Exploitdb Exploits

31,394 exploits tracked across all sources.

Sort: Activity Stars
CVE-2006-1007 EXPLOITDB text VERIFIED
N8cms 1.1 and 1.2 - SQL Injection via dir and page_id Parameters
Multiple SQL injection vulnerabilities in N8cms 1.1 and 1.2 allow remote attackers to execute arbitrary SQL commands via the (1) dir and (2) page_id parameter to index.php.
by Liz0ziM
CVE-2006-1008 EXPLOITDB text VERIFIED
N8cms 1.1-1.2 - Cross-Site Scripting via dir, page_id, and userid Parameters
Multiple cross-site scripting (XSS) vulnerabilities in N8cms 1.1 and 1.2 allow remote attackers to inject arbitrary web script or HTML via the (1) dir and (2) page_id parameter to (a) index.php and (3) userid parameter to (b) mailto.php. NOTE: it is possible that issues 1 and 2 are resultant from SQL injection.
by Liz0ziM
CVE-2006-0972 EXPLOITDB text VERIFIED
Fantastic News 2.1.1 - SQL Injection via News.php Page Parameter
SQL injection vulnerability in news.php in Tony Baird Fantastic News 2.1.1 allows remote attackers to execute arbitrary SQL commands via the page parameter. NOTE: the category vector is already covered by CVE-2005-3846.
by SAUDI
CVE-2006-0944 EXPLOITDB text VERIFIED
Archangel Weblog 0.90.02 - Auth Bypass
Archangel Weblog 0.90.02 allows remote attackers to bypass authentication by setting the ba_admin cookie to 1.
by KingOfSka
CVE-2006-0903 EXPLOITDB text VERIFIED
MySQL <= 5.0.18 - Log Bypass via NULL Character in mysql_real_query
MySQL 5.0.18 and earlier allows local users to bypass logging mechanisms via SQL queries that contain the NULL character, which are not properly handled by the mysql_real_query function. NOTE: this issue was originally reported for the mysql_query function, but the vendor states that since mysql_query expects a null character, this is not an issue for mysql_query.
by 1dt.w0lf
CVE-2006-1021 EXPLOITDB text VERIFIED
PeHePe Membership Management System 3 - Cross-Site Scripting via sol_menu.php kuladi Parameter
Cross-site scripting (XSS) vulnerability in sol_menu.php in PeHePe Uyelik Sistemi (aka PeHePe MemberShip Management System) 3 allows remote attackers to inject arbitrary web script or HTML via the kuladi parameter ($kul_adi variable).
by Yunus Emre Yilmaz
CVE-2006-0976 EXPLOITDB text VERIFIED
SPiD 1.3.1 - Path Traversal via scan_lang_insert.php lang Parameter
Directory traversal vulnerability in scan_lang_insert.php in Boris Herbiniere-Seve SPiD 1.3.1 allows remote attackers to read arbitrary files via the lang parameter.
by NSA Group
EIP-2026-110862 EXPLOITDB text VERIFIED
PHP-Nuke 7.8 - 'Mainfile.php' SQL Injection
by waraxe
CVE-2006-0936 EXPLOITDB text VERIFIED
Free Host Shop Website Generator 3.3 - RCE
Free Host Shop Website Generator 3.3 allows remote authenticated users with administrative privileges to upload and execute arbitrary files via a formname parameter with a filename containing a dangerous file extension and a trailing %00.
by NSA Group
CVE-2006-0939 EXPLOITDB text VERIFIED
DCI-Taskeen 1.03 - SQL Injection via id or action Parameter
SQL injection vulnerability in DCI-Taskeen 1.03 allows remote attackers to execute arbitrary SQL commands via the (1) id or (2) action parameter to (a) basket.php, or (3) id or (4) page parameter to (b) cat.php.
by Linux_Drox
CVE-2006-0939 EXPLOITDB text VERIFIED
DCI-Taskeen 1.03 - SQL Injection via id or action Parameter
SQL injection vulnerability in DCI-Taskeen 1.03 allows remote attackers to execute arbitrary SQL commands via the (1) id or (2) action parameter to (a) basket.php, or (3) id or (4) page parameter to (b) cat.php.
by Linux_Drox
CVE-2006-0906 EXPLOITDB text VERIFIED
D3Jeeb Pro 3 - SQL Injection via catid Parameter
SQL injection vulnerability in D3Jeeb Pro 3 allows remote attackers to execute arbitrary SQL commands via the catid parameter in (1) fastlinks.php and (2) catogary.php.
by SAUDI
CVE-2006-0906 EXPLOITDB text VERIFIED
D3Jeeb Pro 3 - SQL Injection via catid Parameter
SQL injection vulnerability in D3Jeeb Pro 3 allows remote attackers to execute arbitrary SQL commands via the catid parameter in (1) fastlinks.php and (2) catogary.php.
by SAUDI
CVE-2006-0946 EXPLOITDB text VERIFIED
Thomson SpeedTouch - Cross-Site Scripting via LocalNetwork Name Parameter
Cross-site scripting (XSS) vulnerability in Thomson SpeedTouch modems running firmware 5.3.2.6.0 allows remote attackers to inject arbitrary web script or HTML via the name parameter to the LocalNetwork page.
