Text Exploits

31,386 exploits tracked across all sources.

Sort: Activity Stars
CVE-2017-17417 EXPLOITDB CRITICAL text
Quest NetVault Backup 11.3.0.12 - SQL Injection
This vulnerability allows remote attackers to execute arbitrary code on vulnerable installations of Quest NetVault Backup 11.3.0.12. Authentication is not required to exploit this vulnerability. The specific flaw exists within the handling of NVBUPhaseStatus Acknowledge method requests. The issue results from the lack of proper validation of a user-supplied string before using it to construct SQL queries. An attacker can leverage this vulnerability to execute code in the context of the underlying database. Was ZDI-CAN-4228.
by Chris Anastasio
CVSS 9.8
CVE-2019-3475 EXPLOITDB HIGH text VERIFIED
Micro Focus Filr 3.x < Security Update 6 - Authenticated Local Privilege Escalation via famtd Component
A local privilege escalation vulnerability in the famtd component of Micro Focus Filr 3.0 allows a local attacker authenticated as a low privilege user to escalate to root. This vulnerability affects all versions of Filr 3.x prior to Security Update 6.
by SecureAuth
CVSS 7.8
CVE-2018-20220 EXPLOITDB HIGH text
Teracue ENC-400 <2.56 - Info Disclosure
An issue was discovered on Teracue ENC-400 devices with firmware 2.56 and below. While the web interface requires authentication before it can be interacted with, a large portion of the HTTP endpoints are missing authentication. An attacker is able to view these pages before being authenticated, and some of these pages may disclose sensitive information.
by Stephen Shkardoon
CVSS 7.5
CVE-2019-25732 EXPLOITDB HIGH text VERIFIED
PHP EI-Tube Script 3 SQL Injection via search parameter
PHP EI-Tube Script 3 contains an SQL injection vulnerability that allows unauthenticated attackers to execute arbitrary SQL queries by injecting malicious code through the search parameter. Attackers can send GET requests to the search endpoint with crafted SQL payloads in the query parameter to extract sensitive database information including usernames, passwords, and version details.
by Meisam Monsef
CVSS 8.2
CVE-2019-25678 EXPLOITDB HIGH text
C4G BLIS 3.4 SQL Injection via users_select.php
C4G Basic Laboratory Information System 3.4 contains multiple SQL injection vulnerabilities that allow unauthenticated attackers to execute arbitrary SQL commands by injecting malicious code through the site parameter. Attackers can send GET requests to the users_select.php endpoint with crafted SQL payloads to extract sensitive database information including patient records and system credentials.
by Carlos Avila
CVSS 8.2
CVE-2019-25568 EXPLOITDB CRITICAL text VERIFIED
Memu Play 6.0.7 Privilege Escalation via Insecure File Permissions
Memu Play 6.0.7 contains an insecure file permissions vulnerability that allows low-privilege users to escalate privileges by replacing the MemuService.exe executable. Attackers can rename and overwrite MemuService.exe in the installation directory with a malicious executable, which executes with system-level privileges when the service restarts after a computer reboot.
by Alejandra Sánchez
CVSS 9.8
CVE-2019-3924 EXPLOITDB HIGH text VERIFIED
MikroTik RouterOS <6.43.12-6.42.12 - RCE
MikroTik RouterOS before 6.43.12 (stable) and 6.42.12 (long-term) is vulnerable to an intermediary vulnerability. The software will execute user defined network requests to both WAN and LAN clients. A remote unauthenticated attacker can use this vulnerability to bypass the router's firewall or for general network scanning activities.
by Jacob Baines
CVSS 7.5
CVE-2019-8937 EXPLOITDB MEDIUM text
HotelDruid 2.3.0 - Stored Cross-Site Scripting via nsextt, cambia1, mese_fine, origine, and anno Parameters
HotelDruid 2.3.0 has XSS affecting the nsextt, cambia1, mese_fine, origine, and anno parameters in creaprezzi.php, tabella3.php, personalizza.php, and visualizza_tabelle.php.
