Text Exploits

31,386 exploits tracked across all sources.

Sort: Activity Stars
CVE-2018-25342 EXPLOITDB HIGH text
Smartshop 1 SQL Injection via search.php
Smartshop 1 contains a time-based blind SQL injection vulnerability that allows unauthenticated attackers to manipulate database queries by injecting SQL code through the 'searched' parameter in search.php. Attackers can send GET requests with malicious SQL payloads like SLEEP commands to extract sensitive database information including product details and system data.
by L0RD
CVSS 8.2
CVE-2018-25341 EXPLOITDB HIGH text
Smartshop 1 SQL Injection via product.php id Parameter
Smartshop 1 contains a SQL injection vulnerability that allows unauthenticated attackers to execute arbitrary SQL queries by injecting malicious code through the id parameter. Attackers can send GET requests to product.php with union-based SQL injection payloads in the id parameter to extract sensitive database information including usernames and database names.
by L0RD
CVSS 8.2
CVE-2018-25340 EXPLOITDB HIGH text
Smartshop 1 SQL Injection via category.php
Smartshop 1 contains a SQL injection vulnerability that allows unauthenticated attackers to execute arbitrary SQL queries by injecting malicious code through the id parameter. Attackers can send GET requests to category.php with UNION-based SQL injection payloads in the id parameter to extract sensitive database information including usernames and other data.
by L0RD
CVSS 8.2
EIP-2026-103460 EXPLOITDB text
Epiphany 3.28.2.1 - Denial of Service
by Dhiraj Mishra
EIP-2026-110680 EXPLOITDB text
PHP Dashboards NEW 5.5 - 'email' SQL Injection
by Kağan Çapar
EIP-2026-109901 EXPLOITDB text
New STAR 2.1 - SQL Injection / Cross-Site Scripting
by Kağan Çapar
EIP-2026-107503 EXPLOITDB text
Grid Pro Big Data 1.0 - SQL Injection
by Kağan Çapar
EIP-2026-106257 EXPLOITDB text
CSV Import & Export 1.1.0 - SQL Injection / Cross-Site Scripting
by Kağan Çapar
EIP-2026-102032 EXPLOITDB text
TAC Xenta 511/911 - Directory Traversal
by Marek Cybul
CVE-2018-1123 EXPLOITDB LOW text
procps-ng < 3.3.15 - Denial of Service via mmap Buffer Overflow
procps-ng before version 3.3.15 is vulnerable to a denial of service in ps via mmap buffer overflow. Inbuilt protection in ps maps a guard page at the end of the overflowed buffer, ensuring that the impact of this flaw is limited to a crash (temporary denial of service).
by Qualys Corporation
CVSS 3.9
CVE-2018-1122 EXPLOITDB HIGH text
procps-ng <3.3.15 - Privilege Escalation
procps-ng before version 3.3.15 is vulnerable to a local privilege escalation in top. If a user runs top with HOME unset in an attacker-controlled directory, the attacker could achieve privilege escalation by exploiting one of several vulnerabilities in the config_file() function.
by Qualys Corporation
CVSS 7.3
CVE-2018-1121 EXPLOITDB LOW text
procps < 3.3.15 - Process Hiding via Race Condition in /proc/PID Enumeration
procps-ng, procps is vulnerable to a process hiding through race condition. Since the kernel's proc_pid_readdir() returns PID entries in ascending numeric order, a process occupying a high PID can use inotify events to determine when the process list is being scanned, and fork/exec to obtain a lower PID, thus avoiding enumeration. An unprivileged attacker can hide a process from procps-ng's utilities by exploiting a race condition in reading /proc/PID entries. This vulnerability affects procps and procps-ng up to version 3.3.15, newer versions might be affected also.
by Qualys Corporation
CVSS 3.9
CVE-2018-1120 EXPLOITDB LOW text
Linux Kernel < 4.17 - Denial of Service via FUSE mmap and /proc Read Blocking
A flaw was found affecting the Linux kernel before version 4.17. By mmap()ing a FUSE-backed file onto a process's memory containing command line arguments (or environment strings), an attacker can cause utilities from psutils or procps (such as ps, w) or any other program which makes a read() call to the /proc/<pid>/cmdline (or /proc/<pid>/environ) files to block indefinitely (denial of service) or for some controlled time (as a synchronization primitive for other attacks).
