Text Exploits

31,386 exploits tracked across all sources.

Sort: Activity Stars
EIP-2026-113956 EXPLOITDB text VERIFIED
WordPress Plugin PhotoSmash Galleries 1.0.x - 'action' Cross-Site Scripting
by High-Tech Bridge SA
EIP-2026-113833 EXPLOITDB text VERIFIED
WordPress Plugin Inline Gallery 0.3.9 - 'do' Cross-Site Scripting
by High-Tech Bridge SA
EIP-2026-113801 EXPLOITDB text VERIFIED
WordPress Plugin GRAND Flash Album Gallery 0.55 - Multiple Vulnerabilities
by High-Tech Bridge SA
EIP-2026-113512 EXPLOITDB text VERIFIED
WordPress Plugin 1 Flash Gallery 0.2.5 - Cross-Site Scripting / SQL Injection
by High-Tech Bridge SA
EIP-2026-111844 EXPLOITDB text
Ruubikcms 1.0.3 - Multiple Vulnerabilities
by Khashayar Fereidani
EIP-2026-111842 EXPLOITDB text VERIFIED
Ruubikcms 1.0.3 - 'head.php' Cross-Site Scripting
by Khashayar Fereidani
EIP-2026-100322 EXPLOITDB text VERIFIED
EzPub Simple Classic ASP CMS - SQL Injection
by p0pc0rn
EIP-2026-105570 EXPLOITDB text
BMForum Myna 6.0 - SQL Injection
by Stephan Sattler
EIP-2026-105378 EXPLOITDB text
Bacula-Web 1.3.x < 5.0.3 - Multiple Vulnerabilities
by b0telh0
EIP-2026-103512 EXPLOITDB text
Hiawatha WebServer 7.4 - Denial of Service
by Rodrigo Escobar
CVE-2011-1427 EXPLOITDB text VERIFIED
Kodak InSite 5.5.2 - Cross-Site Scripting via Language Parameter, HeaderWarning Parameter, or User-Agent Header
Multiple cross-site scripting (XSS) vulnerabilities in Kodak InSite 5.5.2 allow remote attackers to inject arbitrary web script or HTML via the (1) Language parameter to Pages/login.aspx, (2) HeaderWarning parameter to Troubleshooting/DiagnosticReport.asp, or (3) User-Agent header to troubleshooting/speedtest.asp.
by Dionach
CVE-2011-1427 EXPLOITDB text VERIFIED
Kodak InSite 5.5.2 - Cross-Site Scripting via Language Parameter, HeaderWarning Parameter, or User-Agent Header
Multiple cross-site scripting (XSS) vulnerabilities in Kodak InSite 5.5.2 allow remote attackers to inject arbitrary web script or HTML via the (1) Language parameter to Pages/login.aspx, (2) HeaderWarning parameter to Troubleshooting/DiagnosticReport.asp, or (3) User-Agent header to troubleshooting/speedtest.asp.
by Dionach
CVE-2011-1099 EXPLOITDB text
FocalMedia.Net Quick Polls < 1.0.1 - Path Traversal and Arbitrary File Deletion via p Parameter
Multiple directory traversal vulnerabilities in FocalMedia.Net Quick Polls before 1.0.2 allow remote attackers to (1) read arbitrary files via a .. (dot dot) in the p parameter in a preview action to index.php, or (2) delete arbitrary files via a .. (dot dot) in the p parameter in a delete action to index.php.
by Mark Stanislav
EIP-2026-109791 EXPLOITDB text VERIFIED
MySms 1.0 - Multiple Vulnerabilities
by AtT4CKxT3rR0r1ST
EIP-2026-105604 EXPLOITDB text VERIFIED
BoutikOne - 'description.php' SQL Injection
by IRAQ_JAGUAR
CVE-2011-1271 EXPLOITDB HIGH text VERIFIED
Microsoft .NET Framework 3.5 Gold/SP1, 3.5.1, 4.0 - Remote Code Execution via JIT Compiler Null String Handling
The JIT compiler in Microsoft .NET Framework 3.5 Gold and SP1, 3.5.1, and 4.0, when IsJITOptimizerDisabled is false, does not properly handle expressions related to null strings, which allows context-dependent attackers to bypass intended access restrictions, and consequently execute arbitrary code, in opportunistic circumstances by leveraging a crafted application, as demonstrated by (1) a crafted XAML browser application (aka XBAP), (2) a crafted ASP.NET application, or (3) a crafted .NET Framework application, aka ".NET Framework JIT Optimization Vulnerability."
by Brian Mancini
CVSS 7.7
EIP-2026-109192 EXPLOITDB text VERIFIED
Lms Web Ensino - Multiple Input Validation Vulnerabilities
by waKKu
EIP-2026-109138 EXPLOITDB text VERIFIED
Limelight Software - 'article.php' SQL Injection
by eXeSoul
EIP-2026-104934 EXPLOITDB text VERIFIED
ADAN Neuronlabs - 'view.php' SQL Injection
by IRAQ_JAGUAR
EIP-2026-101207 EXPLOITDB text
COMTREND ADSL Router CT-5367 C01_R12 - Remote Code Execution
by Todor Donev
EIP-2026-114490 EXPLOITDB text VERIFIED
xtcModified 1.05 - Multiple HTML Injection / Cross-Site Scripting Vulnerabilities
by High-Tech Bridge SA
EIP-2026-112496 EXPLOITDB text VERIFIED
Support Incident Tracker (SiT!) 3.62 - Multiple Cross-Site Scripting Vulnerabilities
by AutoSec Tools
EIP-2026-111467 EXPLOITDB text VERIFIED
Pragyan CMS 3.0 Beta - Multiple Cross-Site Scripting Vulnerabilities
by High-Tech Bridge SA
EIP-2026-111248 EXPLOITDB text VERIFIED
phpWebSite 1.7.1 - 'local' Cross-Site Scripting
by AutoSec Tools
EIP-2026-107882 EXPLOITDB text VERIFIED
Interleave 5.5.0.2 - 'basicstats.php' Multiple Cross-Site Scripting Vulnerabilities
by AutoSec Tools