Text Exploits

31,386 exploits tracked across all sources.

Sort: Activity Stars
EIP-2026-111323 EXPLOITDB text
PlaySms 0.9.5.2 - Remote File Inclusion
by NoGe
EIP-2026-107383 EXPLOITDB text VERIFIED
GeoClassifieds Lite 2.0.x - Multiple Cross-Site Scripting / SQL Injections
by Yassin Aboukir
EIP-2026-107210 EXPLOITDB text VERIFIED
Free Help Desk 1.1b - Multiple Input Validation Vulnerabilities
by High-Tech Bridge SA
EIP-2026-100389 EXPLOITDB text VERIFIED
Kisanji - 'gr' Cross-Site Scripting
by Bl4ck.Viper
CVE-2011-3979 EXPLOITDB text VERIFIED
Zikula Application Framework <1.3.0-1.2.7 - XSS
Cross-site scripting (XSS) vulnerability in ztemp/view_compiled/Theme/theme_admin_setasdefault.php in the theme module in Zikula Application Framework 1.3.0 build 3168, 1.2.7, and probably other versions allows remote attackers to inject arbitrary web script or HTML via the themename parameter in the setasdefault action to index.php.
by High-Tech Bridge SA
EIP-2026-113940 EXPLOITDB text VERIFIED
WordPress Plugin oQey Gallery 0.4.8 - SQL Injection
by Miroslav Stampar
EIP-2026-113332 EXPLOITDB text VERIFIED
Webmobo WB News System - Blind SQL Injection
by Eyup CELIK
EIP-2026-106835 EXPLOITDB text
Elite Gaming Ladders 3.6 - SQL Injection
by J.O
EIP-2026-106715 EXPLOITDB text VERIFIED
EasyGallery 5 - 'index.php' Multiple SQL Injections
by Eyup CELIK
EIP-2026-104985 EXPLOITDB text VERIFIED
Advanced Image Hosting Script 2.3 - 'report.php' Cross-Site Scripting
by R3d-D3V!L
EIP-2026-114298 EXPLOITDB text VERIFIED
WordPress Plugin Zotpress 4.4 - SQL Injection
by Miroslav Stampar
EIP-2026-113734 EXPLOITDB text VERIFIED
WordPress Plugin Facebook Opengraph Meta 1.0 - SQL Injection
by Miroslav Stampar
EIP-2026-110246 EXPLOITDB text
openads-2.0.11 - Remote File Inclusion
by HaCkErS eV!L
CVE-2012-0242 EXPLOITDB text
Advantech WebAccess < 7.0 - Remote Code Execution via Format String Specifiers
Format string vulnerability in Advantech/BroadWin WebAccess before 7.0 allows remote attackers to execute arbitrary code via format string specifiers in a message string.
by Luigi Auriemma
EIP-2026-114174 EXPLOITDB text VERIFIED
WordPress Plugin VideoWhisper Video Presentation 1.1 - SQL Injection
by Miroslav Stampar
EIP-2026-109299 EXPLOITDB text VERIFIED
Mambo Component N-Skyrslur - Cross-Site Scripting
by CoBRa_21
EIP-2026-109298 EXPLOITDB text VERIFIED
Mambo Component N-Press - SQL Injection
by CoBRa_21
EIP-2026-109297 EXPLOITDB text VERIFIED
Mambo Component N-Myndir - SQL Injection
by CoBRa_21
EIP-2026-109296 EXPLOITDB text VERIFIED
Mambo Component N-Gallery - SQL Injection
by CoBRa_21
EIP-2026-109294 EXPLOITDB text VERIFIED
Mambo Component N-Frettir - SQL Injection
by CoBRa_21
EIP-2026-109280 EXPLOITDB text VERIFIED
Mambo Component Ahsshop - SQL Injection
by CoBRa_21
EIP-2026-108960 EXPLOITDB text VERIFIED
KaiBB 2.0.1 - SQL Injection / Arbitrary File Upload
by KedAns-Dz
EIP-2026-104900 EXPLOITDB text VERIFIED
ACal 2.2.6 - 'calendar.php' Cross-Site Scripting
by T0xic
EIP-2026-119408 EXPLOITDB text
NetSaro Enterprise Messenger 2.0 - Multiple Vulnerabilities
by Narendra Shinde
EIP-2026-114025 EXPLOITDB text VERIFIED
WordPress Plugin SearchAutocomplete 1.0.8 - SQL Injection
by Miroslav Stampar