Text Exploits

31,386 exploits tracked across all sources.

Sort: Activity Stars
EIP-2026-100229 EXPLOITDB text VERIFIED
Comrie Software Pay Roll Time Sheet & Punch Card - Authentication Bypass
by L0rd CrusAd3r
CVE-2010-4181 EXPLOITDB text
Yaws 1.89 - Path Traversal via Dot Dot Backslash Sequences
Directory traversal vulnerability in Yaws 1.89 allows remote attackers to read arbitrary files via ..\ (dot dot backslash) and other sequences.
by nitr0us
EIP-2026-119055 EXPLOITDB text VERIFIED
Project Jug 1.0.0 - Directory Traversal
by John Leitch
EIP-2026-118920 EXPLOITDB text VERIFIED
Mongoose Web Server 2.11 - Directory Traversal
by nitr0us
EIP-2026-114404 EXPLOITDB text VERIFIED
XAMPP 1.7.3 - Multiple Vulnerabilities
by TheLeader
CVE-2010-3977 EXPLOITDB text VERIFIED
cforms 11.5 - Cross-Site Scripting via rs and rsargs[] Parameters
Multiple cross-site scripting (XSS) vulnerabilities in wp-content/plugins/cforms/lib_ajax.php in cforms WordPress plugin 11.5 allow remote attackers to inject arbitrary web script or HTML via the (1) rs and (2) rsargs[] parameters.
by Wagner Elias
EIP-2026-112246 EXPLOITDB text VERIFIED
SmartOptimizer - Null Character Remote Information Disclosure
by Francois Harvey
EIP-2026-106815 EXPLOITDB text VERIFIED
Elastix 2.0.2 - Multiple Cross-Site Scripting Vulnerabilities
by dave b
CVE-2010-4269 EXPLOITDB text
Collabtive 0.65 - SQL Injection via managechat.php chatstart[USERTOID] Cookie
SQL injection vulnerability in managechat.php in Collabtive 0.65 allows remote attackers to execute arbitrary SQL commands via the chatstart[USERTOID] cookie in a pull action.
by Anatolia Security
EIP-2026-103923 EXPLOITDB text VERIFIED
Home File Share Server 0.7.2 32 - Directory Traversal
by John Leitch
EIP-2026-100281 EXPLOITDB text VERIFIED
douran portal 3.9.7.55 - Multiple Vulnerabilities
by ITSecTeam
EIP-2026-100280 EXPLOITDB text VERIFIED
Douran Portal 3.9.7.55 - Arbitrary File Upload / Cross-Site Scripting
by ITSecTeam
EIP-2026-119149 EXPLOITDB text VERIFIED
SmallFTPd 1.0.3 - Directory Traversal
by Yakir Wizman
CVE-2010-4272 EXPLOITDB text VERIFIED
Pulse Infotech Sponsor Wall (com_sponsorwall) 1.1 - SQL Injection via catid Parameter
SQL injection vulnerability in the Pulse Infotech Sponsor Wall (com_sponsorwall) component 1.1 for Joomla! allows remote attackers to execute arbitrary SQL commands via the catid parameter to index.php.
by FL0RiX
CVE-2010-4268 EXPLOITDB text VERIFIED
Pulse Infotech Flip Wall (com_flipwall) 1.1 - SQL Injection via catid Parameter
SQL injection vulnerability in the Pulse Infotech Flip Wall (com_flipwall) component 1.1 for Joomla! allows remote attackers to execute arbitrary SQL commands via the catid parameter to index.php.
by FL0RiX
EIP-2026-114647 EXPLOITDB text
Zoopeer 0.1/0.2 - 'FCKeditor' Arbitrary File Upload
by Net.Edit0r
EIP-2026-112157 EXPLOITDB text
Simpli Easy (AFC Simple) NewsLetter 4.2 - Cross-Site Scripting / Information Leakage
by p0deje
EIP-2026-108396 EXPLOITDB text VERIFIED
Joomla! Component com_jfuploader < 2.12 - Arbitrary File Upload
by Setr0nix
EIP-2026-106004 EXPLOITDB text VERIFIED
CMS WebManager-Pro 7.4.3 - Cross-Site Scripting / SQL Injection
by MustLive
EIP-2026-118639 EXPLOITDB text VERIFIED
Home FTP Server 1.11.1.149 - (Authenticated) Directory Traversal
by chr1x
EIP-2026-116390 EXPLOITDB text VERIFIED
TeamSpeak 2.0.32.60 - Memory Corruption
by Jokaim & nSense
EIP-2026-112626 EXPLOITDB text
TFTgallery 0.13.1 - Local File Inclusion
by Havok
EIP-2026-111574 EXPLOITDB text
Pub-Me CMS - Blind SQL Injection
by H4f
EIP-2026-107068 EXPLOITDB text VERIFIED
Feindura CMS Groupware - Multiple Local File Inclusion / Cross-Site Scripting Vulnerabilities
by Justanotherhacker.com
EIP-2026-118902 EXPLOITDB text VERIFIED
MinaliC WebServer 1.0 - Remote Source Disclosure / File Download
by Dr_IDE