Exploitdb Exploits

31,394 exploits tracked across all sources.

Sort: Activity Stars
CVE-2006-2067 EXPLOITDB text VERIFIED
mkportal 1.1 - SQL Injection via userid Parameter
SQL injection vulnerability in vb_board_functions.php in MKPortal 1.1, as used with vBulletin 3.5.4 and earlier, allows remote attackers to execute arbitrary SQL commands via the userid parameter.
by Mustafa Can Bjorn IPEKCI
CVE-2006-1995 EXPLOITDB text VERIFIED
Scry Gallery 1.1 - Directory Traversal via p Parameter
Directory traversal vulnerability in index.php in Scry Gallery 1.1 allows remote attackers to read arbitrary files via ".." sequences in the p parameter, which is not properly sanitized due to an rtrim function call with the arguments in the wrong order.
by Morocco Security Team
CVE-2006-2016 EXPLOITDB text VERIFIED
phpldapadmin < 0.9.8 - Cross-Site Scripting via Multiple Parameters
Multiple cross-site scripting (XSS) vulnerabilities in phpLDAPadmin 0.9.8 and earlier allow remote attackers to inject arbitrary web script or HTML via the (1) dn parameter in (a) compare_form.php, (b) copy_form.php, (c) rename_form.php, (d) template_engine.php, and (e) delete_form.php; (2) scope parameter in (f) search.php; and (3) Container DN, (4) Machine Name, and (5) UID Number fields in (g) template_engine.php.
by r0t
CVE-2006-2016 EXPLOITDB text VERIFIED
phpldapadmin < 0.9.8 - Cross-Site Scripting via Multiple Parameters
Multiple cross-site scripting (XSS) vulnerabilities in phpLDAPadmin 0.9.8 and earlier allow remote attackers to inject arbitrary web script or HTML via the (1) dn parameter in (a) compare_form.php, (b) copy_form.php, (c) rename_form.php, (d) template_engine.php, and (e) delete_form.php; (2) scope parameter in (f) search.php; and (3) Container DN, (4) Machine Name, and (5) UID Number fields in (g) template_engine.php.
by r0t
CVE-2006-2016 EXPLOITDB text VERIFIED
phpldapadmin < 0.9.8 - Cross-Site Scripting via Multiple Parameters
Multiple cross-site scripting (XSS) vulnerabilities in phpLDAPadmin 0.9.8 and earlier allow remote attackers to inject arbitrary web script or HTML via the (1) dn parameter in (a) compare_form.php, (b) copy_form.php, (c) rename_form.php, (d) template_engine.php, and (e) delete_form.php; (2) scope parameter in (f) search.php; and (3) Container DN, (4) Machine Name, and (5) UID Number fields in (g) template_engine.php.
by r0t
CVE-2006-2016 EXPLOITDB text VERIFIED
phpldapadmin < 0.9.8 - Cross-Site Scripting via Multiple Parameters
Multiple cross-site scripting (XSS) vulnerabilities in phpLDAPadmin 0.9.8 and earlier allow remote attackers to inject arbitrary web script or HTML via the (1) dn parameter in (a) compare_form.php, (b) copy_form.php, (c) rename_form.php, (d) template_engine.php, and (e) delete_form.php; (2) scope parameter in (f) search.php; and (3) Container DN, (4) Machine Name, and (5) UID Number fields in (g) template_engine.php.
by r0t
CVE-2006-2016 EXPLOITDB text VERIFIED
phpldapadmin < 0.9.8 - Cross-Site Scripting via Multiple Parameters
Multiple cross-site scripting (XSS) vulnerabilities in phpLDAPadmin 0.9.8 and earlier allow remote attackers to inject arbitrary web script or HTML via the (1) dn parameter in (a) compare_form.php, (b) copy_form.php, (c) rename_form.php, (d) template_engine.php, and (e) delete_form.php; (2) scope parameter in (f) search.php; and (3) Container DN, (4) Machine Name, and (5) UID Number fields in (g) template_engine.php.
by r0t
CVE-2006-1994 EXPLOITDB text VERIFIED
dForum <1.5 - Remote Code Execution
PHP remote file inclusion vulnerability in dForum 1.5 and earlier allows remote attackers to execute arbitrary PHP code via a URL in the DFORUM_PATH parameter to (1) about.php, (2) admin.php, (3) anmelden.php, (4) losethread.php, (5) config.php, (6) delpost.php, (7) delthread.php, (8) dfcode.php, (9) download.php, (10) editanoc.php, (11) forum.php, (12) login.php, (13) makethread.php, (14) menu.php, (15) newthread.php, (16) openthread.php, (17) overview.php, (18) post.php, (19) suchen.php, (20) user.php, (21) userconfig.php, (22) userinfo.php, and (23) verwalten.php.
by nukedx
CVE-2006-2020 EXPLOITDB text VERIFIED
Asterisk@Home <2.8 - Info Disclosure
Asterisk Recording Interface (ARI) in Asterisk@Home before 2.8 stores recordings/includes/main.conf under the web document root with insufficient access control, which allows remote attackers to obtain password information.
by Francois Harvey
CVE-2006-1931 EXPLOITDB text VERIFIED
Ruby < 1.8.2 - Denial of Service via HTTP/XMLRPC Server Blocking Sockets
The HTTP/XMLRPC server in Ruby before 1.8.2 uses blocking sockets, which allows attackers to cause a denial of service (blocked connections) via a large amount of data.
by Tanaka Akira
CVE-2006-1980 EXPLOITDB text VERIFIED
W2B Online Banking - Cross-Site Scripting via Query String or SID/ilang Parameters
Cross-site scripting (XSS) vulnerability in W2B Online Banking allows remote attackers to inject arbitrary web script or HTML via the (1) query string, (2) SID parameter, or (3) ilang parameter.
