Exploitdb Exploits

31,394 exploits tracked across all sources.

Sort: Activity Stars
CVE-2006-2769 EXPLOITDB text VERIFIED
Snort 2.4.0-2.4.4 - HTTP Inspect Preprocessor Rule Bypass via Carriage Return
The HTTP Inspect preprocessor (http_inspect) in Snort 2.4.0 through 2.4.4 allows remote attackers to bypass "uricontent" rules via a carriage return (\r) after the URL and before the HTTP declaration.
by Blake Hartstein
CVE-2006-2629 EXPLOITDB text VERIFIED
Linux Kernel 2.6.15-2.6.17 - Denial of Service via Race Condition in Task Exit Handling
Race condition in Linux kernel 2.6.15 to 2.6.17, when running on SMP platforms, allows local users to cause a denial of service (crash) by creating and exiting a large number of tasks, then accessing the /proc entry of a task that is exiting, which causes memory corruption that leads to a failure in the prune_dcache function or a BUG_ON error in include/linux/list.h.
by Tony Griffiths
CVE-2006-2834 EXPLOITDB text VERIFIED
gnopaste 0.5.3 - Remote File Inclusion via root_path Parameter
PHP remote file inclusion vulnerability in includes/common.php in gnopaste 0.5.3 and earlier allows remote attackers to execute arbitrary PHP code via a URL in the root_path parameter.
by SmokeZ
CVE-2006-2689 EXPLOITDB text VERIFIED
eva-web < 2.1.2 - Cross-Site Scripting via Multiple Parameters
Multiple cross-site scripting (XSS) vulnerabilities in EVA-Web 2.1.2 and earlier allow remote attackers to inject arbitrary web script or HTML via the (1) debut_image parameter in (a) article-album.php3, (2) date parameter in (b) rubrique.php3, and the (3) perso and (4) aide parameters to (c) an unknown script, probably index.php.
by r0t
CVE-2006-2689 EXPLOITDB text VERIFIED
eva-web < 2.1.2 - Cross-Site Scripting via Multiple Parameters
Multiple cross-site scripting (XSS) vulnerabilities in EVA-Web 2.1.2 and earlier allow remote attackers to inject arbitrary web script or HTML via the (1) debut_image parameter in (a) article-album.php3, (2) date parameter in (b) rubrique.php3, and the (3) perso and (4) aide parameters to (c) an unknown script, probably index.php.
by r0t
CVE-2006-2689 EXPLOITDB text VERIFIED
eva-web < 2.1.2 - Cross-Site Scripting via Multiple Parameters
Multiple cross-site scripting (XSS) vulnerabilities in EVA-Web 2.1.2 and earlier allow remote attackers to inject arbitrary web script or HTML via the (1) debut_image parameter in (a) article-album.php3, (2) date parameter in (b) rubrique.php3, and the (3) perso and (4) aide parameters to (c) an unknown script, probably index.php.
by r0t
CVE-2006-2653 EXPLOITDB text VERIFIED
D-Link DSA-3100 AirSpot Gateway - Cross-Site Scripting via login_error.shtml uname Parameter
Cross-site scripting (XSS) vulnerability in login_error.shtml for D-Link DSA-3100 allows remote attackers to inject arbitrary HTML or web script via an encoded uname parameter.
