Exploitdb Exploits

2,012 exploits tracked across all sources.

Sort: Activity Stars
EIP-2026-119052 EXPLOITDB html VERIFIED
Pro Softnet IDrive Online Backup 3.4.0 - ActiveX 'SaveToFile()' Arbitrary File Overwrite
by High-Tech Bridge SA
EIP-2026-118678 EXPLOITDB html VERIFIED
iMesh 10.0 - 'IMWebControl.dll' ActiveX Control Buffer Overflow
by KedAns-Dz
EIP-2026-118395 EXPLOITDB html VERIFIED
CygniCon CyViewer - ActiveX Control 'SaveData()' Insecure Method
by High-Tech Bridge SA
EIP-2026-118722 EXPLOITDB html VERIFIED
LeadTools Imaging LEADSmtp - ActiveX Control 'SaveMessage()' Insecure Method
by High-Tech Bridge SA
EIP-2026-115181 EXPLOITDB html VERIFIED
Easewe FTP OCX ActiveX Control 4.5.0.9 - 'EaseWeFtp.ocx' Multiple Insecure Method Vulnerabilities
by High-Tech Bridge SA
EIP-2026-118323 EXPLOITDB html VERIFIED
Black Ice Fax Voice SDK 12.6 - Remote Code Execution
by mr_me
CVE-2011-2641 EXPLOITDB html VERIFIED
Opera Browser - Resource Management Error
Opera 11.11 allows remote attackers to cause a denial of service (application crash) by setting the FACE attribute of a FONT element within an IFRAME element after changing the SRC attribute of this IFRAME element to an about:blank value.
by echo
EIP-2026-103610 EXPLOITDB html VERIFIED
Opera Web Browser 11.11 - Denial of Service
by echo
EIP-2026-116466 EXPLOITDB html VERIFIED
UUSEE ActiveX < 6.11.0412.1 - Buffer Overflow
by huimaozi
EIP-2026-112637 EXPLOITDB html VERIFIED
The Pacer Edition CMS 2.1 - 'email' Cross-Site Scripting
by LiquidWorm
EIP-2026-106359 EXPLOITDB html VERIFIED
Dataface - Local File Inclusion
by ITSecTeam
EIP-2026-118735 EXPLOITDB html
Magneto ICMP ActiveX 4.0.0.20 - ICMPSendEchoRequest Remote Code Execute
by boahat
EIP-2026-106219 EXPLOITDB html
cPanel < 11.25 - Cross-Site Request Forgery (Add User PHP Script)
by ninjashell
EIP-2026-105174 EXPLOITDB html VERIFIED
Andy's PHP KnowledgeBase 0.95.4 - 'step5.php' PHP Remote Code Execution
by AutoSec Tools
EIP-2026-105167 EXPLOITDB html VERIFIED
Ampache 3.5.4 - 'login.php' Cross-Site Scripting
by AutoSec Tools
EIP-2026-113035 EXPLOITDB html VERIFIED
VCalendar 1.1.5 - Cross-Site Request Forgery
by High-Tech Bridge SA
CVE-2011-2089 EXPLOITDB html VERIFIED
ICONICS BizViz <9.22, GENESIS32 <9.22 - RCE
Stack-based buffer overflow in the SetActiveXGUID method in the VersionInfo ActiveX control in GenVersion.dll 8.0.138.0 in the WebHMI subsystem in ICONICS BizViz 9.x before 9.22 and GENESIS32 9.x before 9.22 allows remote attackers to execute arbitrary code via a long string in the argument. NOTE: some of these details are obtained from third party information.
by sgb & bls
EIP-2026-107261 EXPLOITDB html
Front Accounting 2.3.4 - Cross-Site Request Forgery
by AutoSec Tools
EIP-2026-106967 EXPLOITDB html
Exponent CMS 2.0 Beta 1.1 - Cross-Site Request Forgery (Add Administrator Account)
by outlaw.dll
EIP-2026-117238 EXPLOITDB html VERIFIED
Gesytec ElonFmt ActiveX 1.1.14 - 'ElonFmt.ocx' pid Item Buffer Overflow (SEH)
by LiquidWorm
CVE-2012-1416 EXPLOITDB html
Socialcms - CSRF
Multiple cross-site request forgery (CSRF) vulnerabilities in SocialCMS 1.0.2 allow remote attackers to hijack the authentication of administrators for requests that (1) add administrator accounts via a member_new action to my_admin/admin1_members.php or (2) modify the default site title via a save action to my_admin/admin1_configuration.php.
by vir0e5
EIP-2026-106495 EXPLOITDB html
docuFORM Mercury WebApp 6.16a/5.20 - Multiple Cross-Site Scripting Vulnerabilities
by LiquidWorm
EIP-2026-107481 EXPLOITDB html
Graugon Forum 1.3 - SQL Injection
by AutoSec Tools
EIP-2026-105113 EXPLOITDB html
Allomani Web Links 1.0 - Cross-Site Request Forgery (Add Admin)
by AtT4CKxT3rR0r1ST
EIP-2026-105112 EXPLOITDB html
Allomani Super MultiMedia Library 2.5.0 - Cross-Site Request Forgery (Add Admin)
by AtT4CKxT3rR0r1ST