Exploitdb Exploits

31,394 exploits tracked across all sources.

Sort: Activity Stars
EIP-2026-105075 EXPLOITDB text VERIFIED
Alex DownloadEngine 1.4.1 - 'comments.php' SQL Injection
by ajann
CVE-2006-2855 EXPLOITDB text VERIFIED
xueBook 1.0 - SQL Injection via Start Parameter
SQL injection vulnerability in index.php in xueBook 1.0 allows remote attackers to execute arbitrary SQL commands via the start parameter.
by SpC-x
CVE-2006-2860 EXPLOITDB text VERIFIED
Webspotblogging 3.0.1 - Remote Code Execution via Path Parameter in Multiple Scripts
PHP remote file inclusion vulnerability in Webspotblogging 3.0.1 allows remote attackers to execute arbitrary PHP code via a URL in the path parameter to (1) inc/logincheck.inc.php, (2) inc/adminheader.inc.php, (3) inc/global.php, or (4) inc/mainheader.inc.php. NOTE: some of these vectors were also reported for 3.0 in a separate disclosure.
by Kacper
CVE-2006-2854 EXPLOITDB text VERIFIED
iBWd Guestbook 1.0 - SQL Injection via Offset Parameter
SQL injection vulnerability in index.php in iBWd Guestbook 1.0 allows remote attackers to execute arbitrary SQL commands via the offset parameter.
by SpC-x
CVE-2006-7052 EXPLOITDB text VERIFIED
DotWidget For Articles 0.2 - Remote File Inclusion via Multiple Parameters
Multiple PHP remote file inclusion vulnerabilities in DotWidget For Articles (dotwidgeta) 0.2 allow remote attackers to execute arbitrary code via a URL in the (1) file_path parameter to (a) index.php, (b) showcatpicks.php, and (c) showarticle.php; and the (2) admin_header_file and (3) admin_footer_file parameters to (d) admin/authors.php, (e) admin/index.php, (f) admin/categories.php, (g) admin/editconfig.php, and (h) admin/articles.php.
by SwEET-DeViL
CVE-2006-7052 EXPLOITDB text VERIFIED
DotWidget For Articles 0.2 - Remote File Inclusion via Multiple Parameters
Multiple PHP remote file inclusion vulnerabilities in DotWidget For Articles (dotwidgeta) 0.2 allow remote attackers to execute arbitrary code via a URL in the (1) file_path parameter to (a) index.php, (b) showcatpicks.php, and (c) showarticle.php; and the (2) admin_header_file and (3) admin_footer_file parameters to (d) admin/authors.php, (e) admin/index.php, (f) admin/categories.php, (g) admin/editconfig.php, and (h) admin/articles.php.
by SwEET-DeViL
CVE-2006-7052 EXPLOITDB text VERIFIED
DotWidget For Articles 0.2 - Remote File Inclusion via Multiple Parameters
Multiple PHP remote file inclusion vulnerabilities in DotWidget For Articles (dotwidgeta) 0.2 allow remote attackers to execute arbitrary code via a URL in the (1) file_path parameter to (a) index.php, (b) showcatpicks.php, and (c) showarticle.php; and the (2) admin_header_file and (3) admin_footer_file parameters to (d) admin/authors.php, (e) admin/index.php, (f) admin/categories.php, (g) admin/editconfig.php, and (h) admin/articles.php.
by SwEET-DeViL
CVE-2006-7052 EXPLOITDB text VERIFIED
DotWidget For Articles 0.2 - Remote File Inclusion via Multiple Parameters
Multiple PHP remote file inclusion vulnerabilities in DotWidget For Articles (dotwidgeta) 0.2 allow remote attackers to execute arbitrary code via a URL in the (1) file_path parameter to (a) index.php, (b) showcatpicks.php, and (c) showarticle.php; and the (2) admin_header_file and (3) admin_footer_file parameters to (d) admin/authors.php, (e) admin/index.php, (f) admin/categories.php, (g) admin/editconfig.php, and (h) admin/articles.php.
by SwEET-DeViL
CVE-2006-7052 EXPLOITDB text VERIFIED
DotWidget For Articles 0.2 - Remote File Inclusion via Multiple Parameters
Multiple PHP remote file inclusion vulnerabilities in DotWidget For Articles (dotwidgeta) 0.2 allow remote attackers to execute arbitrary code via a URL in the (1) file_path parameter to (a) index.php, (b) showcatpicks.php, and (c) showarticle.php; and the (2) admin_header_file and (3) admin_footer_file parameters to (d) admin/authors.php, (e) admin/index.php, (f) admin/categories.php, (g) admin/editconfig.php, and (h) admin/articles.php.
