Text Exploits
31,386 exploits tracked across all sources.
Sybase Advantage Server 10.0.0.3 - 'ADS' Process Off-by-One Buffer Overflow
by Luigi Auriemma
WordPress Plugin Pretty Link Lite 1.4.56 - Multiple SQL Injections
by MaKyOtOx
Mambo 4.6.x - Multiple Cross-Site Scripting Vulnerabilities
by Aung Khant
Joomla! Component com_morfeoshow - 'idm' SQL Injection
by Th3.xin0x
WordPress Plugin Beer Recipes 1.0 - Cross-Site Scripting
by TheUzuki.'
Joomla! Component JoomlaXi - Persistent Cross-Site Scripting
by Karthik R
AzeoTech DAQFactory < 5.85 - Unauthenticated Denial of Service via Signal Handling
AzeoTech DAQFactory before 5.85 (Build 1842) does not perform authentication for certain signals, which allows remote attackers to cause a denial of service (system reboot or shutdown) via a signal.
by Knud Erik Hojgaard
IBM Web Application Firewall - Bypass
by Trustwave's SpiderLabs
Sitemagic CMS - 'SMTpl' Directory Traversal
by Andrea Bocchetti
Nodesforum - '_nodesforum_node' SQL Injection
by Andrea Bocchetti
BrewBlogger 2.3.2 - Multiple Vulnerabilities
by Brendan Coles
2Point Solutions - 'cmspages.php' SQL Injection
by Newbie Campuz
ManageEngine ServiceDesk Plus <= 8.0.0.12 - Path Traversal via FileDownload.jsp FILENAME Parameter
Directory traversal vulnerability in FileDownload.jsp in ManageEngine ServiceDesk Plus 8.0.0.12 and earlier allows remote attackers to read arbitrary files via a .. (dot dot) in the FILENAME parameter. NOTE: this might overlap the US-CERT VU#543310 issue.
by xistence
ManageEngine ServiceDesk Plus <= 8.0.0.12 - Path Traversal via FileDownload.jsp FILENAME Parameter
Directory traversal vulnerability in FileDownload.jsp in ManageEngine ServiceDesk Plus 8.0.0.12 and earlier allows remote attackers to read arbitrary files via a .. (dot dot) in the FILENAME parameter. NOTE: this might overlap the US-CERT VU#543310 issue.
by Keith Lee
FanUpdate 3.0 - 'pageTitle' Cross-Site Scripting
by High-Tech Bridge SA
Cachelogic Expired Domains Script 1.0 - Multiple Vulnerabilities
by Brendan Coles
By Source