Exploitdb Exploits

31,394 exploits tracked across all sources.

Sort: Activity Stars
CVE-2006-4956 EXPLOITDB text VERIFIED
Neon WebMail for Java < 5.08 - Cross-Site Scripting via Updateuser Servlet in_name Parameter
Cross-site scripting (XSS) vulnerability in the updateuser servlet in Neon WebMail for Java before 5.08 allows remote attackers to inject arbitrary web script or HTML via the in_name parameter, as used by the Name field.
by Tan Chew Keong
CVE-2006-4954 EXPLOITDB text VERIFIED
Neon WebMail for Java <5.08 - Info Disclosure
The updateuser servlet in Neon WebMail for Java before 5.08 does not validate the in_id parameter, which allows remote attackers to modify information of arbitrary users, as demonstrated by modifying (1) passwords and (2) permissions, (3) viewing profile settings, and (4) creating and (5) deleting users.
by Tan Chew Keong
CVE-2006-4952 EXPLOITDB text VERIFIED
Neon WebMail <5.08 - Info Disclosure
The updatemail servlet in Neon WebMail for Java before 5.08 allows remote attackers to move e-mail messages of arbitrary users between different mail folders, specified by the folderid and tofolderid parameters, via the ID parameter.
by Tan Chew Keong
CVE-2006-4953 EXPLOITDB text VERIFIED
Neon WebMail for Java <5.08 - SQL Injection
Multiple SQL injection vulnerabilities in Neon WebMail for Java before 5.08 allow remote attackers to execute arbitrary SQL commands via the (1) adr_sortkey and (2) adr_sortkey_desc parameters in the (a) addrlist servlet, and the (3) sortkey and (4) sortkey_desc parameters in the (b) maillist servlet.
by Tan Chew Keong
CVE-2006-4955 EXPLOITDB text VERIFIED
Neon WebMail <5.08 - Path Traversal
Directory traversal vulnerability in the downloadfile servlet in Neon WebMail for Java before 5.08 allows remote attackers to read arbitrary files via a .. (dot dot) sequence in the (1) savefolder and (2) savefilename parameters.
by Tan Chew Keong
CVE-2006-4953 EXPLOITDB text VERIFIED
Neon WebMail for Java <5.08 - SQL Injection
Multiple SQL injection vulnerabilities in Neon WebMail for Java before 5.08 allow remote attackers to execute arbitrary SQL commands via the (1) adr_sortkey and (2) adr_sortkey_desc parameters in the (a) addrlist servlet, and the (3) sortkey and (4) sortkey_desc parameters in the (b) maillist servlet.
by Tan Chew Keong
CVE-2006-4918 EXPLOITDB text VERIFIED
Simple Discussion Board 0.1.0 - RCE
Multiple PHP remote file inclusion vulnerabilities in Simple Discussion Board 0.1.0 allow remote attackers to execute arbitrary PHP code via a URL in the (1) env_dir parameter to (a) blank.php, (b) admin.php, or (c) builddb.php, and the (2) script_root parameter to blank.php.
by CeNGiZ-HaN
CVE-2006-5021 EXPLOITDB CRITICAL text VERIFIED
redblog 0.5 - Remote Code Execution via PHP File Inclusion
Multiple PHP remote file inclusion vulnerabilities in redgun RedBLoG 0.5 allow remote attackers to execute arbitrary PHP code via a URL in (1) the root parameter in imgen.php, and the root_path parameter in (2) admin/config.php, (3) common.php, and (4) admin/index.php. NOTE: the provenance of this information is unknown; the details are obtained from third party information.
by Root3r_H3ll
CVSS 9.8
CVE-2006-5021 EXPLOITDB CRITICAL text VERIFIED
redblog 0.5 - Remote Code Execution via PHP File Inclusion
Multiple PHP remote file inclusion vulnerabilities in redgun RedBLoG 0.5 allow remote attackers to execute arbitrary PHP code via a URL in (1) the root parameter in imgen.php, and the root_path parameter in (2) admin/config.php, (3) common.php, and (4) admin/index.php. NOTE: the provenance of this information is unknown; the details are obtained from third party information.
by Root3r_H3ll
CVSS 9.8
CVE-2006-5021 EXPLOITDB CRITICAL text VERIFIED
redblog 0.5 - Remote Code Execution via PHP File Inclusion
Multiple PHP remote file inclusion vulnerabilities in redgun RedBLoG 0.5 allow remote attackers to execute arbitrary PHP code via a URL in (1) the root parameter in imgen.php, and the root_path parameter in (2) admin/config.php, (3) common.php, and (4) admin/index.php. NOTE: the provenance of this information is unknown; the details are obtained from third party information.
by Root3r_H3ll
CVSS 9.8
CVE-2006-5021 EXPLOITDB CRITICAL text VERIFIED
redblog 0.5 - Remote Code Execution via PHP File Inclusion
Multiple PHP remote file inclusion vulnerabilities in redgun RedBLoG 0.5 allow remote attackers to execute arbitrary PHP code via a URL in (1) the root parameter in imgen.php, and the root_path parameter in (2) admin/config.php, (3) common.php, and (4) admin/index.php. NOTE: the provenance of this information is unknown; the details are obtained from third party information.
