Text Exploits

31,346 exploits tracked across all sources.

Sort: Activity Stars
EIP-2026-110418 EXPLOITDB text
Ovidentia 8.4.3 - SQL Injection
by UserX
CVE-2019-13977 EXPLOITDB MEDIUM text
Ovidentia 8.4.3 - XSS
index.php in Ovidentia 8.4.3 has XSS via tg=groups, tg=maildoms&idx=create&userid=0&bgrp=y, tg=delegat, tg=site&idx=create, tg=site&item=4, tg=admdir&idx=mdb&id=1, tg=notes&idx=Create, tg=admfaqs&idx=Add, or tg=admoc&idx=addoc&item=.
by n3k00n3
CVSS 5.4
CVE-2019-8649 EXPLOITDB MEDIUM text VERIFIED
Apple Icloud < 7.13 - XSS
A logic issue existed in the handling of synchronous page loads. This issue was addressed with improved state management. This issue is fixed in iOS 12.4, macOS Mojave 10.14.6, tvOS 12.4, Safari 12.1.2, iTunes for Windows 12.9.6, iCloud for Windows 7.13, iCloud for Windows 10.6. Processing maliciously crafted web content may lead to universal cross site scripting.
by Google Security Research
CVSS 6.1
CVE-2019-25439 EXPLOITDB HIGH text
NoviSmart CMS - SQL Injection
NoviSmart CMS contains an SQL injection vulnerability that allows remote attackers to execute arbitrary SQL queries by injecting malicious code through the Referer HTTP header field. Attackers can craft requests with time-based SQL injection payloads in the Referer header to extract sensitive database information or cause denial of service.
by n1x_
CVSS 8.2
CVE-2019-8624 EXPLOITDB HIGH text VERIFIED
Apple Watchos < 5.3 - Out-of-Bounds Read
An out-of-bounds read was addressed with improved input validation. This issue is fixed in watchOS 5.3. A remote attacker may be able to leak memory.
by Google Security Research
CVSS 7.5
EIP-2026-104109 EXPLOITDB text
Trend Micro Deep Discovery Inspector IDS - Security Bypass
by hyp3rlinx
CVE-2019-12624 EXPLOITDB HIGH text
Cisco Ios XE < 3.11.xe - CSRF
A vulnerability in the web-based management interface of Cisco IOS XE New Generation Wireless Controller (NGWC) could allow an unauthenticated, remote attacker to conduct a cross-site request forgery (CSRF) attack and perform arbitrary actions on an affected device. The vulnerability is due to insufficient CSRF protections for the web-based management interface of the affected software. An attacker could exploit this vulnerability by persuading a user of the interface to follow a crafted link. A successful exploit could allow the attacker to perform arbitrary actions on an affected device by using a web browser and with the privileges of the user.
by Mehmet Onder
CVSS 8.8
CVE-2019-2107 EXPLOITDB HIGH text
Android -< 9 - RCE
In ihevcd_parse_pps of ihevcd_parse_headers.c, there is a possible out of bounds write due to a missing bounds check. This could lead to remote code execution with no additional execution privileges needed. User interaction is needed for exploitation. Product: Android. Versions: Android-7.0 Android-7.1.1 Android-7.1.2 Android-8.0 Android-8.1 Android-9. Android ID: A-130024844.
by Marcin Kozlowski
CVSS 8.8
CVE-2019-25483 EXPLOITDB HIGH text
Comtrend AR-5310 GE31-412SSG-C01_R10.A2pG039u.d24k - Command Injection
Comtrend AR-5310 GE31-412SSG-C01_R10.A2pG039u.d24k contains a restricted shell escape vulnerability that allows local users to bypass command restrictions by using the command substitution operator $( ). Attackers can inject arbitrary commands through the $( ) syntax when passed as arguments to allowed commands like ping to execute unrestricted shell access.
by AMRI Amine
CVSS 8.4
CVE-2019-14277 EXPLOITDB CRITICAL text
Axway SecureTransport <5.3-5.5 - Unauthenticated XXE
Axway SecureTransport 5.x through 5.3 (or 5.x through 5.5 with certain API configuration) is vulnerable to unauthenticated blind XML injection (and XXE) in the resetPassword functionality via the REST API. This vulnerability can lead to local file disclosure, DoS, or URI invocation attacks (i.e., SSRF with resultant remote code execution). NOTE: The vendor disputes this issues as not being a vulnerability because “All attacks that use external entities are blocked (no external DTD or file inclusions, no SSRF). The impact on confidentiality, integrity and availability is not proved on any version.
by Dominik Penner
CVSS 9.8
CVE-2019-25462 EXPLOITDB HIGH text
Web Ofisi Rent a Car v3 - SQL Injection
Web Ofisi Rent a Car v3 contains an SQL injection vulnerability that allows unauthenticated attackers to manipulate database queries by injecting SQL code through the 'klima' parameter. Attackers can send GET requests to with malicious 'klima' values to extract sensitive database information or cause denial of service.
by Ahmet Ümit BAYRAM
CVSS 8.2
CVE-2019-25461 EXPLOITDB HIGH text
Web Ofisi Platinum E-Ticaret v5 - SQL Injection
Web Ofisi Platinum E-Ticaret v5 contains an SQL injection vulnerability that allows unauthenticated attackers to manipulate database queries by injecting SQL code through the 'q' parameter. Attackers can send POST requests to the ajax/productsFilterSearch endpoint with malicious 'q' values using time-based blind SQL injection techniques to extract sensitive database information.
