Exploitdb Exploits

2,814 exploits tracked across all sources.

Sort: Activity Stars
CVE-2009-0711 EXPLOITDB perl VERIFIED
PHPFootball <1.6 - Info Disclosure
filter.php in PHPFootball 1.6 and earlier allows remote attackers to retrieve password hashes via a request with an Accounts value for the dbtable parameter, in conjunction with a Password value for the dbfield parameter. NOTE: this has been reported as a SQL injection vulnerability by some sources, but the provenance of that information is unknown.
by KinG-LioN
CVE-2008-5821 EXPLOITDB perl VERIFIED
WebKit <3.2 - DoS
Memory leak in WebKit.dll in WebKit, as used by Apple Safari 3.2 on Windows Vista SP1, allows remote attackers to cause a denial of service (memory consumption and browser crash) via a long ALINK attribute in a BODY element in an HTML document.
by Jeremy Brown
CVE-2008-6727 EXPLOITDB perl VERIFIED
Upb - XSS
Cross-site scripting (XSS) vulnerability in Ultimate PHP Board (UPB) 2.2.2, 2.2.1, and earlier 2.x versions allows remote attackers to inject arbitrary web script or HTML via the User-Agent HTTP header.
by StAkeR
CVE-2008-4844 EXPLOITDB perl VERIFIED
Microsoft Internet Explorer - Resource Management Error
Use-after-free vulnerability in the CRecordInstance::TransferToDestination function in mshtml.dll in Microsoft Internet Explorer 5.01, 6, 6 SP1, and 7 allows remote attackers to execute arbitrary code via DSO bindings involving (1) an XML Island, (2) XML DSOs, or (3) Tabular Data Control (TDC) in a crafted HTML or XML document, as demonstrated by nested SPAN or MARQUEE elements, and exploited in the wild in December 2008.
by Jeremy Brown
EIP-2026-118254 EXPLOITDB perl VERIFIED
Amaya Web Browser 11.0.1 (Windows Vista) - Remote Buffer Overflow
by SkD
CVE-2008-5756 EXPLOITDB perl VERIFIED
Hex Workshop 5.1.4 - Buffer Overflow
Buffer overflow in BreakPoint Software Hex Workshop 5.1.4 allows user-assisted attackers to cause a denial of service and possibly execute arbitrary code via a long mapping reference in a Color Mapping (.cmap) file.
by Encrypt3d.M!nd
CVE-2008-5754 EXPLOITDB perl VERIFIED
BulletProof FTP Client - Buffer Overflow
Stack-based buffer overflow in BulletProof FTP Client allows user-assisted attackers to execute arbitrary code via a .bps file (aka Session-File) with a long second line, possibly a related issue to CVE-2008-5753.
by Stack
CVE-2008-6731 EXPLOITDB perl VERIFIED
China-on-site Flexphplink - Improper Input Validation
Unrestricted file upload vulnerability in submitlink.php in FlexPHPLink Pro 0.0.7 allows remote attackers to execute arbitrary PHP code by uploading a file with an executable extension, then accessing it via a direct request to the renamed file in linkphoto/.
by Osirys
CVE-2008-6146 EXPLOITDB perl VERIFIED
Deluxebb < 1.2 - SQL Injection
SQL injection vulnerability in pm.php in DeluxeBB 1.2 and earlier, when magic_quotes_gpc is disabled, allows remote attackers to execute arbitrary SQL commands via a delete##### parameter in a Delete action, a different vector than CVE-2005-2989.
by StAkeR
CVE-2008-5874 EXPLOITDB perl VERIFIED
Hotel Booking Reservation System - Joomla! SQL Injection
Multiple SQL injection vulnerabilities in the Hotel Booking Reservation System (aka HBS) for Joomla! allow remote attackers to execute arbitrary SQL commands via the id parameter in a showhoteldetails action to index.php in the (1) com_allhotels or (2) com_5starhotels module. NOTE: some of these details are obtained from third party information.
by EcHoLL
CVE-2008-3877 EXPLOITDB perl VERIFIED
Acoustica Mixcraft <4.2 - Buffer Overflow
Stack-based buffer overflow in Acoustica Mixcraft 4.1 Build 96 and 4.2 Build 98 allows user-assisted attackers to execute arbitrary code via a crafted .mx4 file. NOTE: it was later reported that version 3 is also affected.
by SkD
CVE-2008-5722 EXPLOITDB perl VERIFIED
SAWStudio 3.9i - Buffer Overflow
Buffer overflow in SAWStudio 3.9i allows user-assisted remote attackers to cause a denial of service (application crash) and possibly execute arbitrary code via a long SAWSTUDIO PREFERENCES STRUCT value in a .prf (preferences) file.
