Text Exploits

31,386 exploits tracked across all sources.

Sort: Activity Stars
EIP-2026-111584 EXPLOITDB text VERIFIED
PunBB 1.3.5 - Multiple Cross-Site Scripting Vulnerabilities
by Piotr Duszynski
EIP-2026-112422 EXPLOITDB text VERIFIED
StarDevelop LiveHelp 2.0 - 'index.php' Local File Inclusion
by KedAns-Dz
CVE-2011-3502 EXPLOITDB text
Cogent DataHub <7.1.1.63 - Info Disclosure
The web server in Cogent DataHub 7.1.1.63 and earlier allows remote attackers to obtain the source code of executable files via a request with a trailing (1) space or (2) %2e (encoded dot).
by Luigi Auriemma
CVE-2011-3489 EXPLOITDB text
Rockwell RSLogix < 19 - Denial of Service via Crafted RNA Packet
RnaUtility.dll in RsvcHost.exe 2.30.0.23 in Rockwell RSLogix 19 and earlier allows remote attackers to cause a denial of service (crash) via a crafted rna packet with a long string to TCP port 4446 that triggers (1) "a memset zero overflow" or (2) an out-of-bounds read, related to improper handling of a 32-bit size field.
by Luigi Auriemma
CVE-2011-3499 EXPLOITDB text
Progea Movicon / PowerHMI <11.2.1085 - DoS/Code Injection
Progea Movicon / PowerHMI 11.2.1085 and earlier allows remote attackers to cause a denial of service (memory corruption and crash) and possibly execute arbitrary code via an EIDP packet with a large size field, which writes a zero byte to an arbitrary memory location.
by Luigi Auriemma
CVE-2011-3497 EXPLOITDB text
Measuresoft ScadaPro < 4.0.0 - Remote Code Execution via XF Function
service.exe in Measuresoft ScadaPro 4.0.0 and earlier allows remote attackers to execute arbitrary DLL functions via the XF function, possibly related to an insecure exposed method.
by Luigi Auriemma
CVE-2011-3494 EXPLOITDB text
eSignal < 10.6.2425 - Stack-Based and Heap-Based Buffer Overflow via Long StyleTemplate or FaceName Field
WinSig.exe in eSignal 10.6.2425 and earlier allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via (1) a long StyleTemplate element in a QUO, SUM or POR file, which triggers a stack-based buffer overflow, or (2) a long Font->FaceName field (aka FaceName element), which triggers a heap-based buffer overflow. NOTE: some of these details are obtained from third party information.
by Luigi Auriemma
CVE-2011-3488 EXPLOITDB text
Equis MetaStock < 11.0 - Use-After-Free via Malformed Chart or Template
Use-after-free vulnerability in Equis MetaStock 11 and earlier allows remote attackers to execute arbitrary code via a malformed (1) mwc chart, (2) mws chart, (3) mwt template, or (4) mwl layout.
by Luigi Auriemma
CVE-2011-3492 EXPLOITDB text
Azeotech DAQFactory <5.85.1853 - Buffer Overflow
Stack-based buffer overflow in Azeotech DAQFactory 5.85 build 1853 and earlier allows remote attackers to cause a denial of service (crash) and execute arbitrary code via a crafted NETB packet to UDP port 20034.
by Luigi Auriemma
CVE-2011-3493 EXPLOITDB text
Cogent DataHub <7.1.1.63 - Buffer Overflow
Multiple stack-based buffer overflows in the DH_OneSecondTick function in Cogent DataHub 7.1.1.63 and earlier allow remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via long (1) domain, (2) report_domain, (3) register_datahub, or (4) slave commands.
by Luigi Auriemma
CVE-2011-3501 EXPLOITDB text
Cogent DataHub <= 7.1.1.63 - Denial of Service via Content-Length Header
Integer overflow in Cogent DataHub 7.1.1.63 and earlier allows remote attackers to cause a denial of service (crash) via a negative or large Content-Length value.
by Luigi Auriemma
CVE-2011-3486 EXPLOITDB text VERIFIED
Beckhoff TwinCAT <2.11.0.2004 - DoS
Beckhoff TwinCAT 2.11.0.2004 and earlier allows remote attackers to cause a denial of service via a crafted request to UDP port 48899, which triggers an out-of-bounds read.
by Luigi Auriemma
EIP-2026-113705 EXPLOITDB text VERIFIED
WordPress Plugin E-Commerce 3.8.6 - SQL Injection
by Miroslav Stampar
EIP-2026-113572 EXPLOITDB text VERIFIED
WordPress Plugin Auctions 1.8.8 - 'wpa_id' SQL Injection
by sherl0ck_
EIP-2026-100433 EXPLOITDB text VERIFIED
Microsoft SharePoint 2007/2010 - 'Source' Multiple Open Redirections
by Irene Abezgauz
CVE-2011-3487 EXPLOITDB text
Carel PlantVisor <2.4.4 - Path Traversal
Directory traversal vulnerability in CarelDataServer.exe in Carel PlantVisor 2.4.4 and earlier allows remote attackers to read arbitrary files via a .. (dot dot) in an HTTP GET request.
by Luigi Auriemma
CVE-2011-1248 EXPLOITDB text
Windows Server 2003 SP2 and Server 2008 - Remote Code Execution via Crafted Packets
WINS in Microsoft Windows Server 2003 SP2 and Server 2008 Gold, SP2, R2, and R2 SP1 does not properly handle socket send exceptions, which allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via crafted packets, related to unintended stack-frame values and buffer passing, aka "WINS Service Failed Response Vulnerability."
by Luigi Auriemma
CVE-2011-1984 EXPLOITDB text VERIFIED
Microsoft WINS - Privilege Escalation
WINS in Microsoft Windows Server 2003 SP2 and Server 2008 SP2, R2, and R2 SP1 allows local users to gain privileges by sending crafted packets over the loopback interface, aka "WINS Local Elevation of Privilege Vulnerability."
by Core Security
CVE-2012-6625 EXPLOITDB text VERIFIED
ForumPress < 1.7.4 - SQL Injection via groupid Parameter
SQL injection vulnerability in fs-admin/fs-admin.php in the ForumPress WP Forum Server plugin before 1.7.4 for WordPress allows remote attackers to execute arbitrary SQL commands via the groupid parameter in an editgroup action.
by Miroslav Stampar
EIP-2026-106557 EXPLOITDB text
dotProject 2.1.5 - SQL Injection
by sherl0ck_
EIP-2026-112742 EXPLOITDB text
TomatoCart 1.1 - (Authenticated) Local File Inclusion
by brain[pillow]
EIP-2026-112207 EXPLOITDB text
Slaed CMS - Code Execution
by brain[pillow]
EIP-2026-110767 EXPLOITDB text
PHP Support Tickets 2.2 - Code Execution
by brain[pillow]
EIP-2026-110473 EXPLOITDB text VERIFIED
Papoo CMS Light 4.0 - Multiple Cross-Site Scripting Vulnerabilities
by Stefan Schurtz
EIP-2026-109880 EXPLOITDB text
NetCat CMS - Multiple Vulnerabilities
by brain[pillow]