Exploitdb Exploits

31,342 exploits tracked across all sources.

Sort: Activity Stars
CVE-2012-0980 EXPLOITDB text VERIFIED
phux Download Manager - SQL Injection
SQL injection vulnerability in download.php in phux Download Manager allows remote attackers to execute arbitrary SQL commands via the file parameter.
by Red Security TEAM
EIP-2026-108498 EXPLOITDB text VERIFIED
Joomla! Component com_propertylab - 'id' SQL Injection
by the_cyber_nuxbie
EIP-2026-108348 EXPLOITDB text VERIFIED
Joomla! Component com_firmy - 'Id' SQL Injection
by the_cyber_nuxbie
EIP-2026-108274 EXPLOITDB text VERIFIED
Joomla! Component com_bbs - Multiple SQL Injections
by the_cyber_nuxbie
EIP-2026-107634 EXPLOITDB text
HostBill App 2.3 - Remote Code Injection
by Dr.DaShEr
EIP-2026-104192 EXPLOITDB text
Campaign Enterprise 11.0.421 - SQL Injection
by Craig Freyman
EIP-2026-104156 EXPLOITDB text
Ajax Upload - Arbitrary File Upload
by Daniel Godoy
CVE-2012-5324 EXPLOITDB text
Tracker Software PDF-XChange <3.60.0128 - Buffer Overflow
Multiple buffer overflows in the Pdf Printer Preferences ActiveX Control in pdfxctrl.dll in Tracker Software PDF-XChange 3.60.0128 allow remote attackers to execute arbitrary code via a long string in the (1) sub_path parameter to the StoreInRegistry function or (2) sub_key parameter to the InitFromRegistry function.
by LiquidWorm
EIP-2026-108587 EXPLOITDB text VERIFIED
Joomla! Component com_visa - Local File Inclusion / SQL Injection
by the_cyber_nuxbie
EIP-2026-108308 EXPLOITDB text VERIFIED
Joomla! Component com_cmotour - 'id' SQL Injection
by the_cyber_nuxbie
CVE-2013-0229 EXPLOITDB text VERIFIED
Miniupnpd < 1.3 - Denial of Service
The ProcessSSDPRequest function in minissdp.c in the SSDP handler in MiniUPnP MiniUPnPd before 1.4 allows remote attackers to cause a denial of service (service crash) via a crafted request that triggers a buffer over-read.
by Rapid7
CVE-2012-5226 EXPLOITDB text
Peel SHOPPING <2.9 - XSS
Multiple cross-site scripting (XSS) vulnerabilities in Peel SHOPPING 2.8 and 2.9 allow remote attackers to inject arbitrary web script or HTML via the (1) motclef parameter to achat/recherche.php or (2) PATH_INFO to index.php.
by Cyber-Crystal
CVE-2012-5225 EXPLOITDB text VERIFIED
xClick Cart <1.0.2 - XSS
Cross-site scripting (XSS) vulnerability in webscr.php in xClick Cart 1.0.1 and 1.0.2 allows remote attackers to inject arbitrary web script or HTML via the shopping_url parameter.
by sonyy
CVE-2012-5229 EXPLOITDB text VERIFIED
WordPress Slideshow Gallery2 - XSS
Cross-site scripting (XSS) vulnerability in css/gallery-css.php in the Slideshow Gallery2 plugin for WordPress allows remote attackers to inject arbitrary web script or HTML via the border parameter.
by Bret Hawk
CVE-2012-5227 EXPLOITDB text
Peel SHOPPING <2.9 - SQL Injection
SQL injection vulnerability in administrer/tva.php in Peel SHOPPING 2.8 and 2.9 allows remote attackers to execute arbitrary SQL commands via the id parameter.
