Exploitdb Exploits

31,344 exploits tracked across all sources.

Sort: Activity Stars
CVE-2010-3023 EXPLOITDB text VERIFIED
DiamondList 0.1.6 - XSS
Multiple cross-site scripting (XSS) vulnerabilities in DiamondList 0.1.6, and possibly earlier, allow remote attackers to inject arbitrary web script or HTML via the (1) category[description] parameter to user/main/update_category, which is not properly handled by _app/views/categories/index.html.erb; and the (2) setting[site_title] parameter to user/main/update_settings, which is not properly handled by _app/views/settings/_list_settings.rhtml.
by High-Tech Bridge SA
CVE-2010-3023 EXPLOITDB text VERIFIED
DiamondList 0.1.6 - XSS
Multiple cross-site scripting (XSS) vulnerabilities in DiamondList 0.1.6, and possibly earlier, allow remote attackers to inject arbitrary web script or HTML via the (1) category[description] parameter to user/main/update_category, which is not properly handled by _app/views/categories/index.html.erb; and the (2) setting[site_title] parameter to user/main/update_settings, which is not properly handled by _app/views/settings/_list_settings.rhtml.
by High-Tech Bridge SA
CVE-2008-5949 EXPLOITDB text VERIFIED
cCTiddly 1.7.4-1.7.6 - RCE
Multiple PHP remote file inclusion vulnerabilities in ccTiddly 1.7.4 and 1.7.6 allow remote attackers to execute arbitrary PHP code via a URL in the cct_base parameter to (1) index.php; (2) handle/proxy.php; (3) header.php, (4) include.php, and (5) workspace.php in includes/; and (6) plugins/RSS/files/rss.php.
by eidelweiss
CVE-2010-4955 EXPLOITDB text VERIFIED
APBoard <2.1.0 - SQL Injection
SQL injection vulnerability in board/board.php in APBoard Developers APBoard 2.1.0 and earlier allows remote attackers to execute arbitrary SQL commands via the id parameter, a different vector than CVE-2006-3078.
by secret
CVE-2010-2809 EXPLOITDB text VERIFIED
Uzbl <2010.08.05 - Command Injection
The default configuration of the <Button2> binding in Uzbl before 2010.08.05 does not properly use the @SELECTED_URI feature, which allows user-assisted remote attackers to execute arbitrary commands via a crafted HREF attribute of an A element in an HTML document.
by Chuzz
EIP-2026-100283 EXPLOITDB text VERIFIED
DT Centrepiece 4.5 - Cross-Site Scripting / Security Bypass
by High-Tech Bridge SA
CVE-2010-1797 EXPLOITDB text VERIFIED
Apple Iphone OS - Memory Corruption
Multiple stack-based buffer overflows in the cff_decoder_parse_charstrings function in the CFF Type2 CharStrings interpreter in cff/cffgload.c in FreeType before 2.4.2, as used in Apple iOS before 4.0.2 on the iPhone and iPod touch and before 3.2.2 on the iPad, allow remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via crafted CFF opcodes in embedded fonts in a PDF document, as demonstrated by JailbreakMe. NOTE: some of these details are obtained from third party information.
by jailbreakme
CVE-2010-2709 EXPLOITDB text VERIFIED
HP OpenView Network Node Manager <7.53 - Buffer Overflow
Stack-based buffer overflow in webappmon.exe in HP OpenView Network Node Manager (OV NNM) 7.51 and 7.53 allows remote attackers to execute arbitrary code via a long OvJavaLocale value in a cookie.
by Nahuel Riva
EIP-2026-116102 EXPLOITDB text VERIFIED
Progitek Visionner Photos 2.0 - File Format Denial of Service
by antrhacks
CVE-2010-5075 EXPLOITDB text
Avast! Internet Security <5.0 - DoS
Integer overflow in aswFW.sys 5.0.594.0 in Avast! Internet Security 5.0 Korean Trial allows local users to cause a denial of service (memory corruption and panic) via a crafted IOCTL_ASWFW_COMM_PIDINFO_RESULTS DeviceIoControl request to \\.\aswFW.
by x90c
EIP-2026-113928 EXPLOITDB text
WordPress Plugin NextGEN Smooth Gallery 0.12 - Blind SQL Injection
by kaMtiEz
EIP-2026-108398 EXPLOITDB text VERIFIED
Joomla! Component com_jigsaw - 'Controller' Directory Traversal
by FL0RiX
EIP-2026-104861 EXPLOITDB text VERIFIED
68KB 1.0.0rc4 - Remote File Inclusion
by eidelweiss
CVE-2009-5026 EXPLOITDB text VERIFIED
Mysql - SQL Injection
The executable comment feature in MySQL 5.0.x before 5.0.93 and 5.1.x before 5.1.50, when running in certain slave configurations in which the slave is running a newer version than the master, allows remote attackers to execute arbitrary SQL commands via custom comments.
by Libing Song
CVE-2010-2008 EXPLOITDB text VERIFIED
Oracle Mysql < 5.1.48 - Command Injection
MySQL before 5.1.48 allows remote authenticated users with alter database privileges to cause a denial of service (server crash and database loss) via an ALTER DATABASE command with a #mysql50# string followed by a . (dot), .. (dot dot), ../ (dot dot slash) or similar sequence, and an UPGRADE DATA DIRECTORY NAME command, which causes MySQL to move certain directories to the server data directory.
by Shane Bester
CVE-2010-2973 EXPLOITDB text VERIFIED
Apple iOS <4.0.2-3.2.2 - Privilege Escalation
Integer overflow in IOSurface in Apple iOS before 4.0.2 on the iPhone and iPod touch, and before 3.2.2 on the iPad, allows local users to gain privileges via vectors involving IOSurface properties, as demonstrated by JailbreakMe.
by jailbreakme
CVE-2010-2860 EXPLOITDB text
EMC Celerra Network Attached Storage - Unauthenticated Arbitrary File Access via NFS Requests
The EMC Celerra Network Attached Storage (NAS) appliance accepts external network traffic to IP addresses intended for an intranet network within the appliance, which allows remote attackers to read, create, or modify arbitrary files in the user data directory via NFS requests.
by Trustwave's SpiderLabs
EIP-2026-112275 EXPLOITDB text VERIFIED
SnoGrafx - 'cat.php?cat' SQL Injection
by CoBRa_21
EIP-2026-109770 EXPLOITDB text VERIFIED
MyIT CRM - Multiple Cross-Site Scripting Vulnerabilities
by Juan Manuel Garcia
EIP-2026-109769 EXPLOITDB text VERIFIED
MyIT CRM - 'index.php' Multiple Cross-Site Scripting Vulnerabilities
by Juan Manuel Garcia
CVE-2010-4945 EXPLOITDB text
Joomla! com_camelcitydb2 2.2 - SQL Injection
SQL injection vulnerability in the CamelcityDB (com_camelcitydb2) component 2.2 for Joomla! allows remote attackers to execute arbitrary SQL commands via the id parameter to index.php.
by Amine_92
EIP-2026-105212 EXPLOITDB text VERIFIED
APT-WEBSHOP-SYSTEM - 'modules.php' SQL Injection
by secret
EIP-2026-101810 EXPLOITDB text VERIFIED
Intellinet IP Camera MNC-L10 - Authentication Bypass
by Magnefikko
EIP-2026-108553 EXPLOITDB text VERIFIED
Joomla! Component com_spielothek 1.6.9 - Multiple Blind SQL Injections
by Salvatore Fresta
EIP-2026-106119 EXPLOITDB text VERIFIED
Concept E-Commerce - SQL Injection
by gendenk