Exploitdb Exploits

2,012 exploits tracked across all sources.

Sort: Activity Stars
EIP-2026-114170 EXPLOITDB html
WordPress Plugin Video Player 1.5.16 - SQL Injection
by David Vaartjes
EIP-2026-100919 EXPLOITDB html
Ubiquiti Administration Portal - Remote Command Execution (via Cross-Site Request Forgery)
by KoreLogic
EIP-2026-114492 EXPLOITDB html
XuezhuLi FileSharing - Cross-Site Request Forgery (Add User)
by HaHwul
CVE-2016-0199 EXPLOITDB HIGH html
Microsoft Internet Explorer 9-11 - Code Injection
Microsoft Internet Explorer 9 through 11 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted web site, aka "Internet Explorer Memory Corruption Vulnerability," a different vulnerability than CVE-2016-0200 and CVE-2016-3211.
by Skylined
CVSS 8.8
EIP-2026-114536 EXPLOITDB html VERIFIED
Yona CMS - Cross-Site Request Forgery
by s0nk3y
EIP-2026-107944 EXPLOITDB html VERIFIED
IonizeCMS 1.0.8 - Cross-Site Request Forgery (Add Admin)
by s0nk3y
EIP-2026-114136 EXPLOITDB html
WordPress Plugin Ultimate Product Catalog 3.8.1 - Privilege Escalation
by i0akiN SEC-LABORATORY
EIP-2026-105036 EXPLOITDB html
Airia - Cross-Site Request Forgery (Add Content)
by HaHwul
EIP-2026-112215 EXPLOITDB html
SlimCMS 0.1 - Cross-Site Request Forgery (Change Admin Password)
by Avinash Thapa
EIP-2026-112891 EXPLOITDB html
Ultrabenosaurus ChatBoard - Cross-Site Request Forgery (Send Message)
by HaHwul
EIP-2026-113065 EXPLOITDB html
Viart Shopping Cart 5.0 - Cross-Site Request Forgery / Arbitrary File Upload
by Ali Ghanbari
EIP-2026-109522 EXPLOITDB html VERIFIED
Mobiketa 1.0 - Cross-Site Request Forgery (Add Admin)
by Murat Yilmazlar
EIP-2026-109488 EXPLOITDB html
miniMySQLAdmin 1.1.3 - Cross-Site Request Forgery (SQL Execution)
by HaHwul
EIP-2026-106565 EXPLOITDB html
Dream Gallery 1.0 - Cross-Site Request Forgery (Add Admin)
by Ali Ghanbari
EIP-2026-105249 EXPLOITDB html
ArticleSetup 1.00 - Cross-Site Request Forgery (Change Admin Password)
by Ali Ghanbari
EIP-2026-107142 EXPLOITDB html
Flatpress 1.0.3 - Cross-Site Request Forgery / Arbitrary File Upload
by LiquidWorm
EIP-2026-114977 EXPLOITDB html
Baidu Spark Browser 43.23.1000.476 - Address Bar URL Spoofing
by liu zhu
EIP-2026-110007 EXPLOITDB html
Observium 0.16.7533 - Cross-Site Request Forgery
by Dolev Farhi
CVE-2016-0891 EXPLOITDB HIGH html VERIFIED
EMC ViPR SRM <3.7 - CSRF
Multiple cross-site request forgery (CSRF) vulnerabilities in administrative pages in EMC ViPR SRM before 3.7 allow remote attackers to hijack the authentication of administrators.
by Han Sahin
CVSS 8.8
EIP-2026-115680 EXPLOITDB html
Microsoft Internet Explorer 11 - MSHTML!CMarkupPointer::UnEmbed Use-After-Free
by Marcin Ressel
CVE-2015-6086 EXPLOITDB html VERIFIED
Microsoft Internet Explorer <11 - Info Disclosure
Microsoft Internet Explorer 9 through 11 allows remote attackers to obtain sensitive information from process memory via a crafted web site, aka "Internet Explorer Information Disclosure Vulnerability."
by Ashfaq Ansari
EIP-2026-101770 EXPLOITDB html
Hikvision Digital Video Recorder - Cross-Site Request Forgery
by LiquidWorm
CVE-2016-0111 EXPLOITDB HIGH html VERIFIED
Microsoft Edge - Memory Corruption
Microsoft Internet Explorer 9 through 11 and Microsoft Edge allow remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted web site, aka "Microsoft Browser Memory Corruption Vulnerability," a different vulnerability than CVE-2016-0105, CVE-2016-0107, CVE-2016-0112, and CVE-2016-0113.
by Google Security Research
CVSS 7.5
EIP-2026-101850 EXPLOITDB html
MOBOTIX Video Security Cameras - Cross-Site Request Forgery (Add Admin)
by LiquidWorm
CVE-2016-0108 EXPLOITDB HIGH html VERIFIED
Microsoft Internet Explorer - Memory Corruption
Microsoft Internet Explorer 11 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted web site, aka "Internet Explorer Memory Corruption Vulnerability," a different vulnerability than CVE-2016-0102, CVE-2016-0103, CVE-2016-0106, CVE-2016-0109, and CVE-2016-0114.
by Google Security Research
CVSS 7.5