by Preben Nylokken
CVE-2006-0947 EXPLOITDB text VERIFIED
Thomson SpeedTouch <5.3.2.6.0 - Privilege Escalation
Thomson SpeedTouch modem running firmware 5.3.2.6.0 allows remote attackers to create users that cannot be deleted via scripting code in the "31" parameter in a NewUser function, which is not filtered by the modem when creating the account, but cannot be deleted by the administrator, possibly due to cleansing that occurs in the administrator interface.
by Preben Nylokken
CVE-2006-0974 EXPLOITDB text VERIFIED
bttlxeforum 2.0 - Cross-Site Scripting via failure.asp err_txt Parameter
Cross-site scripting (XSS) vulnerability in failure.asp in Battleaxe bttlxeForum 2.0 allows remote attackers to inject arbitrary web script or HTML via the err_txt parameter.
by rUnViRuS
CVE-2006-1323 EXPLOITDB text VERIFIED
WinHKI < 1.6 - Directory Traversal and Arbitrary File Write via Archive Extraction
Directory traversal vulnerability in WinHKI 1.6 and earlier allows user-assisted attackers to overwrite arbitrary files via a (1) RAR, (2) TAR, (3) ZIP, or (4) TAR.GZ archive with a file whose file name contains ".." sequences.
by raphael.huck@free.fr
CVE-2006-0835 EXPLOITDB text VERIFIED
MitriDAT Web Calendar Pro - SQL Injection via dropbase.php tabls Parameter
SQL injection vulnerability in dropbase.php in MitriDAT Web Calendar Pro allows remote attackers to modify internal SQL queries and cause a denial of service (inaccessible database) via the tabls parameter.
by ReZEN
CVE-2006-0933 EXPLOITDB text VERIFIED
PHPX 3.5.9 - Cross-Site Scripting via XCode URL Tag
Cross-site scripting (XSS) vulnerability in PHPX 3.5.9 allows remote attackers to inject arbitrary web script or HTML via a javascript URI in a url XCode tag in a posted message. NOTE: the provenance of this information is unknown; the details are obtained solely from third party information.
by Thomas Pollet
CVE-2006-0920 EXPLOITDB text VERIFIED
Oi! Email Marketing System 3.0 - Info Disclosure
Oi! Email Marketing System 3.0 (aka Oi! 3) stores the server's FTP password in cleartext on a Configuration web page, which allows local users with superadministrator privileges, or attackers who have obtained access to the web page, to view the password.
by h4cky0u
CVE-2006-0894 EXPLOITDB text VERIFIED
NOCC Webmail 1.0 - Cross-Site Scripting via Multiple Parameters
Multiple cross-site scripting (XSS) vulnerabilities in NOCC Webmail 1.0 allow remote attackers to inject arbitrary web script or HTML via (1) the html_error_occurred parameter in error.php, (2) html_filter_select parameter in filter_prefs.php, (3) html_no_mail parameter in no_mail.php, the (4) page_line, (5) prev, and (6) next parameters in html_bottom_table.php, and the (7) _SESSION['nocc_theme'] parameter in footer.php.
by rgod
CVE-2006-0894 EXPLOITDB text VERIFIED
NOCC Webmail 1.0 - Cross-Site Scripting via Multiple Parameters
Multiple cross-site scripting (XSS) vulnerabilities in NOCC Webmail 1.0 allow remote attackers to inject arbitrary web script or HTML via (1) the html_error_occurred parameter in error.php, (2) html_filter_select parameter in filter_prefs.php, (3) html_no_mail parameter in no_mail.php, the (4) page_line, (5) prev, and (6) next parameters in html_bottom_table.php, and the (7) _SESSION['nocc_theme'] parameter in footer.php.
by rgod
CVE-2006-0894 EXPLOITDB text VERIFIED
NOCC Webmail 1.0 - Cross-Site Scripting via Multiple Parameters
Multiple cross-site scripting (XSS) vulnerabilities in NOCC Webmail 1.0 allow remote attackers to inject arbitrary web script or HTML via (1) the html_error_occurred parameter in error.php, (2) html_filter_select parameter in filter_prefs.php, (3) html_no_mail parameter in no_mail.php, the (4) page_line, (5) prev, and (6) next parameters in html_bottom_table.php, and the (7) _SESSION['nocc_theme'] parameter in footer.php.
by rgod
CVE-2006-0894 EXPLOITDB text VERIFIED
NOCC Webmail 1.0 - Cross-Site Scripting via Multiple Parameters
Multiple cross-site scripting (XSS) vulnerabilities in NOCC Webmail 1.0 allow remote attackers to inject arbitrary web script or HTML via (1) the html_error_occurred parameter in error.php, (2) html_filter_select parameter in filter_prefs.php, (3) html_no_mail parameter in no_mail.php, the (4) page_line, (5) prev, and (6) next parameters in html_bottom_table.php, and the (7) _SESSION['nocc_theme'] parameter in footer.php.
by rgod
CVE-2006-0927 EXPLOITDB text VERIFIED
JGS-XA JGS-Gallery Addon <= 4.0.0 - Cross-Site Scripting via userid and katid Parameters
Multiple cross-site scripting (XSS) vulnerabilities in the JGS-XA JGS-Gallery Addon 4.0.0 and earlier for Woltlab Burning Board (wBB) 2.x allow remote attackers to inject arbitrary web script or HTML via the (1) userid parameter in (a) jgs_galerie_slideshow.php and (b) jgs_galerie_scroll.php, and the (2) katid parameter in (c) jgs_galerie_slideshow.php.
by nuker