Exploitdb Exploits
31,344 exploits tracked across all sources.
Livezilla - XSS
Cross-site scripting (XSS) vulnerability in the lz_tracking_set_sessid function in templates/jscript/jstrack.tpl in LiveZilla 3.2.0.2 allows remote attackers to inject arbitrary web script or HTML via the livezilla parameter in a track action to server.php.
by Ulisses Castro
Sigma Portal - 'ShowObjectPicture.aspx' Denial of Service
by Pouya Daneshmand
CruxCMS 3.0 - Multiple Input Validation Vulnerabilities
by ToXiC
Vacation Rental Script 4.0 - Cross-Site Request Forgery
by OnurTURKESHAN
Pligg CMS 1.1.2 - Blind SQL Injection / Cross-Site Scripting
by Michael Brooks
LoveCMS 1.6.2 Final - Multiple Local File Inclusions
by cOndemned
Joomla! Component com_xmovie 1.0 - Local File Inclusion
by KelvinX
IBM Tivoli Access Manager 6.1.1 for E-Business - Directory Traversal
by anonymous
Social Share - 'search' Cross-Site Scripting
by Aliaksandr Hartsuyeu
MyBB <1.6.1 - SQL Injection
Multiple SQL injection vulnerabilities in MyBB (aka MyBulletinBoard) before 1.6.1 allow remote attackers to execute arbitrary SQL commands via the keywords parameter in a (1) do_search action to search.php or (2) do_stuff action to private.php. NOTE: the vendor disputes this issue, saying "Although this doesn't lead to an SQL injection, it does provide a general MyBB SQL error.
by Aung Khant
MyBB <1.6.1 - SQL Injection
Multiple SQL injection vulnerabilities in MyBB (aka MyBulletinBoard) before 1.6.1 allow remote attackers to execute arbitrary SQL commands via the keywords parameter in a (1) do_search action to search.php or (2) do_stuff action to private.php. NOTE: the vendor disputes this issue, saying "Although this doesn't lead to an SQL injection, it does provide a general MyBB SQL error.
by Aung Khant
Joomla! Component com_ponygallery - Remote File Inclusion
by AtT4CKxT3rR0r1ST
Joomla! Component com_adsmanager - Remote File Inclusion
by AtT4CKxT3rR0r1ST
IPN Development Handler 2.0 - Multiple Vulnerabilities
by AtT4CKxT3rR0r1ST
By Source