Exploitdb Exploits

31,394 exploits tracked across all sources.

Sort: Activity Stars
CVE-2006-4253 EXPLOITDB text VERIFIED
K-Meleon - Remote Code Execution via JavaScript Timed Events and XML File Redirection
Concurrency vulnerability in Mozilla Firefox 1.5.0.6 and earlier allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via multiple Javascript timed events that load a deeply nested XML file, followed by redirecting the browser to another page, which leads to a concurrency failure that causes structures to be freed incorrectly, as demonstrated by (1) ffoxdie and (2) ffoxdie3. NOTE: it has been reported that Netscape 8.1 and K-Meleon 1.0.1 are also affected by ffoxdie. Mozilla confirmed to CVE that ffoxdie and ffoxdie3 trigger the same underlying vulnerability. NOTE: it was later reported that Firefox 2.0 RC2 and 1.5.0.7 are also affected.
by Michal Zalewski
CVE-2006-4198 EXPLOITDB text VERIFIED
wheatblog < 1.1 - Remote File Inclusion via wb_class_dir Parameter
PHP remote file inclusion vulnerability in includes/session.php in Wheatblog (wB) 1.1 and earlier, when register_globals is enabled, allows remote attackers to execute arbitrary PHP code via a URL in the wb_class_dir parameter.
by O.U.T.L.A.W
CVE-2006-4159 EXPLOITDB text VERIFIED
Chaussette < 080706 - Remote Code Execution via _BASE Parameter File Inclusion
Multiple PHP remote file inclusion vulnerabilities in Chaussette 080706 and earlier allow remote attackers to execute arbitrary PHP code via a URL in the _BASE parameter to scripts in Classes/ including (1) Evenement.php, (2) Event.php, (3) Event_for_month.php, (4) Event_for_week.php, (5) My_Log.php, (6) My_Smarty.php, and possibly (7) Event_for_month_per_day.php.
by Drago84
CVE-2006-4142 EXPLOITDB text VERIFIED
Virtual War <= 1.5.0 R14 - SQL Injection via Online.php n Parameter
SQL injection vulnerability in extra/online.php in Virtual War (VWar) 1.5.0 R14 and earlier allows remote attackers to execute arbitrary SQL commands via the n parameter.
by brOmstar
CVE-2006-4295 EXPLOITDB text VERIFIED
Panda ActiveScan 5.53.00 - Cross-Site Scripting via ascan_6.asp Email Parameter
Cross-site scripting (XSS) vulnerability in ascan_6.asp in Panda ActiveScan 5.53.00 allows remote attackers to inject arbitrary web script or HTML via the email parameter.
by Lostmon
CVE-2006-4140 EXPLOITDB text VERIFIED
IPCheck Server Monitor - Directory Traversal via URL Dot-Dot Sequences
Directory traversal vulnerability in IPCheck Server Monitor before 5.3.3.639/640 allows remote attackers to read arbitrary files via modified .. (dot dot) sequences in the URL, including (1) "..%2f" (encoded "/" slash), "..../" (multiple dot), and "..%255c../" (double-encoded "\" backslash).
by Tassi Raeburn
CVE-2006-4157 EXPLOITDB text VERIFIED
Yet another Bulletin Board (YaBB) - Cross-Site Scripting via Categories Parameter
Cross-site scripting (XSS) vulnerability in index.php in Yet another Bulletin Board (YaBB) allows remote attackers to inject arbitrary web script or HTML via the categories parameter.
by O.U.T.L.A.W
CVE-2006-4209 EXPLOITDB text VERIFIED
WEBInsta Mailing List Manager 1.3e - RCE
PHP remote file inclusion vulnerability in install3.php in WEBInsta Mailing List Manager 1.3e allows remote attackers to execute arbitrary PHP code via a URL in the cabsolute_path parameter.
by Philipp Niedziela
EIP-2026-113318 EXPLOITDB text VERIFIED
WEBinsta Mailing List Manager 1.3 - 'Install3.php' Remote File Inclusion
by Philipp Niedziela
CVE-2007-2312 EXPLOITDB text VERIFIED
Virtual War 1.5.0 R15 - SQL Injection via Online Parameter
Multiple SQL injection vulnerabilities in the Virtual War (VWar) 1.5.0 R15 module for PHP-Nuke allow remote attackers to execute arbitrary SQL commands via the n parameter to extra/online.php and other unspecified scripts in extra/. NOTE: this might be same vulnerability as CVE-2006-4142; however, there is an intervening vendor fix announcement.
by brOmstar
EIP-2026-112701 EXPLOITDB text VERIFIED
Tiny Web Gallery 1.5 - 'Image' Multiple Remote File Inclusions
by x0r0n
CVE-2006-4213 EXPLOITDB text VERIFIED
PHP <0.4.6 - Remote Code Execution
PHP remote file inclusion vulnerability in config.php in David Kent Norman Thatware 0.4.6 and possibly earlier allows remote attackers to execute arbitrary PHP code via a URL in the root_path parameter.