by SwEET-DeViL
CVE-2006-7052 EXPLOITDB text VERIFIED
DotWidget For Articles 0.2 - Remote File Inclusion via Multiple Parameters
Multiple PHP remote file inclusion vulnerabilities in DotWidget For Articles (dotwidgeta) 0.2 allow remote attackers to execute arbitrary code via a URL in the (1) file_path parameter to (a) index.php, (b) showcatpicks.php, and (c) showarticle.php; and the (2) admin_header_file and (3) admin_footer_file parameters to (d) admin/authors.php, (e) admin/index.php, (f) admin/categories.php, (g) admin/editconfig.php, and (h) admin/articles.php.
by SwEET-DeViL
CVE-2006-7052 EXPLOITDB text VERIFIED
DotWidget For Articles 0.2 - Remote File Inclusion via Multiple Parameters
Multiple PHP remote file inclusion vulnerabilities in DotWidget For Articles (dotwidgeta) 0.2 allow remote attackers to execute arbitrary code via a URL in the (1) file_path parameter to (a) index.php, (b) showcatpicks.php, and (c) showarticle.php; and the (2) admin_header_file and (3) admin_footer_file parameters to (d) admin/authors.php, (e) admin/index.php, (f) admin/categories.php, (g) admin/editconfig.php, and (h) admin/articles.php.
by SwEET-DeViL
CVE-2006-2863 EXPLOITDB text VERIFIED
CS-Cart 1.3.3 - Remote File Inclusion via classes_dir Parameter
PHP remote file inclusion vulnerability in class.cs_phpmailer.php in CS-Cart 1.3.3 allows remote attackers to execute arbitrary PHP code via a URL in the classes_dir parameter.
by Kacper
CVE-2006-2864 EXPLOITDB text VERIFIED
BlueShoes Framework < 4.6 - Remote File Inclusion via Multiple Parameters
Multiple PHP remote file inclusion vulnerabilities in BlueShoes Framework 4.6 allow remote attackers to execute arbitrary PHP code via a URL in the (1) APP[path][applications] parameter to (a) Bs_Faq.class.php, (2) APP[path][core] parameter to (b) fileBrowserInner.php, (c) file.php, and (d) viewer.php, and (e) Bs_ImageArchive.class.php, (3) GLOBALS[APP][path][core] parameter to (f) Bs_Ml_User.class.php, or (4) APP[path][plugins] parameter to (g) Bs_Wse_Profile.class.php.
by Kacper
EIP-2026-100501 EXPLOITDB text VERIFIED
ProPublish 2.0 - 'catid' SQL Injection
by FarhadKey
CVE-2006-2844 EXPLOITDB text VERIFIED
Redaxo 3.0 - Remote File Inclusion via REX[INCLUDE_PATH] Parameter
Multiple PHP remote file inclusion vulnerabilities in Redaxo 3.0 allow remote attackers to execute arbitrary PHP code via a URL in the REX[INCLUDE_PATH] parameter to (1) simple_user/pages/index.inc.php and (2) stats/pages/index.inc.php.
by beford
CVE-2006-2843 EXPLOITDB text VERIFIED
Redaxo 2.7.4 - Remote File Inclusion via REX[INCLUDE_PATH] Parameter
PHP remote file inclusion vulnerability in Redaxo 2.7.4 allows remote attackers to execute arbitrary PHP code via a URL in the (1) REX[INCLUDE_PATH] parameter in (a) addons/import_export/pages/index.inc.php and (b) pages/community.inc.php.
by beford
EIP-2026-112555 EXPLOITDB text VERIFIED
TAL RateMyPic 1.0 - Multiple Input Validation Vulnerabilities
by Luny
CVE-2006-2842 EXPLOITDB text VERIFIED
SquirrelMail < 1.4.6 - Remote File Inclusion via Plugin Array Parameter
PHP remote file inclusion vulnerability in functions/plugin.php in SquirrelMail 1.4.6 and earlier, if register_globals is enabled and magic_quotes_gpc is disabled, allows remote attackers to execute arbitrary PHP code via a URL in the plugins array parameter. NOTE: this issue has been disputed by third parties, who state that Squirrelmail provides prominent warnings to the administrator when register_globals is enabled. Since the varieties of administrator negligence are uncountable, perhaps this type of issue should not be included in CVE. However, the original developer has posted a security advisory, so there might be relevant real-world environments under which this vulnerability is applicable
by brokejunker
CVE-2006-2845 EXPLOITDB text VERIFIED
Redaxo 3.0-3.2 - Remote File Inclusion via REX[INCLUDE_PATH] Parameter
PHP remote file inclusion vulnerability in Redaxo 3.0 up to 3.2 allows remote attackers to execute arbitrary PHP code via a URL in the REX[INCLUDE_PATH] parameter to image_resize/pages/index.inc.php.
