Php Exploits

1,334 exploits tracked across all sources.

Sort: Activity Stars
CVE-2009-4625 EXPLOITDB php VERIFIED
BF Survey Pro Free <1.2.6 - SQL Injection
SQL injection vulnerability in the updateOnePage function in components/com_bfsurvey_pro/controller.php in BF Survey Pro Free (com_bfsurvey_profree) 1.2.4, and other versions before 1.2.6, a component for Joomla!, allows remote attackers to execute arbitrary SQL commands via the table parameter in an updateOnePage action to index.php.
by jdc
CVE-2009-20006 EXPLOITDB CRITICAL php VERIFIED
osCommerce <2.2 RC2a - RCE
osCommerce versions up to and including 2.2 RC2a contain a vulnerability in its administrative file manager utility (admin/file_manager.php). The interface allows file uploads and edits without sufficient input validation or access control. An unauthenticated attacker can craft a POST request to upload a .php file containing arbitrary code, which is then executed by the server.
by flyh4t
EIP-2026-103911 EXPLOITDB php VERIFIED
Google Chrome 6.0.472 - 'Math.Random()' Random Number Generation
by Amit Klein
EIP-2026-108789 EXPLOITDB php VERIFIED
Joomla! Component MisterEstate - Blind SQL Injection
by jdc
CVE-2009-4550 EXPLOITDB php VERIFIED
Kunena Forum <1.5.4 - SQL Injection
SQL injection vulnerability in the Kunena Forum (com_kunena) component 1.5.3 and 1.5.4 for Joomla! allows remote attackers to execute arbitrary SQL commands via the func parameter to index.php.
by ilker Kandemir
CVE-2009-2626 EXPLOITDB php VERIFIED
PHP <5.3.0 - Info Disclosure
The zend_restore_ini_entry_cb function in zend_ini.c in PHP 5.3.0, 5.2.10, and earlier versions allows context-specific attackers to obtain sensitive information (memory contents) and cause a PHP crash by using the ini_set function to declare a variable, then using the ini_restore function to restore the variable.
by Maksymilian Arciemowicz
CVE-2009-2626 EXPLOITDB php VERIFIED
PHP <5.3.0 - Info Disclosure
The zend_restore_ini_entry_cb function in zend_ini.c in PHP 5.3.0, 5.2.10, and earlier versions allows context-specific attackers to obtain sensitive information (memory contents) and cause a PHP crash by using the ini_set function to declare a variable, then using the ini_restore function to restore the variable.
by Maksymilian Arciemowicz
EIP-2026-104703 EXPLOITDB php VERIFIED
PHP 5.3 - 'mail.log' Configuration Option 'open_basedir' Restriction Bypass
by Maksymilian Arciemowicz
EIP-2026-108485 EXPLOITDB php VERIFIED
Joomla! Component com_pms 2.0.4 - 'Ignore-List' SQL Injection
by M4dhead
CVE-2009-2781 EXPLOITDB php VERIFIED
Arab Portal 2.x - SQL Injection
SQL injection vulnerability in forum.php in Arab Portal 2.x, when magic_quotes_gpc is disabled, allows remote authenticated users to execute arbitrary SQL commands via the qc parameter in an addcomment action, a different vector than CVE-2006-1666.
by rEcruit
CVE-2009-4735 EXPLOITDB php VERIFIED
Allomani Audio & Video Library (Songs & Clips) <2.7.0 - SQL Injection
SQL injection vulnerability in login.php in Allomani Audio & Video Library (Songs & Clips version) 2.7.0 allows remote attackers to execute arbitrary SQL commands via the username parameter in a login action.
by Qabandi
CVE-2009-4734 EXPLOITDB php VERIFIED
Allomani Movies Library <2.7.0 - SQL Injection
SQL injection vulnerability in login.php in Allomani Movies Library (Movies & Clips) 2.7.0 allows remote attackers to execute arbitrary SQL commands via the username parameter in a login action.
by Qabandi
CVE-2009-3430 EXPLOITDB php VERIFIED
Allomani Mobile - SQL Injection
SQL injection vulnerability in login.php in Allomani Mobile 2.5 allows remote attackers to execute arbitrary SQL commands via the username parameter in a login action.
by Qabandi
CVE-2009-2922 EXPLOITDB php VERIFIED
Pixaria Gallery - Path Traversal
Absolute path traversal vulnerability in pixaria.image.php in Pixaria Gallery 2.0.0 through 2.3.5 allows remote attackers to read arbitrary files via a base64-encoded file parameter.
by Qabandi
EIP-2026-106675 EXPLOITDB php VERIFIED
e107 Plugin my_gallery 2.4.1 - 'readfile()' Local File Disclosure
by NoGe
CVE-2009-3949 EXPLOITDB php VERIFIED
VivaPrograms Infinity <2.0.5 - RCE
cp/profile.php in VivaPrograms Infinity 2.0.5 and earlier does not require administrative authentication for the donewauthor action, which allows remote attackers to create administrative accounts via the name, password, and conf_password parameters.
by Qabandi
EIP-2026-112776 EXPLOITDB php VERIFIED
Traidnt UP 2.0 - Blind SQL Injection
by Qabandi
CVE-2009-3713 EXPLOITDB php VERIFIED
Morcegocms < 1.7.6 - SQL Injection
SQL injection vulnerability in fichero.php in MorcegoCMS 1.7.6 and earlier allows remote attackers to execute arbitrary SQL commands via the query string.
by darkjoker
EIP-2026-110003 EXPLOITDB php VERIFIED
Nwahy Dir 2.1 - Arbitrary Change Admin Password
by rEcruit
CVE-2009-2585 EXPLOITDB php VERIFIED
Mlffat 2.2 - SQL Injection
SQL injection vulnerability in index.php in Mlffat 2.2 allows remote attackers to execute arbitrary SQL commands via a member cookie in an account editprofile action, a different vector than CVE-2009-1731.
by Qabandi
EIP-2026-114549 EXPLOITDB php VERIFIED
YourTube 2.0 - Arbitrary Database Disclosure
by Security Code Team
EIP-2026-105115 EXPLOITDB php VERIFIED
Almnzm 2.0 - Blind SQL Injection
by Qabandi
EIP-2026-105114 EXPLOITDB php VERIFIED
Almnzm - 'COOKIE: customer' SQL Injection
by Qabandi
CVE-2009-2255 EXPLOITDB php VERIFIED
Zen Cart <1.3.8a-1.3.8 - RCE
Zen Cart 1.3.8a, 1.3.8, and earlier does not require administrative authentication for admin/record_company.php, which allows remote attackers to execute arbitrary code by uploading a .php file via the record_company_image parameter in conjunction with a PATH_INFO of password_forgotten.php, then accessing this file via a direct request to the file in images/.
by BlackH
CVE-2009-1151 EXPLOITDB CRITICAL php VERIFIED
Phpmyadmin < 2.11.9.5 - Code Injection
Static code injection vulnerability in setup.php in phpMyAdmin 2.11.x before 2.11.9.5 and 3.x before 3.1.3.1 allows remote attackers to inject arbitrary PHP code into a configuration file via the save action.
by Hacking Expose!
CVSS 9.8