Html Exploits

2,054 exploits tracked across all sources.

Sort: Activity Stars
EIP-2026-114637 EXPLOITDB html VERIFIED
Zomplog 3.9 - Cross-Site Scripting / Cross-Site Request Forgery
by 10n1z3d
EIP-2026-111903 EXPLOITDB html
Saurus CMS Admin Panel - Multiple Cross-Site Request Forgery Vulnerabilities
by Fady Mohammed Osman
EIP-2026-104300 EXPLOITDB html
Kleeja Upload - Cross-Site Request Forgery (Change Admin Password)
by KOLTN S
EIP-2026-119162 EXPLOITDB html VERIFIED
SopCast 3.2.9 - Remote Command Execution
by sud0
EIP-2026-119094 EXPLOITDB html VERIFIED
RSP MP3 Player - OCX ActiveX Buffer Overflow HeapSpray
by Madjix
EIP-2026-110209 EXPLOITDB html VERIFIED
Onyx - Multiple Cross-Site Scripting Vulnerabilities
by High-Tech Bridge SA
EIP-2026-109806 EXPLOITDB html VERIFIED
Mystic 0.1.4 - Multiple Cross-Site Scripting Vulnerabilities
by High-Tech Bridge SA
EIP-2026-104513 EXPLOITDB html
Zendesk - Multiple Vulnerabilities
by Luis Santana
EIP-2026-118400 EXPLOITDB html VERIFIED
dBpowerAMP Audio Player 2 - 'FileExists' ActiveX Buffer Overflow
by s-dz
EIP-2026-114907 EXPLOITDB html VERIFIED
AoAAudioExtractor 2.0.0.0 - ActiveX (PoC) (SEH)
by s-dz
EIP-2026-113448 EXPLOITDB html VERIFIED
wizmall 6.4 - Cross-Site Request Forgery
by pyw1414
EIP-2026-118241 EXPLOITDB html VERIFIED
Advanced File Vault - 'eSellerateControl350.dll' ActiveX HeapSpray
by ThE g0bL!N
EIP-2026-103173 EXPLOITDB html VERIFIED
Nagios XI - Multiple Cross-Site Request Forgery Vulnerabilities
by Adam Baldwin
CVE-2010-3026 EXPLOITDB html
Tomaz Muraus Open Blog 1.2.1 - CSRF
Cross-site request forgery (CSRF) vulnerability in application/modules/admin/controllers/users.php in Tomaz Muraus Open Blog 1.2.1, and possibly earlier, allows remote attackers to hijack the authentication of administrators for requests to admin/users/edit that grant administrative privileges.
by High-Tech Bridge SA
CVE-2010-3030 EXPLOITDB html
Tomaz Muraus Open Blog 1.2.1 - CSRF
Cross-site request forgery (CSRF) vulnerability in Tomaz Muraus Open Blog 1.2.1, and possibly earlier, allows remote attackers to hijack the authentication of administrators for requests that change the administrative password. NOTE: the provenance of this information is unknown; the details are obtained solely from third party information.
by High-Tech Bridge SA
CVE-2010-3024 EXPLOITDB html VERIFIED
DiamondList 0.1.6 - CSRF
Multiple cross-site request forgery (CSRF) vulnerabilities in user/main/update_user in DiamondList 0.1.6, and possibly earlier, allow remote attackers to hijack the authentication of administrators for requests that (1) change the administrative password or (2) change the site's configuration.
by High-Tech Bridge SA
EIP-2026-105667 EXPLOITDB html
BXR 0.6.8 - Cross-Site Request Forgery
by High-Tech Bridge SA
EIP-2026-105161 EXPLOITDB html
Amethyst 0.1.5 - Cross-Site Scripting
by High-Tech Bridge SA
EIP-2026-118536 EXPLOITDB html VERIFIED
FathFTP 1.8 - 'FileExists Method' ActiveX Buffer Overflow (SEH)
by H4kr3m
EIP-2026-118535 EXPLOITDB html VERIFIED
FathFTP 1.8 - 'EnumFiles Method' ActiveX Buffer Overflow (SEH)
by Madjix
EIP-2026-118534 EXPLOITDB html VERIFIED
FathFTP 1.8 - 'DeleteFile Method' ActiveX Buffer Overflow (SEH)
by Madjix
CVE-2010-2701 EXPLOITDB html VERIFIED
FathFTP ActiveX control <1.7 - Buffer Overflow
Multiple buffer overflows in the FathFTP ActiveX control 1.7 allow remote attackers to execute arbitrary code via (1) the GetFromURL member or (2) a long argument to the RasIsConnected method.
by Madjix
CVE-2010-2931 EXPLOITDB html VERIFIED
SigPlus Pro 3.74 - Buffer Overflow
Stack-based buffer overflow in SigPlus Pro 3.74 ActiveX control allows remote attackers to execute arbitrary code via a long eighth argument (HexString) to the LCDWriteString method.
by mr_me
CVE-2010-2932 EXPLOITDB html VERIFIED
BarCodeWiz BarCode <3.29 - RCE
Buffer overflow in BarCodeWiz BarCode 3.29 ActiveX control (BarcodeWiz.dll) allows remote attackers to execute arbitrary code via a long argument to the LoadProperties method.
by Dr_IDE
CVE-2010-2932 EXPLOITDB html VERIFIED
BarCodeWiz BarCode <3.29 - RCE
Buffer overflow in BarCodeWiz BarCode 3.29 ActiveX control (BarcodeWiz.dll) allows remote attackers to execute arbitrary code via a long argument to the LoadProperties method.
by loneferret