by Jaime Blasco
CVE-2006-2635 EXPLOITDB text VERIFIED
Tikiwiki 1.9.x - Cross-Site Scripting via Malformed Nested HTML Tags
Multiple cross-site scripting (XSS) vulnerabilities in Tikiwiki (aka Tiki CMS/Groupware) 1.9.x allow remote attackers to inject arbitrary web script or HTML via malformed nested HTML tags such as "<scr<script>ipt>" in (1) offset and (2) days parameters in (a) tiki-lastchanges.php, the (3) find and (4) offset parameters in (b) tiki-orphan_pages.php, the (5) offset and (6) initial parameters in (c) tiki-listpages.php, and (7) an unspecified field in (d) tiki-remind_password.php; and allow remote authenticated users with admin privileges to inject arbitrary web script or HTML via (8) an unspecified field in a metatags action in (e) tiki-admin.php, the (9) offset parameter in (f) tiki-admin_rssmodules.php, the (10) offset and (11) max parameters in (g) tiki-syslog.php, the (12) numrows parameter in (h) tiki-adminusers.php, (13) an unspecified field in (i) tiki-adminusers.php, (14) an unspecified field in (j) tiki-admin_hotwords.php, unspecified fields in (15) "Assign new module" and (16) "Create new user module" in (k) tiki-admin_modules.php, (17) an unspecified field in "Add notification" in (l) tiki-admin_notifications.php, (18) the offset parameter in (m) tiki-admin_notifications.php, the (19) Name and (20) Dsn fields in (o) tiki-admin_dsn.php, the (21) offset parameter in (p) tiki-admin_content_templates.php, (22) an unspecified field in "Create new template" in (q) tiki-admin_content_templates.php, and the (23) offset parameter in (r) tiki-admin_chat.php.
by Blwood
CVE-2006-2728 EXPLOITDB text VERIFIED
Photoalbum B&W 1.3 - Cross-Site Scripting via Pic Parameter
Cross-site scripting (XSS) vulnerability in superalbum/index.php in Photoalbum B&W 1.3 allows remote attackers to inject arbitrary web script or HTML via the pic parameter.
by black-code
CVE-2006-2726 EXPLOITDB text VERIFIED
Fastpublish CMS 1.6.9.d - Remote File Inclusion via config[fsBase] Parameter
PHP remote file inclusion vulnerability in Fastpublish CMS 1.6.9.d allows remote attackers to include arbitrary files via the config[fsBase] parameter in (1) drucken.php, (2) drucken2.php, (3) email_an_benutzer.php, (4) rechnung.php, (5) suche/search.php and (6) adminbereich/admin.php.
by Kacper
CVE-2006-2732 EXPLOITDB text VERIFIED
Mini-Nuke < 2.3 - SQL Injection via Your_Account.asp Parameters
SQL injection vulnerability in Your_Account.asp in Mini-Nuke 2.3 and earlier allows remote attackers to execute arbitrary SQL commands via the (1) yas_1, (2) yas_2, and (3) yas_3 parameters.
by Mustafa Can Bjorn
CVE-2006-2648 EXPLOITDB text VERIFIED
ASPBB 0.52 - Cross-Site Scripting via Search Parameter
Cross-site scripting (XSS) vulnerability in perform_search.asp for ASPBB 0.52 and earlier allows remote attackers to inject arbitrary HTML or web script via the search parameter.
by Mustafa Can Bjorn
CVE-2006-2755 EXPLOITDB text VERIFIED
UBB.threads - Cross-Site Scripting via Debug Parameter
Cross-site scripting (XSS) vulnerability in index.php in UBBThreads 5.x and earlier allows remote attackers to inject arbitrary web script or HTML via the debug parameter, as demonstrated by stealing MD5 hashes of passwords.
by nukedx
CVE-2006-2740 EXPLOITDB text VERIFIED
Epicdesigns tinyBB < 0.3 - SQL Injection via Multiple Parameters
Multiple SQL injection vulnerabilities in Epicdesigns tinyBB 0.3 allow remote attackers to execute arbitrary SQL commands via the (1) q parameter in (a) forgot.php, and the (2) username and (3) password parameters in (b) login.php, and other unspecified vectors.
by nukedx
CVE-2006-2746 EXPLOITDB text VERIFIED
facile_interactive_web < 0.8.5 - Cross-Site Scripting via lang, mytheme, and myskin Parameters
Multiple cross-site scripting (XSS) vulnerabilities in F@cile Interactive Web 0.8.5 and earlier allow remote attackers to inject arbitrary web script or HTML via the (1) lang parameter in index.php, and the (2) mytheme and (3) myskin parameters in multiple "p-themes" index.inc.php files including (c) lowgraphic, (d) classic, (e) puzzle, (f) simple, and (g) ciao. NOTE: vectors 2 and 3 might be resultant from file inclusion issues.