by Encrypt3d.M!nd
CVE-2008-1918 EXPLOITDB perl VERIFIED
PHP-Fusion <6.01.14, <6.00.307 - SQL Injection
SQL injection vulnerability in submit.php in PHP-Fusion 6.01.14 and 6.00.307, when magic_quotes_gpc is disabled and the database table prefix is known, allows remote authenticated users to execute arbitrary SQL commands via the submit_info[] parameter in a link submission action. NOTE: it was later reported that 7.00.2 is also affected.
by StAkeR
CVE-2008-5875 EXPLOITDB perl VERIFIED
Joomla! - SQL Injection
SQL injection vulnerability in the com_lowcosthotels component in the Hotel Booking Reservation System (aka HBS) for Joomla! allows remote attackers to execute arbitrary SQL commands via the id parameter in a showhoteldetails action to index.php.
by EcHoLL
CVE-2008-5715 EXPLOITDB perl VERIFIED
Mozilla Firefox 3.0.5 - DoS
Mozilla Firefox 3.0.5 on Windows Vista allows remote attackers to cause a denial of service (application crash) via JavaScript code with a long string value for the hash property (aka location.hash). NOTE: it was later reported that earlier versions are also affected, and that the impact is CPU consumption and application hang in unspecified circumstances perhaps involving other platforms.
by Jeremy Brown
CVE-2009-2953 EXPLOITDB perl VERIFIED
Mozilla Firefox - Resource Management Error
Mozilla Firefox 3.0.6 through 3.0.13, and 3.5.x, allows remote attackers to cause a denial of service (CPU consumption) via JavaScript code with a long string value for the hash property (aka location.hash), a related issue to CVE-2008-5715.
by Jeremy Brown
CVE-2008-6897 EXPLOITDB perl VERIFIED
Andres Garcia Getleft - Memory Corruption
Multiple buffer overflows in Getleft.exe in Andres Garcia Getleft 1.2 allow remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via a long (1) "a" HTML tag; a long src attribute in (2) embed, (3) img, or (4) script tags; (5) a long background attribute in a body tag; and other unspecified tags.
by Koshi
CVE-2008-6333 EXPLOITDB perl VERIFIED
Matthew General Rss Simple News - SQL Injection
SQL injection vulnerability in news.php in RSS Simple News (RSSSN), when magic_quotes_gpc is disabled, allows remote attackers to execute arbitrary SQL commands via the pid parameter.
by Piker
CVE-2008-5863 EXPLOITDB perl VERIFIED
Woltlab Burning Board 3.0 - SQL Injection
SQL injection vulnerability in locator.php in the Userlocator module 3.0 for Woltlab Burning Board (wBB) allows remote attackers to execute arbitrary SQL commands via the y parameter in a get_user action.
by katharsis
EIP-2026-110048 EXPLOITDB perl VERIFIED
OneOrZero helpdesk 1.6.x. - Arbitrary File Upload
by Ams
CVE-2008-5851 EXPLOITDB perl VERIFIED
My PBS - SQL Injection
SQL injection vulnerability in index.php in My PHP Baseball Stats (MyPBS) allows remote attackers to execute arbitrary SQL commands via the seasonID parameter.
by Piker
CVE-2008-6787 EXPLOITDB perl VERIFIED
Jeremy Powers Lizardware Cms < 0.6.0 - SQL Injection
SQL injection vulnerability in administrator/index.php in Lizardware CMS 0.6.0 and earlier allows remote attackers to execute arbitrary SQL commands via the user.
by StAkeR
CVE-2008-5778 EXPLOITDB perl VERIFIED
Free Links Directory Script 1.2a - SQL Injection
SQL injection vulnerability in report.php in Free Links Directory Script (FLDS) 1.2a allows remote attackers to execute arbitrary SQL commands via the linkid parameter.
by ka0x
CVE-2006-4948 EXPLOITDB perl VERIFIED
ProSysInfo TFTP Server TFTPDWIN <0.4.2 - Buffer Overflow
Stack-based buffer overflow in tftpd.exe in ProSysInfo TFTP Server TFTPDWIN 0.4.2 and earlier allows remote attackers to execute arbitrary code or cause a denial of service via a long file name. NOTE: the provenance of this information is unknown; the details are obtained from third party information.
by SkD
CVE-2008-4255 EXPLOITDB perl VERIFIED
Microsoft Office Frontpage - Memory Corruption
Heap-based buffer overflow in mscomct2.ocx (aka Windows Common ActiveX control or Microsoft Animation ActiveX control) in Microsoft Visual Basic 6.0, Visual Studio .NET 2002 SP1 and 2003 SP1, Visual FoxPro 8.0 SP1 and 9.0 SP1 and SP2, and Office Project 2003 SP3 and 2007 Gold and SP1 allows remote attackers to execute arbitrary code via an AVI file with a crafted stream length, which triggers an "allocation error" and memory corruption, aka "Windows Common AVI Parsing Overflow Vulnerability."
by Jerome Athias