by Ahmet Ümit BAYRAM
CVSS 7.5
CVE-2019-25460 EXPLOITDB HIGH text
Web Ofisi Platinum E-Ticaret v5 - SQL Injection
Web Ofisi Platinum E-Ticaret v5 contains an SQL injection vulnerability that allows unauthenticated attackers to manipulate database queries by injecting SQL code through the 'q' GET parameter. Attackers can send requests to the arama endpoint with malicious 'q' values using time-based SQL injection techniques to extract sensitive database information.
by Ahmet Ümit BAYRAM
CVSS 7.5
CVE-2019-25459 EXPLOITDB CRITICAL text
Web Ofisi Emlak V2 - SQL Injection
Web Ofisi Emlak V2 contains multiple SQL injection vulnerabilities in the endpoint that allow unauthenticated attackers to manipulate database queries through GET parameters. Attackers can inject SQL code into parameters like emlak_durumu, emlak_tipi, il, ilce, kelime, and semt to extract sensitive database information or perform time-based blind SQL injection attacks.
by Ahmet Ümit BAYRAM
CVSS 9.8
CVE-2019-25458 EXPLOITDB CRITICAL text
Web Ofisi Firma Rehberi v1 - SQL Injection
Web Ofisi Firma Rehberi v1 contains an SQL injection vulnerability that allows unauthenticated attackers to manipulate database queries by injecting SQL code through GET parameters. Attackers can send requests to with malicious payloads in the 'il', 'kat', or 'kelime' parameters to extract sensitive database information or perform time-based blind SQL injection attacks.
by Ahmet Ümit BAYRAM
CVSS 9.8
CVE-2019-25457 EXPLOITDB HIGH text
Web Ofisi Firma v13 - SQL Injection
Web Ofisi Firma v13 contains an SQL injection vulnerability that allows unauthenticated attackers to manipulate database queries by injecting SQL code through the 'oz' array parameter. Attackers can send GET requests to category pages with malicious 'oz[]' values using time-based blind SQL injection payloads to extract sensitive database information.
by Ahmet Ümit BAYRAM
CVSS 7.5
CVE-2019-25456 EXPLOITDB CRITICAL text
Web Ofisi Emlak v2 - SQL Injection
Web Ofisi Emlak v2 contains an SQL injection vulnerability that allows unauthenticated attackers to manipulate database queries by injecting SQL code through the 'ara' GET parameter. Attackers can send requests to with time-based SQL injection payloads to extract sensitive database information or cause denial of service.
by Ahmet Ümit BAYRAM
CVSS 9.1
CVE-2019-25455 EXPLOITDB HIGH text
Web Ofisi E-Ticaret v3 - SQL Injection
Web Ofisi E-Ticaret v3 contains an SQL injection vulnerability that allows unauthenticated attackers to manipulate database queries by injecting SQL code through the 'a' parameter. Attackers can send GET requests to with malicious 'a' parameter values to extract sensitive database information.
by Ahmet Ümit BAYRAM
CVSS 7.5
CVE-2019-13029 EXPLOITDB MEDIUM text
Vanderbilt Redcap < 8.10.2 - XSS
Multiple stored Cross-site scripting (XSS) issues in the admin panel and survey system in REDCap 8 before 8.10.20 and 9 before 9.1.2 allow an attacker to inject arbitrary malicious HTML or JavaScript code into a user's web browser.
by Alexandre ZANNI
CVSS 4.8
EIP-2026-102820 EXPLOITDB text
Docker - Container Escape
by dominikczarnotatob
CVE-2019-1089 EXPLOITDB HIGH text VERIFIED
Windows - Privilege Escalation
An elevation of privilege vulnerability exists in rpcss.dll when the RPC service Activation Kernel improperly handles an RPC request. To exploit this vulnerability, a low level authenticated attacker could run a specially crafted application. The security update addresses this vulnerability by correcting how rpcss.dll handles these requests., aka 'Windows RPCSS Elevation of Privilege Vulnerability'.
by Google Security Research
CVSS 7.8
EIP-2026-103342 EXPLOITDB text
WordPress Plugin OneSignal 1.17.5 - 'subdomain' Persistent Cross-Site Scripting
by LiquidWorm
CVE-2019-13577 EXPLOITDB CRITICAL text
MAPLE WBT SNMP Admin <2.0.195.15 - Buffer Overflow
SnmpAdm.exe in MAPLE WBT SNMP Administrator v2.0.195.15 has an Unauthenticated Remote Buffer Overflow via a long string to the CE Remote feature listening on Port 987.
by hyp3rlinx
CVSS 9.8
EIP-2026-103306 EXPLOITDB text
Oracle Siebel CRM 19.0 - Persistent Cross-Site Scripting
by Sarath Nair
CVE-2019-13272 EXPLOITDB HIGH text VERIFIED
Linux Polkit pkexec helper PTRACE_TRACEME local root exploit
In the Linux kernel before 5.1.17, ptrace_link in kernel/ptrace.c mishandles the recording of the credentials of a process that wants to create a ptrace relationship, which allows local users to obtain root access by leveraging certain scenarios with a parent-child process relationship, where a parent drops privileges and calls execve (potentially allowing control by an attacker). One contributing factor is an object lifetime issue (which can also cause a panic). Another contributing factor is incorrect marking of a ptrace relationship as privileged, which is exploitable through (for example) Polkit's pkexec helper with PTRACE_TRACEME. NOTE: SELinux deny_ptrace might be a usable workaround in some environments.
by Google Security Research
CVSS 7.8