar Mailer - Multiple Vulnerabilities
CVE-2010-1606 EXPLOITDB text WRITEUP
Ncrypted Nct Jobs Portal Script - XSS
Multiple cross-site scripting (XSS) vulnerabilities in NCT Jobs Portal Script allow remote attackers to inject arbitrary web script or HTML via the (1) search, (2) Keywords, (3) Tags, or (4) Desired City field.
EIP-2026-109868 EXPLOITDB text WRITEUP
Netartmedia iBoutique.MALL - SQL Injection
CVE-2010-2721 EXPLOITDB text WRITEUP
RightInPoint Lyrics Script 3.0 - SQL Injection
SQL injection vulnerability in index.php in RightInPoint Lyrics Script 3.0 allows remote attackers to execute arbitrary SQL commands via the artist_id parameter in an addalbum action.
EIP-2026-108808 EXPLOITDB text WRITEUP
Joomla! Component MySMS - Arbitrary File Upload
CVE-2010-4995 EXPLOITDB text WRITEUP
NeoRecruit 1.6.4 - SQL Injection
SQL injection vulnerability in the NeoRecruit (com_neorecruit) component 1.6.4 for Joomla! allows remote attackers to execute arbitrary SQL commands via the Itemid parameter in an offer_view action to index.php, a different vector than CVE-2007-4506.
CVE-2010-4991 EXPLOITDB text WRITEUP
Joomla! - SQL Injection
SQL injection vulnerability in the NinjaMonials (com_ninjamonials) component for Joomla! allows remote attackers to execute arbitrary SQL commands via the Itemid parameter in a display action to index.php.
EIP-2026-108806 EXPLOITDB text WRITEUP
Joomla! Component MyHome - Blind SQL Injection
CVE-2010-4719 EXPLOITDB text WRITEUP
JRadio <1.5.1 - Path Traversal
Directory traversal vulnerability in JRadio (com_jradio) component before 1.5.1 for Joomla! allows remote attackers to read arbitrary files via directory traversal sequences in the controller parameter to index.php.
EIP-2026-108787 EXPLOITDB text WRITEUP
Joomla! Component Minify4Joomla! - Arbitrary File Upload / Persistent Cross-Site Scripting
CVE-2010-4992 EXPLOITDB text WRITEUP
Payments Plus 2.1.5 - SQL Injection
SQL injection vulnerability in the Payments Plus component 2.1.5 for Joomla! allows remote attackers to execute arbitrary SQL commands via the type parameter to add.html.
CVE-2010-2857 EXPLOITDB text WRITEUP
Joomla! - Path Traversal
Directory traversal vulnerability in the Music Manager component for Joomla! allows remote attackers to read arbitrary files and possibly have unspecified other impact via a .. (dot dot) in the cid parameter to album.html.
CVE-2010-2912 EXPLOITDB text WRITEUP
Kayako eSupport 3.70.02 - SQL Injection
SQL injection vulnerability in index.php in Kayako eSupport 3.70.02 allows remote attackers to execute arbitrary SQL commands via the _a parameter in a downloads action.
CVE-2010-4975 EXPLOITDB text WRITEUP
Joomla! - SQL Injection
SQL injection vulnerability in the Techjoomla SocialAds For JomSocial (com_socialads) component for Joomla! allows remote attackers to execute arbitrary SQL commands via the ads description field in a showad action to index.php.
EIP-2026-108839 EXPLOITDB text WRITEUP
Joomla! Component Rapid-Recipe - HTML Injection
EIP-2026-108840 EXPLOITDB text WORKING POC
Joomla! Component Rapid-Recipe - Persistent Cross-Site Scripting
EIP-2026-108632 EXPLOITDB text WORKING POC
Joomla! Component EasyBlog - Persistent Cross-Site Scripting
EIP-2026-108733 EXPLOITDB text WRITEUP
Joomla! Component JomSocial 1.6.288 - Multiple Cross-Site Scripting Vulnerabilities
EIP-2026-108408 EXPLOITDB text WRITEUP
Joomla! Component com_joomdocs - Cross-Site Scripting
EIP-2026-108418 EXPLOITDB text WRITEUP
Joomla! Component com_jstore - SQL Injection
EIP-2026-108332 EXPLOITDB text WRITEUP
Joomla! Component com_djClassifieds 0.9.1 - Arbitrary File Upload
EIP-2026-108420 EXPLOITDB text WRITEUP
Joomla! Component com_jtickets - SQL Injection
EIP-2026-108313 EXPLOITDB text WRITEUP
Joomla! Component com_community - Persistent Cross-Site Scripting