Text Exploits

31,386 exploits tracked across all sources.

Sort: Activity Stars
EIP-2026-112380 EXPLOITDB text VERIFIED
Sphider 1.3.x - Admin Panel Multiple SQL Injections
by Karthik R
EIP-2026-108603 EXPLOITDB text VERIFIED
Joomla! Component com_xmap 1.2.11 - Blind SQL Injection
by jdc
EIP-2026-107105 EXPLOITDB text
Fire Soft Board 2.0.1 - Persistent Cross-Site Scripting (Admin Panel)
by _jill for A-S
CVE-2011-3642 EXPLOITDB CRITICAL text VERIFIED
Flowplayer Flash 3.2.7-3.2.16 - Cross-Site Scripting via Plugin Configuration Directive
Cross-site scripting (XSS) vulnerability in Flowplayer Flash 3.2.7 through 3.2.16, as used in the News system (news) extension for TYPO3 and Mahara, allows remote attackers to inject arbitrary web script or HTML via the plugin configuration directive in a reference to an external domain plugin.
by Szymon Gruszecki
CVSS 9.6
EIP-2026-100980 EXPLOITDB text VERIFIED
Alice Modem 1111 - 'rulename' Cross-Site Scripting / Denial of Service
by Moritz Naumann
EIP-2026-113607 EXPLOITDB text VERIFIED
WordPress Plugin bSuite 4.0.7 - Multiple HTML Injection Vulnerabilities
by IHTeam
EIP-2026-111549 EXPLOITDB text VERIFIED
Prontus CMS - 'page' Cross-Site Scripting
by Zerial
EIP-2026-107742 EXPLOITDB text VERIFIED
ICMusic 1.2 - 'music_id' SQL Injection
by kaMtiEz
EIP-2026-107413 EXPLOITDB text VERIFIED
Gilnet News - 'read_more.php' SQL Injection
by Err0R
EIP-2026-112807 EXPLOITDB text
Tugux CMS 1.2 - 'pid' Arbitrary File Deletion
by LiquidWorm
CVE-2011-0546 EXPLOITDB text VERIFIED
Symantec Backup Exec 11.0-13.0 R2 - Unauthenticated NDMP Command Execution via Man-in-the-Middle
Symantec Backup Exec 11.0, 12.0, 12.5, 13.0, and 13.0 R2 does not validate identity information sent between the media server and the remote agent, which allows man-in-the-middle attackers to execute NDMP commands via unspecified vectors.
by Nibin
EIP-2026-111416 EXPLOITDB text VERIFIED
Portix-CMS 1.5.0. rc5 - Local File Inclusion
by Or4nG.M4N
EIP-2026-108588 EXPLOITDB text VERIFIED
Joomla! Component com_voj - SQL Injection
by CoBRa_21
EIP-2026-105209 EXPLOITDB text
appRain Quick Start Edition Core Edition Multiple 0.1.4-Alpha - Cross-Site Scripting
by SecPod Research
EIP-2026-109227 EXPLOITDB text VERIFIED
LuxCal Web Calendar 2.4.2/2.5.0 - SQL Injection
by kaMtiEz
EIP-2026-115223 EXPLOITDB text VERIFIED
ESTsoft ALPlayer 2.0 - ASX Playlist File Handling Buffer Overflow
by LiquidWorm
EIP-2026-108179 EXPLOITDB text
Joomla! 1.6.3 - Cross-Site Request Forgery
by Luis Santana
EIP-2026-105426 EXPLOITDB text VERIFIED
BbZL.php - Remote File Inclusion
by Number 7
EIP-2026-108416 EXPLOITDB text VERIFIED
Joomla! Component com_jr_tfb - 'Controller' Local File Inclusion
by FL0RiX
EIP-2026-105891 EXPLOITDB text VERIFIED
Classified Script - c-BrowseClassified Cross-Site Scripting
by Raghavendra Karthik D
EIP-2026-101411 EXPLOITDB text VERIFIED
Portech MV-372 VoIP Gateway - Multiple Vulnerabilities
by Zsolt Imre
EIP-2026-100274 EXPLOITDB text VERIFIED
DmxReady Secure Document Library 1.2 - SQL Injection
by Bellatrix
CVE-2004-0194 EXPLOITDB text VERIFIED
Adobe Acrobat Reader 5.1 - Remote Code Execution via XFDF Data in PDF
Stack-based buffer overflow in the OutputDebugString function for Adobe Acrobat Reader 5.1 allows remote attackers to execute arbitrary code via a PDF document with XML Forms Data Format (XFDF) data.
by extraexploit
EIP-2026-111053 EXPLOITDB text VERIFIED
PhpFood CMS 2.00 - SQL Injection
by kaMtiEz
EIP-2026-106482 EXPLOITDB text VERIFIED
DmxReady Links Manager 1.2 - SQL Injection
by Bellatrix