by Mehmet EMIROGLU
CVSS 6.1
CVE-2019-6224 EXPLOITDB HIGH text VERIFIED
iPhone OS < 12.1.3, macOS < 10.14.3, tvOS < 12.1.2, watchOS < 5.1.3 - Remote Code Execution via FaceTime Call
A buffer overflow issue was addressed with improved memory handling. This issue is fixed in iOS 12.1.3, macOS Mojave 10.14.3, tvOS 12.1.2, watchOS 5.1.3. A remote attacker may be able to initiate a FaceTime call causing arbitrary code execution.
by Google Security Research
CVSS 8.8
EIP-2026-102671 EXPLOITDB text VERIFIED
MatrixSSL < 4.0.2 - Stack Buffer Overflow Verifying x.509 Certificates
by Google Security Research
EIP-2026-102670 EXPLOITDB text VERIFIED
MatrixSSL < 4.0.2 - Stack Buffer Overflow Verifying x.509 Certificates
by Google Security Research
CVE-2019-25731 EXPLOITDB MEDIUM text
Zuz Music 2.1 Persistent Cross-site Scripting via zuzconsole Contact
Zuz Music 2.1 contains a persistent cross-site scripting vulnerability that allows unauthenticated attackers to inject malicious JavaScript by submitting crafted contact form data. Attackers can inject script code through the name, subject, and message parameters in POST requests to /gmusic/zuzconsole/___contact, which executes when administrators view messages in the inbox interface.
by Deyaa Muhammad
CVSS 6.1
CVE-2019-25730 EXPLOITDB HIGH text
Listing Hub CMS 1.0 SQL Injection via pages.php id
Listing Hub CMS 1.0 contains a SQL injection vulnerability that allows unauthenticated attackers to execute arbitrary SQL queries by injecting malicious code through the id parameter. Attackers can send GET requests to pages.php with crafted id values using error-based SQL injection techniques to extract database credentials, usernames, and version information.
by Deyaa Muhammad
CVSS 8.2
CVE-2019-25676 EXPLOITDB HIGH text
Ask Expert Script 3.0.5 Cross Site Scripting SQL Injection
Ask Expert Script 3.0.5 contains cross-site scripting and SQL injection vulnerabilities that allow unauthenticated attackers to inject malicious code by manipulating URL parameters. Attackers can inject script tags through the cateid parameter in categorysearch.php or SQL code through the view parameter in list-details.php to execute arbitrary code or extract database information.
by Mr Winst0n
CVSS 8.2
CVE-2019-25675 EXPLOITDB HIGH text
eDirectory All Versions SQL Injection Authentication Bypass
eDirectory contains multiple SQL injection vulnerabilities that allow unauthenticated attackers to bypass administrator authentication and disclose sensitive files by injecting SQL code into parameters. Attackers can exploit the key parameter in the login endpoint with union-based SQL injection to authenticate as administrator, then leverage authenticated file disclosure vulnerabilities in language_file.php to read arbitrary PHP files from the server.
by Efrén Díaz
CVSS 8.2
CVE-2019-15084 EXPLOITDB HIGH text
Realtek Waves MaxxAudio driver 1.6.2.0 - Incorrect Permission Assignment for Critical Resource
Realtek Waves MaxxAudio driver 1.6.2.0, as used on Dell laptops, installs with incorrect file permissions. As a result, a local attacker can escalate to SYSTEM.
by Mike Siegel
CVSS 7.8
EIP-2026-107100 EXPLOITDB text
Find a Place CMS Directory 1.5 - 'assets/external/data_2.php cate' SQL Injection
by Deyaa Muhammad
CVE-2019-1003002 EXPLOITDB HIGH text VERIFIED
Pipeline: Declarative Plugin <1.3.3 - RCE
A sandbox bypass vulnerability exists in Pipeline: Declarative Plugin 1.3.3 and earlier in pipeline-model-definition/src/main/groovy/org/jenkinsci/plugins/pipeline/modeldefinition/parser/Converter.groovy that allows attackers with Overall/Read permission to provide a pipeline script to an HTTP endpoint that can result in arbitrary code execution on the Jenkins master JVM.
