Exploitdb Exploits

2,809 exploits tracked across all sources.

Sort: Activity Stars
CVE-2006-1000 EXPLOITDB perl VERIFIED
Pentacle In-Out Board <= 3.0 - SQL Injection via newsid or password Parameter
Multiple SQL injection vulnerabilities in Pentacle In-Out Board 3.0 and earlier allow remote attackers to execute arbitrary SQL commands and bypass authentication via the (1) newsid parameter to newsdetailsview.asp and (2) password parameter to login.asp.
by nukedx
CVE-2006-0973 EXPLOITDB perl VERIFIED
phpWebSite <= 0.10.2 - SQL Injection via Topic Parameter
SQL injection vulnerability in topics.php in Appalachian State University phpWebSite 0.10.2 and earlier allows remote attackers to execute arbitrary SQL commands via the topic parameter.
by SnIpEr_SA
CVE-2006-0005 EXPLOITDB perl VERIFIED
Windows Media Player 9-10 - Remote Code Execution via Long EMBED src Attribute
Buffer overflow in the plug-in for Microsoft Windows Media Player (WMP) 9 and 10, when used in browsers other than Internet Explorer and set as the default application to handle media files, allows remote attackers to execute arbitrary code via HTML with an EMBED element containing a long src attribute.
by Matthew Murphy
EIP-2026-110954 EXPLOITDB perl VERIFIED
phpBB 2.0.18 - Remote Brute Force/Dictionary (2)
by DarkFig
EIP-2026-107374 EXPLOITDB perl VERIFIED
GeekLog 1.x - 'error.log' Remote Command Execution
by rgod
CVE-2006-0852 EXPLOITDB perl VERIFIED
devscripts admbook < 1.2.2 - Remote Code Execution via X-Forwarded-For Header Injection
Direct static code injection vulnerability in write.php in Admbook 1.2.2 and earlier allows remote attackers to execute arbitrary PHP code via the X-Forwarded-For HTTP header field, which is inserted into content-data.php.
by rgod
CVE-2006-0870 EXPLOITDB perl VERIFIED
Mini-Nuke CMS < 1.8.2 - SQL Injection via pages.asp id Parameter
SQL injection vulnerability in pages.asp in Mini-Nuke CMS System 1.8.2 and earlier allows remote attackers to execute arbitrary SQL commands via the id parameter. NOTE: version 2.3 was later reported to be vulnerable as well.
by nukedx
CVE-2005-2564 EXPLOITDB perl VERIFIED
Gravity Board X <1.1 - Code Injection
Direct static code injection vulnerability in editcss.php in Gravity Board X (GBX) 1.1 allows remote attackers to execute arbitrary PHP code, HTML, and script via the csscontent parameter, which is directly inserted into the gbxfinal.css file.
by RusH
EIP-2026-100745 EXPLOITDB perl VERIFIED
AWStats < 6.4 - 'referer' Remote Command Execution
by RusH
EIP-2026-114506 EXPLOITDB perl VERIFIED
YapBB 1.2 - 'cfgIncludeDirectory' Remote Command Execution
by cijfer
EIP-2026-109750 EXPLOITDB perl VERIFIED
MyBulletinBoard (MyBB) 1.03 - Multiple SQL Injections
by HACKERS PAL
CVE-2005-3058 EXPLOITDB perl VERIFIED
Fortinet FortiGate 2.8 - Auth Bypass
Interpretation conflict in Fortinet FortiGate 2.8, running FortiOS 2.8MR10 and v3beta, allows remote attackers to bypass the URL blocker via an (1) HTTP request terminated with a line feed (LF) and not carriage return line feed (CRLF) or (2) HTTP request with no Host field, which is still processed by most web servers without violating RFC2616.
by Mathieu Dessus
CVE-2006-0734 EXPLOITDB perl VERIFIED
Half-Life CSTRIKE Dedicated Server < 1.6_linux - Authenticated Denial of Service via Backslash in Connection String
The SV_CheckForDuplicateNames function in Valve Software Half-Life CSTRIKE Dedicated Server 1.6 and earlier allows remote authenticated users to cause a denial of service (infinite loop and daemon hang) via a backslash character at the end of a connection string to UDP port 27015.