by beford
EIP-2026-111419 EXPLOITDB text VERIFIED
Portix-PHP 2-0.3.2 Portal - Multiple Cross-Site Scripting Vulnerabilities
by SpC-x
CVE-2006-2865 EXPLOITDB text VERIFIED
phpBB 2 - Remote File Inclusion via Template Page Parameter
PHP remote file inclusion vulnerability in template.php in phpBB 2 allows remote attackers to execute arbitrary PHP code via a URL in the page parameter. NOTE: followup posts have disputed this issue, stating that template.php does not appear in phpBB and does not use a $page variable. It is possible that this is a site-specific vulnerability, or an issue in a mod
by Canberx
CVE-2006-2828 EXPLOITDB text VERIFIED
PHP-Nuke - Remote PHP File Inclusion via phpbb_root_path Parameter Overwrite
Global variable overwrite vulnerability in PHP-Nuke allows remote attackers to conduct remote PHP file inclusion attacks via a modified phpbb_root_path parameter to the admin scripts (1) index.php, (2) admin_ug_auth.php, (3) admin_board.php, (4) admin_disallow.php, (5) admin_forumauth.php, (6) admin_groups.php, (7) admin_ranks.php, (8) admin_styles.php, (9) admin_user_ban.php, (10) admin_words.php, (11) admin_avatar.php, (12) admin_db_utilities.php, (13) admin_forum_prune.php, (14) admin_forums.php, (15) admin_mass_email.php, (16) admin_smilies.php, (17) admin_ug_auth.php, and (18) admin_users.php, which overwrites $phpbb_root_path when the import_request_variables function is executed after $phpbb_root_path has been initialized to a static value.
by ddoshomo
CVE-2006-2803 EXPLOITDB text VERIFIED
PHP ManualMaker 1.0 - Cross-Site Scripting via id Parameter or Search/Comment Fields
Multiple cross-site scripting (XSS) vulnerabilities in PHP ManualMaker 1.0 allows remote attackers to inject arbitrary web script or HTML via the (1) id parameter to index.php, (2) search field (possibly the s parameter), or (3) comment field.
by Luny
CVE-2006-2811 EXPLOITDB text VERIFIED
Cantico Ovidentia 5.8.0 - Remote File Inclusion via babInstallPath Parameter
Multiple PHP remote file inclusion vulnerabilities in Cantico Ovidentia 5.8.0 allow remote attackers to execute arbitrary PHP code via a URL in the babInstallPath parameter in (1) index.php, (2) topman.php, (3) approb.php, (4) vacadmb.php, (5) vacadma.php, (6) vacadm.php, (7) statart.php, (8) search.php, (9) posts.php, (10) options.php, (11) login.php, (12) frchart.php, (13) flbchart.php, (14) fileman.php, (15) faq.php, (16) event.php, (17) directory.php, (18) articles.php, (19) artedit.php, (20) calday.php, and additional unspecified PHP scripts. NOTE: the utilit.php vector is already covered by CVE-2005-1964.
by black-cod3
CVE-2006-2811 EXPLOITDB text VERIFIED
Cantico Ovidentia 5.8.0 - Remote File Inclusion via babInstallPath Parameter
Multiple PHP remote file inclusion vulnerabilities in Cantico Ovidentia 5.8.0 allow remote attackers to execute arbitrary PHP code via a URL in the babInstallPath parameter in (1) index.php, (2) topman.php, (3) approb.php, (4) vacadmb.php, (5) vacadma.php, (6) vacadm.php, (7) statart.php, (8) search.php, (9) posts.php, (10) options.php, (11) login.php, (12) frchart.php, (13) flbchart.php, (14) fileman.php, (15) faq.php, (16) event.php, (17) directory.php, (18) articles.php, (19) artedit.php, (20) calday.php, and additional unspecified PHP scripts. NOTE: the utilit.php vector is already covered by CVE-2005-1964.
by black-cod3