Exploitdb Exploits

31,344 exploits tracked across all sources.

Sort: Activity Stars
EIP-2026-115766 EXPLOITDB text
Microsoft Reader 2.1.1.3143 - Integer Overflow (2)
by Luigi Auriemma
EIP-2026-115765 EXPLOITDB text
Microsoft Reader 2.1.1.3143 - Integer Overflow (1)
by Luigi Auriemma
EIP-2026-115764 EXPLOITDB text
Microsoft Reader 2.1.1.3143 - Heap Overflow
by Luigi Auriemma
EIP-2026-115763 EXPLOITDB text
Microsoft Reader 2.1.1.3143 - Array Overflow
by Luigi Auriemma
EIP-2026-115660 EXPLOITDB text VERIFIED
Microsoft Host Integration Server 8.5.4224.0 - Denial of Service
by Luigi Auriemma
EIP-2026-114353 EXPLOITDB text VERIFIED
WordPress Theme The Gazette Edition 2.9.4 - Multiple Vulnerabilities
by MustLive
EIP-2026-114079 EXPLOITDB text VERIFIED
WordPress Plugin Spellchecker 3.1 - '/general.php' Local/Remote File Inclusion
by Dr Trojan
EIP-2026-113348 EXPLOITDB text VERIFIED
Website Baker 2.8.1 - Multiple SQL Injections
by High-Tech Bridge SA
EIP-2026-111348 EXPLOITDB text VERIFIED
Plogger 1.0 RC1 - 'gallery_name' Cross-Site Scripting
by High-Tech Bridge SA
CVE-2011-2007 EXPLOITDB text VERIFIED
Microsoft HIS <2010 - DoS
Microsoft Host Integration Server (HIS) 2004 SP1, 2006 SP1, 2009, and 2010 allows remote attackers to cause a denial of service (SNA Server service outage) via crafted TCP or UDP traffic, aka "Endless Loop DoS in snabase.exe Vulnerability."
by Luigi Auriemma
EIP-2026-114338 EXPLOITDB text VERIFIED
WordPress Theme Live Wire 2.3.1 - Multiple Vulnerabilities
by MustLive
EIP-2026-108950 EXPLOITDB text
K-Links - Link Directory Script SQL Injection
by R3d-D3V!L
EIP-2026-106921 EXPLOITDB text VERIFIED
Etki Video PRO 2.0 - 'kategori.asp?cat' SQL Injection
by Kurd-Team
EIP-2026-106920 EXPLOITDB text VERIFIED
Etki Video PRO 2.0 - 'izle.asp?id' SQL Injection
by Kurd-Team
CVE-2011-0285 EXPLOITDB text VERIFIED
MIT Kerberos 5 - Improper Input Validation
The process_chpw_request function in schpw.c in the password-changing functionality in kadmind in MIT Kerberos 5 (aka krb5) 1.7 through 1.9 frees an invalid pointer, which allows remote attackers to execute arbitrary code or cause a denial of service (daemon crash) via a crafted request that triggers an error condition.
by Felipe Ortega
CVE-2011-1496 EXPLOITDB text
tmux <1.4 - Privilege Escalation
tmux 1.3 and 1.4 does not properly drop group privileges, which allows local users to gain utmp group privileges via a filename to the -S command-line option.
by ph0x90bic
EIP-2026-100247 EXPLOITDB text VERIFIED
Dimac CMS 1.3 XS - 'default.asp' SQL Injection
by KedAns-Dz
EIP-2026-111387 EXPLOITDB text
Point Market System 3.1x vBulletin plugin - SQL Injection
by Net.Edit0r
EIP-2026-109956 EXPLOITDB text VERIFIED
Nooms CMS 1.1.1 - Cross-Site Request Forgery
by loneferret
EIP-2026-108742 EXPLOITDB text
Joomla! Component joomlacontenteditor - Blind SQL Injection
by eidelweiss
EIP-2026-106781 EXPLOITDB text VERIFIED
eForum 1.1 - 'eforum.php' Arbitrary File Upload
by QSecure
EIP-2026-103533 EXPLOITDB text VERIFIED
Libmodplug ReadS3M - Stack Overflow
by SEC Consult
EIP-2026-113157 EXPLOITDB text VERIFIED
vTiger CRM 5.2.1 - 'sortfieldsjson.php' Local File Inclusion
by John Leitch
EIP-2026-113118 EXPLOITDB text VERIFIED
viscacha 0.8.1 - Multiple Vulnerabilities
by High-Tech Bridge SA
EIP-2026-111496 EXPLOITDB text VERIFIED
PrestaShop 1.3.6 - 'cms.php' Remote File Inclusion
by KedAns-Dz