by Qualys Corporation
CVSS 2.8
CVE-2018-6410 EXPLOITDB CRITICAL text VERIFIED
MachForm - SQL Injection via Download Page q Parameter
An issue was discovered in Appnitro MachForm before 4.2.3. There is a download.php SQL injection via the q parameter.
by Amine Taouirsa
CVSS 9.8
CVE-2018-6409 EXPLOITDB MEDIUM text VERIFIED
MachForm < 4.2.3 - Path Traversal via download.php q Parameter
An issue was discovered in Appnitro MachForm before 4.2.3. The module in charge of serving stored files gets the path from the database. Modifying the name of the file to serve on the corresponding ap_form table leads to a path traversal vulnerability via the download.php q parameter.
by Amine Taouirsa
CVSS 5.3
CVE-2018-6411 EXPLOITDB CRITICAL text VERIFIED
MachForm - Unrestricted Upload of File with Dangerous Type via SQL Injection in ap_form_elements
An issue was discovered in Appnitro MachForm before 4.2.3. When the form is set to filter a blacklist, it automatically adds dangerous extensions to the filters. If the filter is set to a whitelist, the dangerous extensions can be bypassed through ap_form_elements SQL Injection.
by Amine Taouirsa
CVSS 9.8
CVE-2018-10094 EXPLOITDB CRITICAL text VERIFIED
Dolibarr < 7.0.2 - SQL Injection via Integer Parameter
SQL injection vulnerability in Dolibarr before 7.0.2 allows remote attackers to execute arbitrary SQL commands via vectors involving integer parameters without quotes.
by Sysdream
CVSS 9.8
CVE-2018-11522 EXPLOITDB MEDIUM text
Yosoro 1.0.4 - Stored Cross-Site Scripting
Yosoro 1.0.4 has stored XSS.
by Carlo Pelliccioni
CVSS 6.1
CVE-2018-1124 EXPLOITDB HIGH text
procps-ng <3.3.15 - Privilege Escalation
procps-ng before version 3.3.15 is vulnerable to multiple integer overflows leading to a heap corruption in file2strvec function. This allows a privilege escalation for a local attacker who can create entries in procfs by starting processes, which could result in crashes or arbitrary code execution in proc utilities run by other users.
by Qualys Corporation
CVSS 7.8
CVE-2018-11538 EXPLOITDB HIGH text
Searchblox - Cross-Site Request Forgery
servlet/UserServlet in SearchBlox 8.6.6 has CSRF via the u_name, u_passwd1, u_passwd2, role, and X-XSRF-TOKEN POST parameters because of CSRF Token Bypass.
by Ahmet Gurel
CVSS 8.8
CVE-2018-25154 EXPLOITDB CRITICAL text
GNU Barcode 0.99 - Buffer Overflow in Code 93 Encoding
GNU Barcode 0.99 contains a buffer overflow vulnerability in its code 93 encoding process that allows attackers to trigger memory corruption. Attackers can exploit boundary errors during input file processing to potentially execute arbitrary code on the affected system.
by LiquidWorm
CVSS 9.8
CVE-2018-11535 EXPLOITDB CRITICAL text
SITEMAKIN SLAC 1.0 - SQL Injection via my_item_search Parameter
An issue was discovered in SITEMAKIN SLAC (Site Login and Access Control) v1.0. The parameter "my_item_search" in users.php is exploitable using SQL injection.
by Divya Jain
CVSS 9.8
CVE-2018-11532 EXPLOITDB MEDIUM text
ChangUonDyU Advanced Statistics 1.0.2 - Cross-Site Scripting via Subject Field
An issue was discovered in the ChangUonDyU Advanced Statistics plugin 1.0.2 for MyBB. changstats.php has XSS, as demonstrated by a subject field.
by 0xB9
CVSS 6.1
EIP-2026-107027 EXPLOITDB text
Facebook Clone Script 1.0.5 - Cross-Site Request Forgery
by L0RD
EIP-2026-107026 EXPLOITDB text
Facebook Clone Script 1.0.5 - 'search' SQL Injection
by L0RD