Text Exploits

31,386 exploits tracked across all sources.

Sort: Activity Stars
EIP-2026-119594 EXPLOITDB text
Microsoft People 10.1807.2131.0 - Denial of service (PoC)
by L0RD
CVE-2018-14497 EXPLOITDB MEDIUM text
Tenda D152 ADSL Router - Stored Cross-Site Scripting via SSID
Tenda D152 ADSL routers allow XSS via a crafted SSID.
by Sandip Dey
CVSS 5.4
CVE-2018-25371 EXPLOITDB HIGH text
mooSocial Store Plugin 2.6 SQL Injection via product parameter
mooSocial Store Plugin 2.6 contains a blind SQL injection vulnerability that allows unauthenticated attackers to manipulate database queries through the product parameter in URL rewrite functionality. Attackers can inject SQL code using boolean-based blind, time-based blind, or stacked query techniques in the product URI parameter to extract sensitive database information.
by Andrea Bocchetti
CVSS 8.2
CVE-2018-19457 EXPLOITDB HIGH text
Logicspice FAQ Script <2.9.7 - Command Injection
Logicspice FAQ Script 2.9.7 allows uploading arbitrary files, which leads to remote command execution via admin/faqs/faqimages with a .php file.
by AkkuS
CVSS 7.2
CVE-2018-17110 EXPLOITDB CRITICAL text
Simple POS 4.0.24 - SQL Injection via Management Panel Search Parameter
Simple POS 4.0.24 allows SQL Injection via a products/get_products/ columns[0][search][value] parameter in the management panel, as demonstrated by products/get_products/1.
by Renos Nikolaou
CVSS 9.8
EIP-2026-110696 EXPLOITDB text
PHP File Browser Script 1 - Directory Traversal
by AkkuS
CVE-2018-25370 EXPLOITDB MEDIUM text
Admidio 3.3.5 Cross-Site Request Forgery via roles_function.php
Admidio 3.3.5 contains a cross-site request forgery vulnerability that allows low-privilege users to increase their permissions by exploiting improper origin checking. Attackers can craft malicious HTML forms targeting roles_function.php with parameters like rol_assign_roles, rol_approve_users, and rol_edit_user set to 1 to escalate privileges without authentication.
by Nawaf Alkeraithe
CVSS 5.3
CVE-2018-25207 EXPLOITDB HIGH text
Online Quiz Maker 1.0 SQL Injection via catid Parameter
Online Quiz Maker 1.0 contains SQL injection vulnerabilities in the catid and usern parameters that allow authenticated attackers to execute arbitrary SQL commands. Attackers can submit malicious POST requests to quiz-system.php or add-category.php with crafted SQL payloads in POST parameters to extract sensitive database information or bypass authentication.
by AkkuS
CVSS 7.1
CVE-2018-16252 EXPLOITDB LOW text
FsPro Labs Event Log Explorer 4.6.1.2115 - XML External Entity Injection via .elx File
FsPro Labs Event Log Explorer 4.6.1.2115 has ".elx" FileType XML External Entity Injection.
by hyp3rlinx
CVSS 3.3
CVE-2018-15839 EXPLOITDB CRITICAL text
D-Link DIR-615 Firmware - Buffer Overflow via Authorization HTTP Header
D-Link DIR-615 devices have a buffer overflow via a long Authorization HTTP header.
by Aniket Dinda
CVSS 9.8
CVE-2018-15844 EXPLOITDB HIGH text
DamiCMS 6.0.0 - Cross-Site Request Forgery via Admin Password Change
An issue was discovered in DamiCMS 6.0.0. There is an CSRF vulnerability that can revise the administrator account's password via /admin.php?s=/Admin/doedit.
by Autism_JH
CVSS 8.8
EIP-2026-102108 EXPLOITDB text VERIFIED
Vox TG790 ADSL Router - Cross-Site Scripting
by cakes
CVE-2018-17140 EXPLOITDB MEDIUM text
Quizlord < 2.0 - Stored Cross-Site Scripting via Title Parameter in ql_insert Action
The Quizlord plugin through 2.0 for WordPress is prone to Stored XSS via the title parameter in a ql_insert action to wp-admin/admin.php.
