Text Exploits

31,337 exploits tracked across all sources.

Sort: Activity Stars
EIP-2026-109621 EXPLOITDB text VERIFIED
MTP Poll 1.0 - Multiple Cross-Site Scripting Vulnerabilities
by LiquidWorm
EIP-2026-109620 EXPLOITDB text VERIFIED
MTP Image Gallery 1.0 - 'edit_photos.php?title' Cross-Site Scripting
by LiquidWorm
EIP-2026-109619 EXPLOITDB text VERIFIED
MTP Guestbook 1.0 - Multiple Cross-Site Scripting Vulnerabilities
by LiquidWorm
CVE-2012-5337 EXPLOITDB text VERIFIED
JForum 2.1.9 - XSS
Multiple cross-site scripting (XSS) vulnerabilities in jforum.page in JForum 2.1.9 allow remote attackers to inject arbitrary web script or HTML via the (1) action, (2) match_type, (3) sort_by, or (4) start parameters.
by ZeroDayLab
EIP-2026-102250 EXPLOITDB text
iOS IPMap 2.5 - Arbitrary File Upload
by Vulnerability-Lab
EIP-2026-102118 EXPLOITDB text
WiFilet 1.2 iPad iPhone - Multiple Vulnerabilities
by Vulnerability-Lab
CVE-2013-1765 EXPLOITDB text VERIFIED
Smart-flv - XSS
Multiple cross-site scripting (XSS) vulnerabilities in jwplayer.swf in the smart-flv plugin for WordPress allow remote attackers to inject arbitrary web script or HTML via the (1) link or (2) playerready parameter.
by Henri Salo
EIP-2026-111168 EXPLOITDB text VERIFIED
phpMyRecipes - Multiple HTML Injection Vulnerabilities
by PDS
EIP-2026-101517 EXPLOITDB text
AirDrive HD 1.6 iPad iPhone - Multiple Vulnerabilities
by Vulnerability-Lab
EIP-2026-119035 EXPLOITDB text VERIFIED
Photodex ProShow Producer - Multiple DLL Loading Arbitrary Code Execution Vulnerabilities
by Julien Ahrens
EIP-2026-107084 EXPLOITDB text VERIFIED
File Manager - HTML Injection / Local File Inclusion
by Benjamin Kunz Mejri
EIP-2026-119349 EXPLOITDB text
Alt-N MDaemon WorldClient 13.0.3 - Multiple Vulnerabilities
by QSecure & Demetris Papapetrou
EIP-2026-119348 EXPLOITDB text
Alt-N MDaemon 12.5.6/13.0.3 - Email Body HTML/JS Injection
by QSecure & Demetris Papapetrou
EIP-2026-113215 EXPLOITDB text VERIFIED
Web Cookbook - Multiple Vulnerabilities
by cr4wl3r
EIP-2026-111814 EXPLOITDB text VERIFIED
RTTucson Quotations Database Script - Authentication Bypass
by cr4wl3r
EIP-2026-111169 EXPLOITDB text VERIFIED
PHPMyRecipes 1.2.2 - 'viewrecipe.php?r_id' SQL Injection
by cr4wl3r
EIP-2026-111165 EXPLOITDB text VERIFIED
PHPmyGallery 1.5 - Local File Disclosure / Cross-Site Scripting
by TheMirkin
EIP-2026-110286 EXPLOITDB text VERIFIED
OpenEMR - 'site' Cross-Site Scripting
by Gjoko Krstic
CVE-2013-1466 EXPLOITDB text
Glfusion < 1.2.2.pl3 - XSS
Multiple cross-site scripting (XSS) vulnerabilities in glFusion before 1.2.2.pl4 allow remote attackers to inject arbitrary web script or HTML via the (1) subject parameter to profiles.php; (2) address1, (3) address2, (4) calendar_type, (5) city, (6) state, (7) title, (8) url, or (9) zipcode parameter to calendar/index.php; (10) title or (11) url parameter to links/index.php; or (12) PATH_INFO to admin/plugins/mediagallery/xppubwiz.php/.
by High-Tech Bridge SA
CVE-2012-6550 EXPLOITDB text VERIFIED
Zeroclipboard < 1.0.7 - XSS
Cross-site scripting (XSS) vulnerability in ZeroClipboard before 1.1.4 allows remote attackers to inject arbitrary web script or HTML via "the clipText returned from the flash object," a different vulnerability than CVE-2013-1808.
by MustLive
EIP-2026-114604 EXPLOITDB text VERIFIED
ZenPhoto - 'index.php' SQL Injection
by HosseinNsn
CVE-2013-1636 EXPLOITDB text VERIFIED
Caseproof Prettylinks < 1.6.2 - XSS
Cross-site scripting (XSS) vulnerability in open-flash-chart.swf in Open Flash Chart (aka Open-Flash Chart), as used in the Pretty Link Lite plugin before 1.6.3 for WordPress, JNews (com_jnews) component 8.0.1 for Joomla!, and CiviCRM 3.1.0 through 4.2.9 and 4.3.0 through 4.3.3, allows remote attackers to inject arbitrary web script or HTML via the get-data parameter.
by hiphop
EIP-2026-111813 EXPLOITDB text VERIFIED
RTTucson Quotations Database - Multiple Vulnerabilities
by 3spi0n
EIP-2026-105867 EXPLOITDB text
CKEditor 4.0.1 - Multiple Vulnerabilities
by AkaStep
EIP-2026-112406 EXPLOITDB text VERIFIED
Squirrelcart - 'table' Cross-Site Scripting
by Gjoko Krstic