by Cyber-Crystal
EIP-2026-108496 EXPLOITDB text VERIFIED
Joomla! Component com_products - Multiple SQL Injections
by the_cyber_nuxbie
EIP-2026-108446 EXPLOITDB text VERIFIED
Joomla! Component com_motor - 'cid' SQL Injection
by the_cyber_nuxbie
CVE-2012-0782 EXPLOITDB text VERIFIED
WordPress <3.3.1 - XSS
Multiple cross-site scripting (XSS) vulnerabilities in wp-admin/setup-config.php in the installation component in WordPress 3.3.1 and earlier allow remote attackers to inject arbitrary web script or HTML via the (1) dbhost, (2) dbname, or (3) uname parameter. NOTE: the vendor disputes the significance of this issue; also, it is unclear whether this specific XSS scenario has security relevance
by Trustwave's SpiderLabs
CVE-2011-4899 EXPLOITDB text VERIFIED
Wordpress < 3.3.1 - Remote Code Execution
wp-admin/setup-config.php in the installation component in WordPress 3.3.1 and earlier does not ensure that the specified MySQL database service is appropriate, which allows remote attackers to configure an arbitrary database via the dbhost and dbname parameters, and subsequently conduct static code injection and cross-site scripting (XSS) attacks via (1) an HTTP request or (2) a MySQL query. NOTE: the vendor disputes the significance of this issue; however, remote code execution makes the issue important in many realistic environments
by Trustwave's SpiderLabs
CVE-2011-4898 EXPLOITDB text VERIFIED
Wordpress < 3.3.1 - Information Disclosure
wp-admin/setup-config.php in the installation component in WordPress 3.3.1 and earlier generates different error messages for requests lacking a dbname parameter depending on whether the MySQL credentials are valid, which makes it easier for remote attackers to conduct brute-force attacks via a series of requests with different uname and pwd parameters. NOTE: the vendor disputes the significance of this issue; also, it is unclear whether providing intentionally vague error messages during installation would be reasonable from a usability perspective
by Trustwave's SpiderLabs
CVE-2012-0937 EXPLOITDB text VERIFIED
WordPress <3.3.1 - DoS
wp-admin/setup-config.php in the installation component in WordPress 3.3.1 and earlier does not limit the number of MySQL queries sent to external MySQL database servers, which allows remote attackers to use WordPress as a proxy for brute-force attacks or denial of service attacks via the dbhost parameter, a different vulnerability than CVE-2011-4898. NOTE: the vendor disputes the significance of this issue because an incomplete WordPress installation might be present on the network for only a short time
by Trustwave's SpiderLabs
CVE-2012-5224 EXPLOITDB text VERIFIED
vBadvanced CMPS <3.2.2 - RCE
PHP remote file inclusion vulnerability in vb/includes/vba_cmps_include_bottom.php in vBadvanced CMPS 3.2.2 and earlier allows remote attackers to execute arbitrary PHP code via a URL in the pages[template] parameter.
by PacketiK
CVE-2012-0973 EXPLOITDB text VERIFIED
OSClass <2.3.5 - SQL Injection
Multiple SQL injection vulnerabilities in OSClass before 2.3.5 allow remote attackers to execute arbitrary SQL commands via the sCategory parameter to index.php, which is not properly handled by the (1) osc_search_category_id function in oc-includes/osclass/helpers/hSearch.php and (2) findBySlug function oc-includes/osclass/model/Category.php. NOTE: some of these details are obtained from third party information.
by High-Tech Bridge SA
CVE-2012-0974 EXPLOITDB text VERIFIED
OSClass <2.3.5 - XSS
Multiple cross-site scripting (XSS) vulnerabilities in the getParam function in oc-includes/osclass/core/Params.php in OSClass before 2.3.5 allow remote attackers to inject arbitrary web script or HTML via the (1) sCity, (2) sPattern, (3) sPriceMax, and (4) sPriceMin parameters in a search action to index.php.
by High-Tech Bridge SA
CVE-2012-0990 EXPLOITDB text VERIFIED
DClassifieds 0.1 - CSRF
Cross-site request forgery (CSRF) vulnerability in admin/settings/update in DClassifieds 0.1 final allows remote attackers to hijack the authentication of administrators for requests that modify account settings such as the administrator password or email via certain Settings[] parameters.
by High-Tech Bridge SA