by Firestorm
CVE-2006-0888 EXPLOITDB perl VERIFIED
Invision Power Board 2.0.1 - Denial of Service via User Registration
index.php in Invision Power Board (IPB) 2.0.1, with Code Confirmation disabled, allows remote attackers to cause an unspecified denial of service by registering a large number of users.
by SkOd
CVE-2006-0628 EXPLOITDB perl VERIFIED
Dale Ray MyQuiz 1.01 - Command Injection
myquiz.pl in Dale Ray MyQuiz 1.01 allows remote attackers to execute arbitrary commands via shell metacharacters in the URL, which are not properly handled as part of the PATH_INFO environment variable.
by Hessam-x
EIP-2026-100148 EXPLOITDB perl VERIFIED
ASPThai.Net Guestbook 5.5 - Authentication Bypass
by Zodiac
EIP-2026-110957 EXPLOITDB perl VERIFIED
phpBB 2.0.19 - Style Changer/Demo Mod SQL Injection
by SkOd
CVE-2006-0537 EXPLOITDB perl VERIFIED
Kinesphere Corporation eXchange POP3 Server - Buffer Overflow via Long RCPT TO Argument
Buffer overflow in the POP3 server in Kinesphere Corporation eXchange before 5.0.060125 allows remote attackers to execute arbitrary code via a long RCPT TO argument.
by securma massine
CVE-2006-0520 EXPLOITDB perl VERIFIED
Dragoran Portal module 1.3 - SQL Injection via Site Parameter
SQL injection vulnerability index.php in Dragoran Portal module 1.3 for Invision Power Board (IPB) allows remote attackers to execute arbitrary SQL commands via the site parameter. NOTE: the provenance of this information is unknown; the details are obtained solely from third party information.
by SkOd
EIP-2026-114418 EXPLOITDB perl VERIFIED
xeCMS 1.0.0 RC 2 - 'cookie' Remote Command Execution
by cijfer
CVE-2006-0441 EXPLOITDB perl VERIFIED
Sami FTP Server 2.0.1 - Stack-Based Buffer Overflow via Long USER Command
Stack-based buffer overflow in Sami FTP Server 2.0.1 allows remote attackers to execute arbitrary code via a long USER command, which triggers the overflow when the log is viewed.
by Critical Security
CVE-2006-0444 EXPLOITDB perl VERIFIED
phpclanwebsite 1.23.1 - SQL Injection via Forum Post Par Parameter
SQL injection vulnerability in index.php in Phpclanwebsite (aka PCW) 1.23.1 allows remote attackers to execute arbitrary SQL commands via the (1) par parameter in the post function on the forum page and possibly the (2) poll_id parameter on the poll page. NOTE: the poll_id vector can also allow resultant cross-site scripting (XSS) from an unquoted error message for invalid SQL syntax.
by matrix_killer
CVE-2006-0478 EXPLOITDB perl VERIFIED
CRE Loaded 6.15 - Privilege Escalation
CRE Loaded 6.15 allows remote attackers to perform privileged actions, including uploading and creating arbitrary files, via a direct request to files.php. NOTE: the vendor states "The initial announcement of this risk was made on our website... and it included a patch which will close the vulnerability on all known 6.0x and 6.1x releases. We strongly encourage users of CRE Loaded 6.x, osCMax, and other users of osCommerce who have installed HTMLArea based WYSIWYG editors and Admin Access with Levels to modify thier installations at the earliest possible moment."
by kaneda
CVE-2006-0214 EXPLOITDB perl VERIFIED
ezDatabase 2.0 and earlier - Remote Code Execution via db_id Parameter
Eval injection vulnerability in ezDatabase 2.0 and earlier allows remote attackers to execute arbitrary PHP code via the db_id parameter to visitorupload.php, as demonstrated using phpinfo and include function calls.
by cijfer
EIP-2026-111686 EXPLOITDB perl VERIFIED
RCBlog 1.0.3 - 'index.php' Directory Traversal
by Aliaksandr Hartsuyeu