Exploitdb Exploits

4,724 exploits tracked across all sources.

Sort: Activity Stars
CVE-2018-19585 EXPLOITDB HIGH python
GitLab CE/EE <11.3.11-11.5.1 - CRLF Injection
GitLab CE/EE versions 8.18 up to 11.x before 11.3.11, 11.4.x before 11.4.8, and 11.5.x before 11.5.1 have CRLF Injection in Project Mirroring when using the Git protocol.
by Norbert Hofmann
CVSS 7.5
EIP-2026-116686 EXPLOITDB python
10-Strike Network Inventory Explorer Pro 9.05 - Buffer Overflow (SEH)
by Florian Gassner
EIP-2026-103327 EXPLOITDB python
TerraMaster TOS 4.2.06 - RCE (Unauthenticated)
by IHTeam
CVE-2020-36946 EXPLOITDB HIGH python
SyncBreeze 10.0.28 - DoS
SyncBreeze 10.0.28 contains a denial of service vulnerability in the login endpoint that allows remote attackers to crash the service. Attackers can send an oversized payload in the login request to overwhelm the application and potentially disrupt service availability.
by Ahmed Elkhressy
CVSS 7.5
EIP-2026-106518 EXPLOITDB python
Dolibarr ERP-CRM 12.0.3 - Remote Code Execution (Authenticated)
by Yilmaz Degirmenci
EIP-2026-101834 EXPLOITDB python
Linksys RE6500 1.0.11.001 - Unauthenticated RCE
by RE-Solver
EIP-2026-100074 EXPLOITDB python
Magic Home Pro 1.5.1 - Authentication Bypass
by Victor Hanna
EIP-2026-110140 EXPLOITDB python
Online Marriage Registration System (OMRS) 1.0 - Remote Code Execution (2)
by Andrea Bruschi
CVE-2020-3452 EXPLOITDB HIGH python
Cisco ASA/FTD - Path Traversal
A vulnerability in the web services interface of Cisco Adaptive Security Appliance (ASA) Software and Cisco Firepower Threat Defense (FTD) Software could allow an unauthenticated, remote attacker to conduct directory traversal attacks and read sensitive files on a targeted system. The vulnerability is due to a lack of proper input validation of URLs in HTTP requests processed by an affected device. An attacker could exploit this vulnerability by sending a crafted HTTP request containing directory traversal character sequences to an affected device. A successful exploit could allow the attacker to view arbitrary files within the web services file system on the targeted device. The web services file system is enabled when the affected device is configured with either WebVPN or AnyConnect features. This vulnerability cannot be used to obtain access to ASA or FTD system files or underlying operating system (OS) files.
by Freakyclown
CVSS 7.5
CVE-2020-36947 EXPLOITDB HIGH python
LibreNMS 1.46 - Authenticated SQL Injection
LibreNMS 1.46 contains an authenticated SQL injection vulnerability in the MAC accounting graph endpoint that allows remote attackers to extract database information. Attackers can exploit the vulnerability by manipulating the 'sort' parameter with crafted SQL injection techniques to retrieve sensitive database contents through time-based blind SQL injection.
by Hodorsec
CVSS 7.1
CVE-2020-29596 EXPLOITDB HIGH python
MiniWeb HTTP server 0.8.19 - DoS
MiniWeb HTTP server 0.8.19 allows remote attackers to cause a denial of service (daemon crash) via a long name for the first parameter in a POST request.
by securityforeveryone.com
CVSS 7.5
CVE-2018-19585 EXPLOITDB HIGH python
GitLab CE/EE <11.3.11-11.5.1 - CRLF Injection
GitLab CE/EE versions 8.18 up to 11.x before 11.3.11, 11.4.x before 11.4.8, and 11.5.x before 11.5.1 have CRLF Injection in Project Mirroring when using the Git protocol.
by Fortunato Lodari
CVSS 7.5
EIP-2026-101840 EXPLOITDB python
Macally WIFISD2-2A82 2.000.010 - Guest to Root Privilege Escalation
by Maximilian Barz
EIP-2026-106514 EXPLOITDB python
Dolibarr 12.0.3 - SQLi to RCE
by coiffeur
CVE-2020-29659 EXPLOITDB CRITICAL python
Flexense DupScout Enterprise 10.0.18 - Buffer Overflow
A buffer overflow in the web server of Flexense DupScout Enterprise 10.0.18 allows a remote anonymous attacker to execute code as SYSTEM by overflowing the sid parameter via a GET /settings&sid= attack.
by Andrés Roldán
CVSS 9.8
CVE-2019-7214 EXPLOITDB CRITICAL python
SmarterTools SmarterMail less than build 6985 - .NET Deserialization Remote Code Execution
SmarterTools SmarterMail 16.x before build 6985 allows deserialization of untrusted data. An unauthenticated attacker could run commands on the server when port 17001 was remotely accessible. This port is not accessible remotely by default after applying the Build 6985 patch.
by 1F98D
CVSS 9.8
EIP-2026-118439 EXPLOITDB python
Dup Scout Enterprise 10.0.18 - 'online_registration' Remote Buffer Overflow
by 0rbz_
EIP-2026-110144 EXPLOITDB python VERIFIED
Online Matrimonial Project 1.0 - Authenticated Remote Code Execution
by Valerio Alessandroni
CVE-2020-35313 EXPLOITDB CRITICAL python
Wondercms - SSRF
A server-side request forgery (SSRF) vulnerability in the addCustomThemePluginRepository function in index.php in WonderCMS 3.1.3 allows remote attackers to execute arbitrary code via a crafted URL to the theme/plugin installer.
by zetc0de
CVSS 9.8
CVE-2020-35314 EXPLOITDB CRITICAL python
Wondercms - OS Command Injection
A remote code execution vulnerability in the installUpdateThemePluginAction function in index.php in WonderCMS 3.1.3, allows remote attackers to upload a custom plugin which can contain arbitrary code and obtain a webshell via the theme/plugin installer.
by zetc0de
CVSS 9.8
CVE-2020-36961 EXPLOITDB CRITICAL python
10-Strike Network Inventory Explorer <8.65 - RCE
10-Strike Network Inventory Explorer 8.65 contains a buffer overflow vulnerability in exception handling that allows remote attackers to execute arbitrary code. Attackers can craft a malicious file with 209 bytes of padding and a specially constructed Structured Exception Handler to trigger code execution.
by Sectechs
CVSS 9.8
CVE-2020-29395 EXPLOITDB MEDIUM python
WordPress EventON <3.0.5 - XSS
The EventON plugin through 3.0.5 for WordPress allows addons/?q= XSS via the search field.
by B3KC4T
CVSS 6.1
EIP-2026-110579 EXPLOITDB python
Pharmacy/Medical Store & Sale Point 1.0 - 'email' SQL Injection
by naivenom
EIP-2026-104429 EXPLOITDB python
Setelsa Conacwin 3.7.1.2 - Local File Inclusion
by Bryan Rodriguez Martin
CVE-2020-36964 EXPLOITDB CRITICAL python
YATinyWinFTP - DoS
YATinyWinFTP contains a denial of service vulnerability that allows attackers to crash the FTP service by sending a 272-byte buffer with a trailing space. Attackers can exploit the service by connecting and sending a malformed command that triggers a buffer overflow and service crash.
by strider
CVSS 9.8