Text Exploits

31,386 exploits tracked across all sources.

Sort: Activity Stars
EIP-2026-112612 EXPLOITDB text VERIFIED
TextPattern 4.2 - 'index.php' Cross-Site Scripting
by kurdish hackers team
CVE-2011-1723 EXPLOITDB text VERIFIED
Redmine 1.0.1-1.1.1 - Cross-Site Scripting via PATH_INFO
Cross-site scripting (XSS) vulnerability in app/views/layouts/base.rhtml in Redmine 1.0.1 through 1.1.1 allows remote attackers to inject arbitrary web script or HTML via the PATH_INFO to projects/hg-helloworld/news/. NOTE: some of these details are obtained from third party information.
by Mesut Timur
EIP-2026-107494 EXPLOITDB text VERIFIED
greenpants 0.1.7 - Multiple Vulnerabilities
by Ptrace Security
CVE-2011-1715 EXPLOITDB text
qooxdoo 1.3 - Path Traversal via Delay.php File Parameter
Directory traversal vulnerability in framework/source/resource/qx/test/part/delay.php in QooxDoo 1.3 and possibly other versions, as used in eyeOS 2.2 and 2.3, and possibly other products allows remote attackers to read arbitrary files via ..%2f (encoded dot dot) sequences in the file parameter.
by AutoSec Tools
EIP-2026-106567 EXPLOITDB text VERIFIED
Dream Vision Technologies Web Portal - SQL Injection
by eXeSoul
CVE-2011-1669 EXPLOITDB text
WP Custom Pages <0.5.0.1 - Path Traversal
Directory traversal vulnerability in wp-download.php in the WP Custom Pages module 0.5.0.1 for WordPress allows remote attackers to read arbitrary files via ..%2F (encoded dot dot) sequences in the url parameter.
by AutoSec Tools
EIP-2026-112921 EXPLOITDB text VERIFIED
UseBB 1.0.11 - 'admin.php' Local File Inclusion
by High-Tech Bridge SA
EIP-2026-112813 EXPLOITDB text
Tutorialms 1.4 - 'show' SQL Injection
by LiquidWorm
CVE-2011-5160 EXPLOITDB text
OpenEMR 4 - Cross-Site Scripting via Site Parameter
Cross-site scripting (XSS) vulnerability in setup.php in OpenEMR 4 allows remote attackers to inject arbitrary web script or HTML via the site parameter.
by AutoSec Tools
EIP-2026-106820 EXPLOITDB text VERIFIED
Eleanor CMS - Cross-Site Scripting / Multiple SQL Injections
by High-Tech Bridge SA
CVE-2009-5065 EXPLOITDB text VERIFIED
feedparser < 5.0 - Cross-Site Scripting via Nested CDATA Stanzas
Cross-site scripting (XSS) vulnerability in feedparser.py in Universal Feed Parser (aka feedparser or python-feedparser) before 5.0 allows remote attackers to inject arbitrary web script or HTML via vectors involving nested CDATA stanzas.
by fazalmajid
EIP-2026-114513 EXPLOITDB text VERIFIED
Yaws-Wiki 1.88-1 - Multiple Cross-Site Scripting / HTML Injection Vulnerabilities
by Michael Brooks
EIP-2026-114462 EXPLOITDB text VERIFIED
XOOPS 2.5 - 'banners.php' Multiple Local File Inclusions
by KedAns-Dz
EIP-2026-114281 EXPLOITDB text VERIFIED
WordPress Plugin WPwizz AdWizz Plugin 1.0 - 'link' Cross-Site Scripting
by John Leitch
EIP-2026-110801 EXPLOITDB text VERIFIED
PHP-Fusion - 'article_id' SQL Injection
by KedAns-Dz
EIP-2026-109691 EXPLOITDB text VERIFIED
MyBB 1.4/1.6 - Multiple Vulnerabilities
by MustLive
EIP-2026-107352 EXPLOITDB text VERIFIED
Gazelle CMS 1.0 - Cross-Site Scripting / SQL Injection
by kurdish hackers team
EIP-2026-106491 EXPLOITDB text
DoceboLms 4.0.4 - Multiple Persistent Cross-Site Scripting Vulnerabilities
by LiquidWorm
CVE-2011-5025 EXPLOITDB text
Yaws 1.88 - Cross-Site Scripting via Wiki Application Parameters
Multiple cross-site scripting (XSS) vulnerabilities in the wiki application in Yaws 1.88 allow remote attackers to inject arbitrary web script or HTML via (1) the tag parameter to editTag.yaws, (2) the index parameter to showOldPage.yaws, (3) the node parameter to allRefsToMe.yaws, or (4) the text parameter to editPage.yaws.
by Michael Brooks
EIP-2026-102135 EXPLOITDB text
ZO Tech Multiple Print Servers - Cross-Site Scripting
by b0telh0
EIP-2026-102065 EXPLOITDB text
TP-Link TL-PS110U / TL-PS110P - Cross-Site Scripting
by b0telh0
EIP-2026-101923 EXPLOITDB text
Planex Mini-300PU & Mini100s - Cross-Site Scripting
by b0telh0
EIP-2026-101921 EXPLOITDB text
Planet FPS-1101 - Cross-Site Scripting
by b0telh0
EIP-2026-101838 EXPLOITDB text
Longshine Multiple Print Servers - Cross-Site Scripting
by b0telh0
EIP-2026-101714 EXPLOITDB text
Encore ENPS-2012 - Cross-Site Scripting
by b0telh0