by Root3r_H3ll
CVSS 9.8
CVE-2006-4969 EXPLOITDB text VERIFIED
WAHM E-Commerce Pie Cart Pro - Remote File Inclusion via Inc_Dir Parameter
Multiple PHP remote file inclusion vulnerabilities in WAHM E-Commerce Pie Cart Pro allow remote attackers to execute arbitrary PHP code via a URL in the Inc_Dir parameter in (1) affiliates.php, (2) orders.php, (3) events.php, (4) index.php, (5) articles.php, (6) faqs.php, (7) guestbook.php, (8) catalog.php, (9) wholesale.php, (10) weblinks.php, (11) certificates.php, (12) sitesearch.php, (13) contact.php, (14) sitemap.php, (15) search.php, (16) registry.php, or (17) error.php.
by SnIpEr_SA
CVE-2006-4970 EXPLOITDB text VERIFIED
WAHM E-Commerce Pie Cart Pro - Remote File Inclusion via Home_Path Parameter
PHP remote file inclusion vulnerability in enc/content.php in WAHM E-Commerce Pie Cart Pro allows remote attackers to execute arbitrary PHP code via a URL in the Home_Path parameter.
by Saudi Hackrz
CVE-2006-4915 EXPLOITDB text VERIFIED
Innovate Portal 2.0 - Cross-Site Scripting via Content Parameter
Cross-site scripting (XSS) vulnerability in index.php in Innovate Portal 2.0 allows remote attackers to inject arbitrary web script or HTML via the content parameter.
by meto5757
CVE-2006-4923 EXPLOITDB text VERIFIED
eSyndiCat Portal System - Cross-Site Scripting via Search Parameter
Cross-site scripting (XSS) vulnerability in search.php in eSyndiCat Portal System allows remote attackers to inject arbitrary web script or HTML via the what parameter.
by meto5757
CVE-2006-4945 EXPLOITDB text VERIFIED
Cardway DigitalWebShop <1.128 - RCE
Multiple PHP remote file inclusion vulnerabilities in Cardway (aka Frederic Boudaud) DigitalWebShop 1.128 and earlier allow remote attackers to execute arbitrary PHP code via a URL in the _PHPLIB[libdir] parameter to (1) rechnung.php or (2) prepend.php.
by ajann
CVE-2006-4946 EXPLOITDB text VERIFIED
CMSDevelopment Business Card Web Builder < 2.5 - Remote File Inclusion via root_path Parameter
PHP remote file inclusion vulnerability in include/startup.inc.php in CMSDevelopment Business Card Web Builder (BCWB) 0.99, and possibly 2.5 Beta and earlier, allows remote attackers to execute arbitrary PHP code via a URL in the root_path parameter.
by ajann
EIP-2026-104044 EXPLOITDB text VERIFIED
OSU HTTP Server 3.10/3.11 - Multiple Information Disclosure Vulnerabilities
by Julio Cesar Fort
CVE-2006-4916 EXPLOITDB text VERIFIED
Tekman Portal (TR) 1.0 - SQL Injection
SQL injection vulnerability in uye_profil.asp in Tekman Portal (TR) 1.0 allows remote attackers to execute arbitrary SQL commands via the uye_id parameter.
by Fix TR
CVE-2006-4917 EXPLOITDB text VERIFIED
PT News 1.7.8 - Cross-Site Scripting via search.php pgname Parameter
Cross-site scripting (XSS) vulnerability in search.php in PT News 1.7.8 allows remote attackers to inject arbitrary web script or HTML via the pgname parameter.
by Snake
CVE-2006-4968 EXPLOITDB text VERIFIED
PNphpBB 1.2g - Remote File Inclusion via phpbb_root_path Parameter
PHP remote file inclusion vulnerability in includes/functions_admin.php in PNphpBB 1.2g allows remote attackers to execute arbitrary PHP code via a URL in the phpbb_root_path parameter.
by AzzCoder
CVE-2006-4894 EXPLOITDB text VERIFIED
iDevSpot NixieAffiliate <= 1.9 - Cross-Site Scripting via Lost Password Error Parameter
Cross-site scripting (XSS) vulnerability in forms/lostpassword.php in iDevSpot NixieAffiliate 1.9 and earlier allows remote attackers to inject arbitrary web script or HTML via the error parameter.
by s3rv3r_hack3r
EIP-2026-107756 EXPLOITDB text VERIFIED
IDevSpot BizDirectory 1.9 - Multiple Cross-Site Scripting Vulnerabilities
by s3rv3r_hack3r
CVE-2006-4871 EXPLOITDB text VERIFIED
Keyvan1 EShoppingPro 1.0 - SQL Injection via search_run.asp order Parameter
SQL injection vulnerability in search_run.asp in Keyvan1 (aka Keyvan Janghorbani) EShoppingPro 1.0 allows remote attackers to execute arbitrary SQL commands via the order parameter.
by ajann
CVE-2006-4872 EXPLOITDB text VERIFIED
Keyvan1 ECardPro 2.0 - SQL Injection via search.asp Keyword Parameter
SQL injection vulnerability in search.asp in Keyvan1 (aka Keyvan Janghorbani) ECardPro 2.0 allows remote attackers to execute arbitrary SQL commands via the keyword parameter.
by ajann