Exploitdb Exploits
31,339 exploits tracked across all sources.
IBM DS Storage Manager Host Software < 10.83 - XSS
Cross-site scripting (XSS) vulnerability in SoftwareRegistration.do in the Storage Manager Profiler in IBM System Storage DS Storage Manager before 10.83.xx.18 on DS Series devices allows remote attackers to inject arbitrary web script or HTML via the updateRegn parameter.
by LiquidWorm
Joomla! Component com_szallasok - 'id' SQL Injection
by CoBRa_21
Adiscan LogAnalyzer 3.4.3 - Cross-Site Scripting
by Sooraj K.S
WordPress Plugin Schreikasten 0.14.13 - Cross-Site Scripting
by Henry Hoggard
web@all <2.0 - XSS
Cross-site scripting (XSS) vulnerability in search.php in web@all 2.0, as downloaded before May 30, 2012, allows remote attackers to inject arbitrary web script or HTML via the _text[title] parameter.
by High-Tech Bridge
Coppermine Photo Gallery - 'index.php' Script SQL Injection
by Taurus Omar
Commentics - 'index.php' Cross-Site Scripting
by Jean Pascal Pereira
Samsung AllShare 2.1.1.0 - Null Pointer Dereference
by Luigi Auriemma
iBoutique eCommerce 4.0 - Multiple Web Vulnerabilities
by Vulnerability-Lab
e107 Image Gallery Plugin - 'name' Remote File Disclosure
by Sammy FORGIT
e107 Filedownload Plugin - Arbitrary File Upload / Remote File Disclosure
by Sammy FORGIT
CMS Balitbang - Multiple HTML Injection / Cross-Site Scripting Vulnerabilities
by TheCyberNuxbie
AdaptCMS 2.0.2 - 'index.php' Script Cross-Site Scripting
by indoushka
WordPress Plugin Wp-ImageZoom - 'file' Remote File Disclosure
by Sammy FORGIT
VANA CMS - 'index.php' Script SQL Injection
by Black Hat Group
QNAP Turbo NAS 3.6.1 Build 0302T - Multiple Vulnerabilities
by Sense of Security
MediaWiki <1.17.5, <1.18.4, <1.19.1 - XSS
Cross-site scripting (XSS) vulnerability in the outputPage function in includes/SkinTemplate.php in MediaWiki before 1.17.5, 1.18.x before 1.18.4, and 1.19.x before 1.19.1 allows remote attackers to inject arbitrary web script or HTML via the uselang parameter to index.php/Main_page.
by anonymous
Funeral Script PHP - Cross-Site Scripting / SQL Injection
by snup
Vbseo < 3.8.7 - XSS
vBSeo before 3.6.0PL2 allows XSS via the member.php u parameter.
by MegaMan
CVSS 6.1
XnView - '.RAS' Image Processing Heap Overflow
by Francis Provencher
XnView - '.FlashPix' Image Processing Heap Overflow
by Francis Provencher
By Source