Exploitdb Exploits

31,344 exploits tracked across all sources.

Sort: Activity Stars
CVE-2010-4920 EXPLOITDB text VERIFIED
Micronetsoft Rental Property Mgmt <1.0 - SQL Injection
SQL injection vulnerability in detail.asp in Micronetsoft Rental Property Management Website 1.0 allows remote attackers to execute arbitrary SQL commands via the ad_ID parameter.
by L0rd CrusAd3r
EIP-2026-100265 EXPLOITDB text VERIFIED
DMXReady Members Area Manager - Persistent Cross-Site Scripting
by L0rd CrusAd3r
CVE-2010-4894 EXPLOITDB text VERIFIED
chillyCMS 1.1.3 - SQL Injection
SQL injection vulnerability in core/showsite.php in chillyCMS 1.1.3 allows remote attackers to execute arbitrary SQL commands via the name parameter. NOTE: some of these details are obtained from third party information.
by AmnPardaz
CVE-2010-4905 EXPLOITDB text VERIFIED
Softbiz Article Directory Script - SQL Injection
SQL injection vulnerability in article_details.php in Softbiz Article Directory Script allows remote attackers to execute arbitrary SQL commands via the sbiz_id parameter.
by h4ck3r
CVE-2010-4918 EXPLOITDB text
iJoomla Magazine <3.0.1 - RCE
PHP remote file inclusion vulnerability in iJoomla Magazine (com_magazine) component 3.0.1 for Joomla! allows remote attackers to execute arbitrary PHP code via a URL in the config parameter to magazine.functions.php.
by LoSt.HaCkEr
CVE-2010-4902 EXPLOITDB text
Joomla! com_clantools 1.2.3 - SQL Injection
Multiple SQL injection vulnerabilities in the Clantools (com_clantools) component 1.2.3 for Joomla! allow remote attackers to execute arbitrary SQL commands via the (1) squad or (2) showgame parameter to index.php.
by Solidmedia
CVE-2010-4902 EXPLOITDB text
Joomla! com_clantools 1.2.3 - SQL Injection
Multiple SQL injection vulnerabilities in the Clantools (com_clantools) component 1.2.3 for Joomla! allow remote attackers to execute arbitrary SQL commands via the (1) squad or (2) showgame parameter to index.php.
by Solidmedia
CVE-2010-4895 EXPLOITDB text VERIFIED
chillyCMS 1.1.3 - XSS
Cross-site scripting (XSS) vulnerability in core/showsite.php in chillyCMS 1.1.3 allows remote attackers to inject arbitrary web script or HTML via the name parameter (aka the username field). NOTE: some of these details are obtained from third party information.
by AmnPardaz
EIP-2026-102581 EXPLOITDB text VERIFIED
FCrackZip 1.0 - Local Buffer Overflow (PoC)
by 0x6264
EIP-2026-100370 EXPLOITDB text VERIFIED
ifnuke - Multiple Vulnerabilities
by Abysssec
CVE-2010-4921 EXPLOITDB text VERIFIED
DMXReady Polling Booth Manager - SQL Injection
SQL injection vulnerability in inc_pollingboothmanager.asp in DMXReady Polling Booth Manager allows remote attackers to execute arbitrary SQL commands via the QuestionID parameter in a results action.
by L0rd CrusAd3r
EIP-2026-112526 EXPLOITDB text VERIFIED
SyndeoCMS 2.8.02 - Multiple Vulnerabilities (1)
by Abysssec
CVE-2010-4911 EXPLOITDB text VERIFIED
PHP Classifieds Ads - SQL Injection
SQL injection vulnerability in classi/detail.php in PHP Classifieds Ads allows remote attackers to execute arbitrary SQL commands via the sid parameter.
by h4ck3r
CVE-2010-4914 EXPLOITDB text
PHP Classifieds 7.3 - RCE
PHP remote file inclusion vulnerability in tools/phpmailer/class.phpmailer.php in PHP Classifieds 7.3 allows remote attackers to execute arbitrary PHP code via a URL in the lang_path parameter.
by alsa7r
EIP-2026-115440 EXPLOITDB text
Intel Video Codecs 5.0 - Remote Denial of Service
by Matthew Bergin
EIP-2026-115242 EXPLOITDB text
FFDshow - Overflow (SEH) Exception Leading to Null Pointer on Read
by Matthew Bergin
EIP-2026-112250 EXPLOITDB text VERIFIED
smbind 0.4.7 - SQL Injection
by r00t
EIP-2026-111332 EXPLOITDB text VERIFIED
Pligg CMS 1.0.4 - SQL Injection / Cross-Site Scripting
by Bogdan Calin
CVE-2010-3070 EXPLOITDB text VERIFIED
NuSOAP 0.9.5 - XSS
Cross-site scripting (XSS) vulnerability in NuSOAP 0.9.5, as used in MantisBT and other products, allows remote attackers to inject arbitrary web script or HTML via the PATH_INFO to an arbitrary PHP script that uses NuSOAP classes.
by Bogdan Calin
EIP-2026-100604 EXPLOITDB text VERIFIED
visinia 1.3 - Multiple Vulnerabilities
by Abysssec
EIP-2026-112979 EXPLOITDB text
vbShout 5.2.2 - Local/Remote File Inclusion
by fred777
EIP-2026-112566 EXPLOITDB text VERIFIED
TBDev 2.0 - Remote File Inclusion / SQL Injection
by Inj3ct0r
EIP-2026-112021 EXPLOITDB text VERIFIED
Shop a la Cart - Multiple Vulnerabilities
by Ariko-Security
CVE-2010-4877 EXPLOITDB text VERIFIED
OneCMS 2.6.1 - XSS
Cross-site scripting (XSS) vulnerability in index.php in OneCMS 2.6.1 allows remote attackers to inject arbitrary web script or HTML via the view parameter.
by anT!-Tr0J4n
CVE-2010-4899 EXPLOITDB text VERIFIED
CMS WebManager-Pro <8.1 - SQL Injection
SQL injection vulnerability in c.php in CMS WebManager-Pro before 8.1 allows remote attackers to execute arbitrary SQL commands via the id parameter.
by MustLive