Text Exploits

31,330 exploits tracked across all sources.

Sort: Activity Stars
EIP-2026-114241 EXPLOITDB text
WordPress Plugin WP Symposium 15.1 - Blind SQL Injection
by dxw
CVE-2015-6522 EXPLOITDB text
Wpsymposium WP Symposium < 15.7 - SQL Injection
SQL injection vulnerability in the WP Symposium plugin before 15.8 for WordPress allows remote attackers to execute arbitrary SQL commands via the size parameter to get_album_item.php.
by PizzaHatHacker
EIP-2026-113013 EXPLOITDB text
vBulletin < 4.2.2 - Memcache Remote Code Execution
by Joshua Rogers
EIP-2026-111050 EXPLOITDB text
PHPfileNavigator 2.3.3 - Privilege Escalation
by hyp3rlinx
EIP-2026-111049 EXPLOITDB text
PHPfileNavigator 2.3.3 - Cross-Site Scripting
by hyp3rlinx
EIP-2026-111048 EXPLOITDB text
PHPfileNavigator 2.3.3 - Cross-Site Request Forgery
by hyp3rlinx
EIP-2026-106050 EXPLOITDB text
CodoForum 3.3.1 - Multiple SQL Injections
by Curesec Research Team
EIP-2026-105472 EXPLOITDB text
BigTree CMS 4.2.3 - (Authenticated) SQL Injection
by Curesec Research Team
EIP-2026-104580 EXPLOITDB text
Apple Mac OSX 10.10.5 - 'XNU' Local Privilege Escalation
by kpwn
CVE-2014-8008 EXPLOITDB text
Cisco Unified Communications Manager - Information Disclosure
Absolute path traversal vulnerability in the Real-Time Monitoring Tool (RTMT) API in Cisco Unified Communications Manager (CUCM) allows remote authenticated users to read arbitrary files via a full pathname in an API command, aka Bug ID CSCur49414.
by Bernhard Mueller
CVE-2016-3088 EXPLOITDB CRITICAL text VERIFIED
ActiveMQ web shell upload
The Fileserver web application in Apache ActiveMQ 5.x before 5.14.0 allows remote attackers to upload and execute arbitrary files via an HTTP PUT followed by an HTTP MOVE request.
by David Jorm
CVSS 9.8
EIP-2026-108443 EXPLOITDB text
Joomla! Component com_memorix - SQL Injection
by Omar
EIP-2026-108378 EXPLOITDB text
Joomla! Component com_informations - SQL Injection
by Omar
EIP-2026-107418 EXPLOITDB text
Gkplugins Picasaweb - Download File
by TMT zno
EIP-2026-102698 EXPLOITDB text
NetKit FTP Client (Ubuntu 14.04) - Crash/Denial of Service (PoC)
by TUNISIAN CYBER
EIP-2026-102052 EXPLOITDB text
TOTOLINK Routers - Backdoor / Remote Code Execution
by MadMouse
EIP-2026-101976 EXPLOITDB text
Security IP Camera Star Vision DVR - Authentication Bypass
by Meisam Monsef
CVE-2015-2370 EXPLOITDB text
Microsoft Windows 2003 Server - Access Control
The authentication implementation in the RPC subsystem in Microsoft Windows Server 2003 SP2 and R2 SP2, Windows Vista SP2, Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Windows 8, Windows 8.1, Windows Server 2012 Gold and R2, and Windows RT Gold and 8.1 does not prevent DCE/RPC connection reflection, which allows local users to gain privileges via a crafted application, aka "Windows RPC Elevation of Privilege Vulnerability."
by monoxgas
CVE-2015-5161 EXPLOITDB text
Zend Framework < 2.4.6 - XXE
The Zend_Xml_Security::scan in ZendXml before 1.0.1 and Zend Framework before 1.12.14, 2.x before 2.4.6, and 2.5.x before 2.5.2, when running under PHP-FPM in a threaded environment, allows remote attackers to bypass security checks and conduct XML external entity (XXE) and XML entity expansion (XEE) attacks via multibyte encoded characters.
by Dawid Golunski
EIP-2026-104295 EXPLOITDB text
Joomla! Component com_jem 2.1.4 - Multiple Vulnerabilities
by Martino Sani
EIP-2026-115924 EXPLOITDB text
NetServe FTP Client 1.0 - Local Denial of Service
by Un_N0n
EIP-2026-102287 EXPLOITDB text
Printer Pro 5.4.3 IOS - Persistent Cross-Site Scripting
by Taurus Omar
EIP-2026-114279 EXPLOITDB text
WordPress Plugin WPTF Image Gallery 1.03 - Arbitrary File Download
by Larry W. Cashdollar
EIP-2026-114053 EXPLOITDB text
WordPress Plugin Simple Image Manipulator 1.0 - Arbitrary File Download
by Larry W. Cashdollar
EIP-2026-114001 EXPLOITDB text
WordPress Plugin Recent Backups 0.7 - Arbitrary File Download
by Larry W. Cashdollar