Text Exploits

31,386 exploits tracked across all sources.

Sort: Activity Stars
CVE-2010-3631 EXPLOITDB text VERIFIED
Adobe Acrobat and Reader 8.x-8.2.4 and 9.x-9.3 - Remote Code Execution
Array index error in Adobe Reader and Acrobat 8.x before 8.2.5 and 9.x before 9.4 on Mac OS X allows attackers to execute arbitrary code via unspecified vectors.
by Knud & nSense
EIP-2026-112413 EXPLOITDB text VERIFIED
SquirrelMail Virtual Keyboard Plugin - 'vkeyboard.php' Cross-Site Scripting
by Moritz Naumann
EIP-2026-112368 EXPLOITDB text VERIFIED
SPAW Editor 2.0.8.1 - Local File Inclusion
by soorakh kos
EIP-2026-106846 EXPLOITDB text VERIFIED
Elxis 2009.2 rev2631 - SQL Injection
by High-Tech Bridge SA
EIP-2026-106298 EXPLOITDB text VERIFIED
CuteNews - 'page' Local File Inclusion
by eidelweiss
CVE-2010-4857 EXPLOITDB text
CAG CMS 0.2 Beta - SQL Injection via click.php itemid Parameter
SQL injection vulnerability in click.php in CAG CMS 0.2 Beta allows remote attackers to execute arbitrary SQL commands via the itemid parameter.
by Shamus
EIP-2026-112856 EXPLOITDB text VERIFIED
Uebimiau Webmail 3.2.0-2.0 - Local File Inclusion
by blake
CVE-2010-3201 EXPLOITDB text VERIFIED
NetWin SurgeMail < 4.3g - Cross-Site Scripting via Username Parameter
Cross-site scripting (XSS) vulnerability in NetWin Surgemail before 4.3g allows remote attackers to inject arbitrary web script or HTML via the username_ex parameter to the surgeweb program.
by Kerem Kocaer
EIP-2026-111415 EXPLOITDB text VERIFIED
Portili Personal and Team Wiki 1.14 - Multiple Vulnerabilities (2)
by Abysssec
EIP-2026-108023 EXPLOITDB text VERIFIED
ITS SCADA - 'Username' SQL Injection
by Eugene Salov
EIP-2026-107049 EXPLOITDB text VERIFIED
FAQMasterFlex 1.2 - SQL Injection
by cyb3r.anbu
CVE-2010-4858 EXPLOITDB text VERIFIED
DNET Live-Stats <0.8 - Path Traversal
Directory traversal vulnerability in team.rc5-72.php in DNET Live-Stats 0.8 allows remote attackers to read arbitrary files via a .. (dot dot) in the showlang parameter.
by blake
EIP-2026-105272 EXPLOITDB text VERIFIED
Aspect Ratio CMS - Blind SQL Injection
by Stephan Sattler
EIP-2026-112709 EXPLOITDB text VERIFIED
TinyMCE MCFileManager 2.1.2 - Arbitrary File Upload
by Hackeri-AL
EIP-2026-105211 EXPLOITDB text VERIFIED
Aprox CMS Engine 6.0 - Multiple Vulnerabilities
by Stephan Sattler
EIP-2026-102201 EXPLOITDB text VERIFIED
iOS FileApp < 2.0 - Directory Traversal
by m0ebiusc0de
EIP-2026-100593 EXPLOITDB text VERIFIED
TradeMC E-Ticaret - SQL Injection / Cross-Site Scripting
by KnocKout
CVE-2010-3425 EXPLOITDB text VERIFIED
SmarterStats 5.3 - Cross-Site Scripting via frmHelp.aspx url Parameter
Cross-site scripting (XSS) vulnerability in UserControls/Popups/frmHelp.aspx in SmarterStats 5.3, 5.3.3819, and possibly other 5.3 versions, allows remote attackers to inject arbitrary web script or HTML via the url parameter.
by sqlhacker
CVE-2010-3486 EXPLOITDB text VERIFIED
SmarterMail 7.1.3876 - Path Traversal
Directory traversal vulnerability in FileStorageUpload.ashx in SmarterMail 7.1.3876 allows remote attackers to read arbitrary files via a (1) ../ (dot dot slash), (2) %5C (encoded backslash), or (3) %255c (double-encoded backslash) in the name parameter.
by sqlhacker
CVE-2010-1899 EXPLOITDB text VERIFIED
Internet Information Services 5.1-7.5 - Denial of Service via Crafted ASP Request
Stack consumption vulnerability in the ASP implementation in Microsoft Internet Information Services (IIS) 5.1, 6.0, 7.0, and 7.5 allows remote attackers to cause a denial of service (daemon outage) via a crafted request, related to asp.dll, aka "IIS Repeated Parameter Request Denial of Service Vulnerability."
by kingcope
EIP-2026-114595 EXPLOITDB text VERIFIED
zen cart 1.3.9f - Multiple Vulnerabilities
by LiquidWorm
EIP-2026-114594 EXPLOITDB text VERIFIED
Zen Cart 1.3.9f - 'typefilter' Local File Inclusion
by LiquidWorm
EIP-2026-112681 EXPLOITDB text VERIFIED
Tiki Wiki CMS Groupware 5.2 - Multiple Vulnerabilities
by John Leitch
EIP-2026-111170 EXPLOITDB text VERIFIED
phpMyShopping 1.0.1505 - Multiple Vulnerabilities
by Metropolis
EIP-2026-108071 EXPLOITDB text VERIFIED
jCart 1.1 - Multiple Cross-Site Scripting / Cross-Site Request Forgery/Open Redirect Vulnerabilities
by p0deje