Exploitdb Exploits

31,344 exploits tracked across all sources.

Sort: Activity Stars
CVE-2010-3145 EXPLOITDB text
Microsoft BitLocker Drive Encryption API - Privilege Escalation
Untrusted search path vulnerability in the BitLocker Drive Encryption API, as used in sdclt.exe in Backup Manager in Microsoft Windows Vista SP1 and SP2, allows local users to gain privileges via a Trojan horse fveapi.dll file in the current working directory, as demonstrated by a directory that contains a Windows Backup Catalog (.wbcat) file, aka "Backup Manager Insecure Library Loading Vulnerability."
by Beenu Arora
CVE-2010-3144 EXPLOITDB text VERIFIED
Microsoft Windows XP/SP3-Server 2003 SP2 - Privilege Escalation
Untrusted search path vulnerability in the Internet Connection Signup Wizard in Microsoft Windows XP SP2 and SP3 and Server 2003 SP2 allows local users to gain privileges via a Trojan horse smmscrpt.dll file in the current working directory, as demonstrated by a directory that contains an ISP or INS file, aka "Internet Connection Signup Wizard Insecure Library Loading Vulnerability."
by Beenu Arora
EIP-2026-115254 EXPLOITDB text
Flash Movie Player 1.5 - File Magic Denial of Service
by Matthew Bergin
EIP-2026-112095 EXPLOITDB text VERIFIED
Simple Forum PHP - Multiple Vulnerabilities
by arnab_s
EIP-2026-105870 EXPLOITDB text
ClanSphere 2010 - Multiple Vulnerabilities
by Sweet
EIP-2026-105511 EXPLOITDB text VERIFIED
BlastChat Client 3.3 - Cross-Site Scripting
by Aung Khant
EIP-2026-103389 EXPLOITDB text VERIFIED
Adobe Acrobat Reader < 9.x - Memory Corruption
by ITSecTeam
EIP-2026-108169 EXPLOITDB text
Joomla! 1.5 - URL Redirecting
by Mr.MLL
EIP-2026-103999 EXPLOITDB text VERIFIED
Nagios XI - 'users.php' SQL Injection
by Adam Baldwin
EIP-2026-109155 EXPLOITDB text
Link CMS - SQL Injection
EIP-2026-108611 EXPLOITDB text VERIFIED
Joomla! Component com_zoomportfolio - SQL Injection
by Chip d3 bi0s
EIP-2026-107351 EXPLOITDB text VERIFIED
Gazelle CMS - Multiple Vulnerabilities
by Sweet
CVE-2010-4882 EXPLOITDB text VERIFIED
Auto CMS 1.6 - XSS
Cross-site scripting (XSS) vulnerability in autocms.php in Auto CMS 1.6 allows remote attackers to inject arbitrary web script or HTML via the sitetitle parameter.
by High-Tech Bridge SA
EIP-2026-105180 EXPLOITDB text VERIFIED
AneCMS 1.0/1.3 - 'register/next' SQL Injection
by Sweet
EIP-2026-105177 EXPLOITDB text
AneCMS - '/registre/next' SQL Injection
by Sweet
EIP-2026-104845 EXPLOITDB text
4Images 1.7.8 - Remote File Inclusion
by LoSt.HaCkEr
EIP-2026-100456 EXPLOITDB text VERIFIED
netStartEnterprise 4.0 - SQL Injection
by L1nK
EIP-2026-108648 EXPLOITDB text VERIFIED
Joomla! Component Fabrik - SQL Injection
by Mkr0x
EIP-2026-108610 EXPLOITDB text VERIFIED
Joomla! Component com_zina - SQL Injection
by Th3 RDX
EIP-2026-108221 EXPLOITDB text
Joomla! Component Biblioteca 1.0 Beta - Multiple SQL Injections
by Salvatore Fresta
EIP-2026-100578 EXPLOITDB text VERIFIED
T-dreams Announcement Script - SQL Injection
by Br0wn Sug4r
EIP-2026-108343 EXPLOITDB text VERIFIED
Joomla! Component com_extcalendar - Blind SQL Injection
by Lagripe-Dz
CVE-2010-3683 EXPLOITDB text VERIFIED
Mysql - Denial of Service
Oracle MySQL 5.1 before 5.1.49 and 5.5 before 5.5.5 sends an OK packet when a LOAD DATA INFILE request generates SQL errors, which allows remote authenticated users to cause a denial of service (mysqld daemon crash) via a crafted request.
by Elena Stepanova
CVE-2010-3679 EXPLOITDB text VERIFIED
Mysql - Resource Management Error
Oracle MySQL 5.1 before 5.1.49 allows remote authenticated users to cause a denial of service (mysqld daemon crash) via certain arguments to the BINLOG command, which triggers an access of uninitialized memory, as demonstrated by valgrind.
by Shane Bester
CVE-2010-3681 EXPLOITDB text VERIFIED
Mysql - Denial of Service
Oracle MySQL 5.1 before 5.1.49 and 5.5 before 5.5.5 allows remote authenticated users to cause a denial of service (mysqld daemon crash) by using the HANDLER interface and performing "alternate reads from two indexes on a table," which triggers an assertion failure.
by Matthias Leich