by orange
CVSS 8.8
CVE-2019-25674 EXPLOITDB HIGH text
CMSsite 1.0 SQL Injection via post Parameter
CMSsite 1.0 contains an SQL injection vulnerability that allows unauthenticated attackers to manipulate database queries by injecting SQL code through the 'post' parameter. Attackers can send GET requests to post.php with malicious 'post' values to extract sensitive database information or perform time-based blind SQL injection attacks.
by Mr Winst0n
CVSS 8.2
CVE-2019-25430 EXPLOITDB MEDIUM text
Comodo Dome Firewall 2.7.0 - Unauthenticated Reflected Cross-Site Scripting via VPN Users Username Parameter
Comodo Dome Firewall 2.7.0 contains a reflected cross-site scripting vulnerability that allows unauthenticated attackers to inject malicious scripts by submitting crafted input to the username parameter. Attackers can send POST requests to the vpn_users endpoint with script payloads in the username field to execute arbitrary JavaScript in victim browsers.
by Ozer Goker
CVSS 6.1
CVE-2019-25429 EXPLOITDB MEDIUM text
Comodo Dome Firewall 2.7.0 - Reflected Cross-Site Scripting via openvpn_advanced Endpoint
Comodo Dome Firewall 2.7.0 contains a reflected cross-site scripting vulnerability that allows attackers to inject malicious scripts by submitting crafted input to the openvpn_advanced endpoint. Attackers can inject JavaScript code through the GLOBAL_NETWORKS and GLOBAL_DNS parameters via POST requests to execute arbitrary scripts in users' browsers.
by Ozer Goker
CVSS 6.1
CVE-2019-25428 EXPLOITDB MEDIUM text
Comodo Dome Firewall 2.7.0 - Reflected Cross-Site Scripting via OpenVPN Users Endpoint
Comodo Dome Firewall 2.7.0 contains multiple reflected cross-site scripting vulnerabilities in the openvpn_users endpoint that allow attackers to inject malicious scripts through POST parameters. Attackers can submit crafted POST requests with script payloads in the username, remotenets, explicitroutes, static_ip, custom_dns, or custom_domain parameters to execute arbitrary JavaScript in users' browsers.
by Ozer Goker
CVSS 6.1
CVE-2019-25427 EXPLOITDB MEDIUM text
Comodo Dome Firewall < 2.7.0 - Reflected Cross-Site Scripting via Antispyware Endpoint
Comodo Dome Firewall 2.7.0 contains a reflected cross-site scripting vulnerability that allows attackers to inject malicious scripts by submitting crafted input to the antispyware endpoint. Attackers can send POST requests with JavaScript payloads in the DNSMASQ_WHITELIST or DNSMASQ_BLACKLIST parameters to execute arbitrary code in users' browsers.
by Ozer Goker
CVSS 6.1
CVE-2019-25426 EXPLOITDB MEDIUM text
Comodo Dome Firewall < 2.7.0 - Reflected Cross-Site Scripting via dnsmasq Endpoint
Comodo Dome Firewall 2.7.0 contains a reflected cross-site scripting vulnerability that allows attackers to inject malicious scripts by submitting crafted input to the dnsmasq endpoint. Attackers can send POST requests with script payloads in the TRANSPARENT_SOURCE_BYPASS or TRANSPARENT_DESTINATION_BYPASS parameters to execute arbitrary JavaScript in users' browsers.
by Ozer Goker
CVSS 6.1
CVE-2019-25425 EXPLOITDB MEDIUM text
Comodo Dome Firewall < 2.7.0 - Reflected Cross-Site Scripting via VIRUS_ADMIN Parameter
Comodo Dome Firewall 2.7.0 contains a reflected cross-site scripting vulnerability that allows attackers to inject malicious scripts by submitting crafted input to the VIRUS_ADMIN parameter. Attackers can send POST requests to the smtpconfig endpoint with script payloads to execute arbitrary JavaScript in the context of an administrator's browser session.
by Ozer Goker
CVSS 6.1