by Renos Nikolaou
CVSS 5.4
CVE-2018-17138 EXPLOITDB MEDIUM text
Jibu Pro < 1.7 - Stored Cross-Site Scripting via Quiz Name Field
The Jibu Pro plugin through 1.7 for WordPress is prone to Stored XSS via the wp-content/plugins/jibu-pro/quiz_action.php name (aka Quiz Name) field.
by Renos Nikolaou
CVSS 5.4
CVE-2018-16133 EXPLOITDB MEDIUM text VERIFIED
CyBroHttpServer 1.0.3 - Path Traversal via URI
Cybrotech CyBroHttpServer 1.0.3 allows Directory Traversal via a ../ in the URI.
by Emre ÖVÜNÇ
CVSS 5.3
CVE-2018-16134 EXPLOITDB MEDIUM text VERIFIED
CyBroHttpServer 1.0.3 - Cross-Site Scripting via URI
Cybrotech CyBroHttpServer 1.0.3 allows XSS via a URI.
by Emre ÖVÜNÇ
CVSS 6.1
CVE-2018-12710 EXPLOITDB HIGH text
D-Link DIR-601 2.02NA - Info Disclosure
An issue was discovered on D-Link DIR-601 2.02NA devices. Being local to the network and having only "User" account (which is a low privilege account) access, an attacker can intercept the response from a POST request to obtain "Admin" rights due to the admin password being displayed in XML.
by Kevin Randall
CVSS 8.0
CVE-2018-15745 EXPLOITDB HIGH text VERIFIED
Argus Surveillance DVR 4.0.0.0 - Directory Traversal
Argus Surveillance DVR 4.0.0.0 devices allow Unauthenticated Directory Traversal, leading to File Disclosure via a ..%2F in the WEBACCOUNT.CGI RESULTPAGE parameter.
by hyp3rlinx
CVSS 7.5
CVE-2017-1000499 EXPLOITDB HIGH text VERIFIED
phpMyAdmin 4.7.0-4.7.6 - Cross-Site Request Forgery
phpMyAdmin versions 4.7.x (prior to 4.7.6.1/4.7.7) are vulnerable to a CSRF weakness. By deceiving a user to click on a crafted URL, it is possible to perform harmful database operations such as deleting records, dropping/truncating tables etc.
by VulnSpy
CVSS 8.8
EIP-2026-117518 EXPLOITDB text
Microsoft Windows - Advanced Local Procedure Call (ALPC) Local Privilege Escalation
by SandboxEscaper
EIP-2026-103031 EXPLOITDB text
VirtualBox 5.2.6.r120293 - VM Escape
by Reno Robert
CVE-2018-15535 EXPLOITDB HIGH text VERIFIED
tecrail Responsive FileManager < 9.13.4 - Path Traversal via get_file Parameter
/filemanager/ajax_calls.php in tecrail Responsive FileManager before 9.13.4 uses external input to construct a pathname that should be within a restricted directory, but it does not properly neutralize get_file sequences such as ".." that can resolve to a location that is outside of that directory, aka Directory Traversal.
by Simon Uvarov
CVSS 7.5
EIP-2026-119590 EXPLOITDB text
Firefox 55.0.3 - Denial of Service (PoC)
by L0RD
EIP-2026-119421 EXPLOITDB text
Sentrifugo HRMS 3.2 - 'deptid' SQL Injection
by Javier Olmedo
CVE-2018-15536 EXPLOITDB MEDIUM text VERIFIED
tecrail Responsive FileManager < 9.13.4 - Path Traversal and Arbitrary File Write via Archive Extraction
/filemanager/ajax_calls.php in tecrail Responsive FileManager before 9.13.4 does not properly validate file paths in archives, allowing for the extraction of crafted archives to overwrite arbitrary files via an extract action, aka Directory Traversal.
by Simon Uvarov
CVSS 5.5