by nukedx
CVE-2006-2650 EXPLOITDB text VERIFIED
CosmicShoppingCart - SQL Injection via search.php max Parameter
SQL injection vulnerability in cosmicshop/search.php in CosmicShoppingCart allows remote attackers to execute arbitrary SQL commands via the max parameter.
by Vympel
CVE-2006-2736 EXPLOITDB text VERIFIED
Blend Portal 1.2.0 - Remote File Inclusion via phpbb_root_path Parameter
PHP remote file inclusion vulnerability in blend_data/blend_common.php in Blend Portal 1.2.0, as used with phpBB when register_globals is enabled, allows remote attackers to execute arbitrary PHP code via a URL in the phpbb_root_path parameter. NOTE: This is a similar vulnerability to CVE-2006-2507.
by nukedx
CVE-2006-2735 EXPLOITDB text VERIFIED
Activity MOD Plus 1.1.0 - Remote File Inclusion via phpbb_root_path Parameter
PHP remote file inclusion vulnerability in language/lang_english/lang_activity.php in Activity MOD Plus (Amod) 1.1.0, as used with phpBB when register_globals is enabled, allows remote attackers to execute arbitrary PHP code via a URL in the phpbb_root_path parameter. NOTE: This is a similar vulnerability to CVE-2006-2507.
by nukedx
CVE-2006-2731 EXPLOITDB text VERIFIED
Enigma Haber < 4.3 - SQL Injection via Multiple Parameters
Multiple SQL injection vulnerabilities in Enigma Haber 4.3 and earlier allow remote attackers to execute arbitrary SQL commands via the (1) id parameter in (a) e_mesaj_yas.asp, (b) edi_haber.asp, and (c) haber_devam.asp; (2) hid parameter in (d) yazdir.asp and (e) yorum.asp, and the (3) e parameter in (f) arsiv.asp. NOTE: with administrator credentials, additional vectors exist including (4) yid parameter to (g) admin/y_admin.asp, (5) bid parameter to (h) admin/reklam_detay.asp, hid parameter to (i) admin/detay_yorum.asp and (j) admin/haber_sil.asp, (6) kid parameter to (k) admin/kategori_d.asp, (7) tur parameter to (l) admin/haber_ekle.asp, (8) s parameter to (m) admin/e_mesaj_yaz.asp, and id parameter to (n) admin/admin_sil.asp.
by nukedx
CVE-2006-2794 EXPLOITDB text VERIFIED
ASPSitem <= 2.0 - Unauthenticated Private Message Exposure via Hesabim.asp ID Parameter
Hesabim.asp in ASPSitem 2.0 and earlier allows remote attackers to read private messages of other users via a modified id parameter.
by nukedx
EIP-2026-111891 EXPLOITDB text VERIFIED
SaPHPLesson 2.0 - 'show.php' SQL Injection
by SwEET-DeViL
CVE-2006-2730 EXPLOITDB text VERIFIED
Hot Open Tickets <11012004_ver2f - RCE
PHP remote file inclusion vulnerability in admin/lib_action_step.php in Hot Open Tickets (HOT) 11012004_ver2f, when register_globals is enabled, allows remote attackers to include arbitrary files via the GLOBALS[CLASS_PATH] parameter. NOTE: this issue might be resultant from a global overwrite vulnerability.
by Kacper
EIP-2026-106154 EXPLOITDB text VERIFIED
CoolPHP - 'index.php' Cross-Site Scripting
by black-code
CVE-2006-7042 EXPLOITDB text VERIFIED
chipmunk_directory - Cross-Site Scripting via Start Parameter
Cross-site scripting (XSS) vulnerability in directory/index.php in Chipmunk directory allows remote attackers to inject arbitrary web script or HTML via the start parameter.
by black-code
EIP-2026-105830 EXPLOITDB text VERIFIED
Chipmunk 1.4 - 'Guestbook index.php' Cross-Site Scripting
by black-code