by r0t
CVE-2006-2037 EXPLOITDB text VERIFIED
Thwboard 3.0 Beta 2.84 - Cross-Site Scripting via Navpath Parameter
Cross-site scripting (XSS) vulnerability in index.php in Thwboard 3.0 Beta 2.84 allows remote attackers to inject arbitrary web script or HTML via the navpath parameter.
by CrAzY CrAcKeR
CVE-2006-1979 EXPLOITDB text VERIFIED
Manic Web MWGuest 2.1.0 - Cross-Site Scripting via Homepage Parameter
Cross-site scripting (XSS) vulnerability in mwguest.php in Manic Web MWGuest 2.1.0 allows remote attackers to inject arbitrary web script or HTML via the homepage parameter.
by Aliaksandr Hartsuyeu
CVE-2006-1929 EXPLOITDB text VERIFIED
i-rater Platinum - Remote File Inclusion via include_path Parameter
PHP remote file inclusion vulnerability in include/common.php in I-Rater Platinum allows remote attackers to execute arbitrary PHP code via a URL in the include_path parameter.
by r0t
EIP-2026-104839 EXPLOITDB text VERIFIED
4homepages 4Images 1.7 - 'member.php' Cross-Site Scripting
by Qex
CVE-2006-1982 EXPLOITDB text VERIFIED
Mac OS X - Heap-Based Buffer Overflow via Crafted TIFF Images
Heap-based buffer overflow in the LZWDecodeVector function in Mac OS X before 10.4.6, as used in applications that use ImageIO or AppKit, allows remote attackers to execute arbitrary code via crafted TIFF images.
by Tom Ferris
CVE-2006-1985 EXPLOITDB text VERIFIED
Safari - Heap-Based Buffer Overflow via Long Path Names in Archive
Heap-based buffer overflow in BOM BOMArchiveHelper 10.4 (6.3) Build 312, as used in Mac OS X 10.4.6 and earlier, allows user-assisted attackers to execute arbitrary code via a crafted archive (such as ZIP) that contains long path names, which triggers an error in the BOMStackPop function.
by Tom Ferris
EIP-2026-100881 EXPLOITDB text VERIFIED
Portal Pack 6.0 - Multiple Cross-Site Scripting Vulnerabilities
by r0t
CVE-2006-1965 EXPLOITDB text VERIFIED
aasi media Net Clubs Pro - Cross-Site Scripting via Multiple Parameters
Multiple cross-site scripting (XSS) vulnerabilities in aasi media Net Clubs Pro 4.0 and earlier allow remote attackers to inject arbitrary web script or HTML via the (1) onuser, (2) pass, (3) chatsys, (4) room, (5) username, and (6) to parameters in (a) sendim.cgi; the (7) username parameter in (b) imessage.cgi; the (8) password parameter in (c) login.cgi; and the (9) cat_id parameter in (d) viewcat.cgi.
by r0t
CVE-2006-1965 EXPLOITDB text VERIFIED
aasi media Net Clubs Pro - Cross-Site Scripting via Multiple Parameters
Multiple cross-site scripting (XSS) vulnerabilities in aasi media Net Clubs Pro 4.0 and earlier allow remote attackers to inject arbitrary web script or HTML via the (1) onuser, (2) pass, (3) chatsys, (4) room, (5) username, and (6) to parameters in (a) sendim.cgi; the (7) username parameter in (b) imessage.cgi; the (8) password parameter in (c) login.cgi; and the (9) cat_id parameter in (d) viewcat.cgi.
by r0t
CVE-2006-1965 EXPLOITDB text VERIFIED
aasi media Net Clubs Pro - Cross-Site Scripting via Multiple Parameters
Multiple cross-site scripting (XSS) vulnerabilities in aasi media Net Clubs Pro 4.0 and earlier allow remote attackers to inject arbitrary web script or HTML via the (1) onuser, (2) pass, (3) chatsys, (4) room, (5) username, and (6) to parameters in (a) sendim.cgi; the (7) username parameter in (b) imessage.cgi; the (8) password parameter in (c) login.cgi; and the (9) cat_id parameter in (d) viewcat.cgi.
by r0t
CVE-2006-1955 EXPLOITDB text VERIFIED
RechnungsZentrale V2 1.1.3 - Remote File Inclusion via rootpath Parameter
PHP remote file inclusion vulnerability in authent.php4 in Nicolas Fischer (aka NFec) RechnungsZentrale V2 1.1.3, and possibly earlier versions, allows remote attackers to execute arbitrary PHP code via a URL in the rootpath parameter.
by GroundZero Security
CVE-2006-1954 EXPLOITDB text VERIFIED
RechnungsZentrale V2 1.1.3 - SQL Injection via User Field
SQL injection vulnerability in authent.php4 in Nicolas Fischer (aka NFec) RechnungsZentrale V2 1.1.3, and possibly earlier versions, allows remote attackers to execute arbitrary SQL commands via the User field.
by GroundZero Security
CVE-2006-1926 EXPLOITDB text VERIFIED
ThWboard <= 2.84 beta 3 - SQL Injection via showtopic.php pagenum Parameter
SQL injection vulnerability in showtopic.php in ThWboard 2.84 beta 3 and earlier allows remote attackers to execute arbitrary SQL commands via the pagenum parameter.
by Qex
CVE-2006-1947 EXPLOITDB text VERIFIED
NicPlex Plexum < X5 - SQL Injection via pagesize maxrec or startpos Parameter
Multiple SQL injection vulnerabilities in plexum.php in NicPlex Plexum X5 and earlier allow remote attackers to execute arbitrary SQL commands via the (1) pagesize, (2) maxrec, and (3) startpos parameters.
by r0t