Text Exploits

31,386 exploits tracked across all sources.

Sort: Activity Stars
EIP-2026-106790 EXPLOITDB text VERIFIED
eFront 3.6.9 - 'submitScore.php' Cross-Site Scripting
by John Leitch
EIP-2026-106789 EXPLOITDB text VERIFIED
eFront 3.6.9 - 'scripts.php' Local File Inclusion
by AutoSec Tools
EIP-2026-105103 EXPLOITDB text VERIFIED
allocPSA 1.7.4 - '/login/login.php' Cross-Site Scripting
by AutoSec Tools
EIP-2026-104521 EXPLOITDB text
Novell Netware eDirectory - Denial of Service
by nSense
EIP-2026-101498 EXPLOITDB text VERIFIED
XtreamerPRO Media-player 2.6.0/2.7.0 - Multiple Vulnerabilities
by Itzik Chen
EIP-2026-100437 EXPLOITDB text VERIFIED
Mitel Audio and Web Conferencing 4.4.3.0 - Multiple Cross-Site Scripting Vulnerabilities
by Richard Brain
EIP-2026-108502 EXPLOITDB text VERIFIED
Joomla! Component com_question - SQL Injection
by NeX HaCkEr
EIP-2026-107204 EXPLOITDB text VERIFIED
frame-oshop - SQL Injection
by -SmoG-
EIP-2026-113715 EXPLOITDB text
WordPress Plugin EditorMonkey 2.5 - 'FCKeditor' Arbitrary File Upload
by kaMtiEz
EIP-2026-104251 EXPLOITDB text VERIFIED
Flash Tag Cloud And MT-Cumulus Plugin - 'tagcloud' Cross-Site Scripting
by MustLive
EIP-2026-101256 EXPLOITDB text
DreamBox DM500(+) - Arbitrary File Download
by LiquidWorm
CVE-2011-1511 EXPLOITDB text VERIFIED
Oracle Sun Products Suite <3.0.1 - RCE
Unspecified vulnerability in the Oracle GlassFish Server component in Oracle Sun Products Suite 2.1.1 and 3.0.1 allows remote attackers to execute arbitrary code via unknown vectors related to Administration.
by Core Security
EIP-2026-116244 EXPLOITDB text VERIFIED
SlimPDF Reader - Denial of Service (PoC)
by Nicolas Krassas
EIP-2026-106492 EXPLOITDB text VERIFIED
DocMGR 1.1.2 - 'history.php' Cross-Site Scripting
by AutoSec Tools
EIP-2026-105230 EXPLOITDB text VERIFIED
Argyle Social - Multiple Cross-Site Scripting Vulnerabilities
by High-Tech Bridge SA
EIP-2026-100889 EXPLOITDB text VERIFIED
showoff! digital media software 1.5.4 - Multiple Vulnerabilities
by dr_insane
EIP-2026-116237 EXPLOITDB text
serva32 1.2.00 rc1 - Multiple Vulnerabilities
by AutoSec Tools
EIP-2026-112775 EXPLOITDB text VERIFIED
Traidnt UP 2.0 - 'view.php' SQL Injection
by ScOrPiOn
EIP-2026-111400 EXPLOITDB text VERIFIED
poMMo Aardvark PR16.1 - Multiple Cross-Site Scripting Vulnerabilities
by High-Tech Bridge SA
EIP-2026-105697 EXPLOITDB text VERIFIED
Calendarix 0.8.20080808 - Multiple Cross-Site Scripting / SQL Injections
by High-Tech Bridge SA
CVE-2011-1772 EXPLOITDB text VERIFIED
Apache Struts 2.x < 2.2.3 - Cross-Site Scripting via Action Name or s:submit Element Attributes
Multiple cross-site scripting (XSS) vulnerabilities in XWork in Apache Struts 2.x before 2.2.3, and OpenSymphony XWork in OpenSymphony WebWork, allow remote attackers to inject arbitrary web script or HTML via vectors involving (1) an action name, (2) the action attribute of an s:submit element, or (3) the method attribute of an s:submit element.
by Dr. Marian Ventuneac
EIP-2026-114577 EXPLOITDB text VERIFIED
ZAPms 1.22 - 'nick' SQL Injection
by KedAns-Dz
EIP-2026-108576 EXPLOITDB text VERIFIED
Joomla! Component com_versioning - SQL Injection
by the_cyber_nuxbie
EIP-2026-108366 EXPLOITDB text VERIFIED
Joomla! Component com_hello - SQL Injection
by the_cyber_nuxbie
EIP-2026-107612 EXPLOITDB text VERIFIED
HOMEPIMA Design - 'filedown.php' Local File Disclosure
by KnocKout