by Drago84
CVE-2006-4158 EXPLOITDB text VERIFIED
spaminator < 1.7 - Remote File Inclusion via Login.php Page Parameter
PHP remote file inclusion vulnerability in Login.php in Spaminator 1.7 and earlier allows remote attackers to execute arbitrary PHP code via a URL in the page parameter.
by Drago84
EIP-2026-111904 EXPLOITDB text VERIFIED
SaveWebPortal 3.4 - 'page' Remote File Inclusion
by Bl0od3r
EIP-2026-111234 EXPLOITDB text VERIFIED
PHPWCMS 1.1-RC4 - 'spaw' Remote File Inclusion
by Morgan
CVE-2006-4164 EXPLOITDB text VERIFIED
phpPrintAnalyzer < 1.2 - Remote File Inclusion via ficStyle Parameter
PHP remote file inclusion vulnerability in inc/header.inc.php in phpPrintAnalyzer 1.2 and earlier allows remote attackers to execute arbitrary PHP code via a URL in the ficStyle parameter.
by Cmaster4
CVE-2006-4160 EXPLOITDB text VERIFIED
MVCnPHP 3.0 - Remote Code Execution
Multiple PHP remote file inclusion vulnerabilities in Tony Bibbs and Vincent Furia MVCnPHP 3.0 allow remote attackers to execute arbitrary PHP code via a URL in the glConf[path_library] parameter to (1) BaseCommand.php, (2) BaseLoader.php, and (3) BaseView.php.
by Drago84
CVE-2006-4163 EXPLOITDB text VERIFIED
myWebland miniBloggie < 1.0 - Remote File Inclusion via fname Parameter
PHP remote file inclusion vulnerability in cls_fast_template.php in myWebland miniBloggie 1.0 and earlier allows remote attackers to execute arbitrary PHP code via a URL in the fname parameter. NOTE: another researcher was unable to find a way to execute code after including it via a URL. CVE analysis as of 20060816 was inconclusive
by sh3ll
CVE-2006-4130 EXPLOITDB text VERIFIED
Remository for Mambo < 3.25 - Remote Code Execution via mosConfig_absolute_path Parameter
PHP remote file inclusion vulnerability in admin.remository.php in the Remository Component (com_remository) 3.25 and earlier for Mambo and Joomla!, when register_globals is enabled, allows remote attackers to execute arbitrary PHP code via a URL in the mosConfig_absolute_path parameter.
by camino
CVE-2006-4156 EXPLOITDB text VERIFIED
pearlabs mafia_moblog < 6 - Remote File Inclusion via pathtotemplate Parameter
PHP remote file inclusion vulnerability in big.php in pearlabs mafia moblog 6 and earlier allows remote attackers to execute arbitrary PHP code via a URL in the pathtotemplate parameter. NOTE: a third party claims that the researcher is incorrect, because template.php defines pathtotemplate before big.php uses pathtotemplate. CVE has not verified either claim, but during August 2006, the original researcher made several significant errors regarding this bug type
by sh3ll
CVE-2006-4161 EXPLOITDB text VERIFIED
xennobb < 2.1.0 - Directory Traversal via Avatar Gallery Category Parameter
Directory traversal vulnerability in the avatar_gallery action in profile.php in XennoBB 2.1.0 and earlier allows remote attackers to read arbitrary files via a .. (dot dot) in the category parameter.
by Chris Boulton
CVE-2006-4166 EXPLOITDB text VERIFIED
TinyWebGallery <= 1.5 - Remote File Inclusion via Image Parameter
PHP remote file inclusion vulnerability in TinyWebGallery 1.5 and earlier allows remote attackers to execute arbitrary PHP code via a URL in the image parameter to (1) image.php or (2) image.php2.
by Mehmet Ince
CVE-2006-4437 EXPLOITDB text VERIFIED
Tagger LE - Remote Code Execution via Query String Eval Injection
Eval injection vulnerability in Tagger LE allows remote attackers to execute arbitrary PHP code via the query string in (1) tags.php, (2) sign.php, and (3) admin/index.php.
by Morgan
CVE-2006-4122 EXPLOITDB text VERIFIED
Simple one-file guestbook <1.0 - Auth Bypass
Simple one-file guestbook 1.0 and earlier allows remote attackers to bypass authentication and delete guestbook entries via a modified id parameter to guestbook.php.
by omnipresent
CVE-2006-4121 EXPLOITDB text VERIFIED
See-Commerce 1.0.625 - Remote File Inclusion via owimg.php3 path Parameter
PHP remote file inclusion vulnerability in owimg.php3 in See-Commerce 1.0.625 and earlier allows remote attackers to execute arbitrary PHP code via a URL in the path parameter.
by Drago84