Exploitdb Exploits

31,344 exploits tracked across all sources.

Sort: Activity Stars
EIP-2026-102597 EXPLOITDB text VERIFIED
FTP Client 0.17-19build1 ACCT (Ubuntu 10.04) - Buffer Overflow (PoC)
by d0lc3
EIP-2026-102534 EXPLOITDB text VERIFIED
SAP NetWeaver 6.4/7.0 - 'wsnavigator' Cross-Site Scripting
by Alexandr Polyakov
CVE-2010-2924 EXPLOITDB text VERIFIED
myLinksDump Plugin 1.2 - SQL Injection
SQL injection vulnerability in myLDlinker.php in the myLinksDump Plugin 1.2 for WordPress allows remote attackers to execute arbitrary SQL commands via the url parameter. NOTE: some of these details are obtained from third party information.
by H-SK33PY
EIP-2026-110978 EXPLOITDB text VERIFIED
phpBB MOD 2.0.19 - Invitation Only (PassCode Bypass)
by Silic0n
EIP-2026-110938 EXPLOITDB text VERIFIED
phpBazar Admin - Information Disclosure
by Net_Spy
EIP-2026-108407 EXPLOITDB text VERIFIED
Joomla! Component com_jomtube - 'user_id' Blind SQL Injection
by SixP4ck3r
CVE-2010-4948 EXPLOITDB text
PHP Free Photo Gallery <libs/adodb/adodb.inc.php - RCE
PHP remote file inclusion vulnerability in libs/adodb/adodb.inc.php in PHP Free Photo Gallery script allows remote attackers to execute arbitrary PHP code via a URL in the path parameter.
by ViRuS Qalaa
EIP-2026-107219 EXPLOITDB text
Free PHP photo Gallery script - Remote Command Execution
by ViRuS Qalaa
EIP-2026-105897 EXPLOITDB text VERIFIED
Claus Muus Spitfire 1.0.336 - Multiple Cross-Site Scripting Vulnerabilities
by High-Tech Bridge SA
CVE-2010-2915 EXPLOITDB text VERIFIED
AJ Square AJ HYIP PRIME - SQL Injection
SQL injection vulnerability in welcome.php in AJ Square AJ HYIP PRIME allows remote attackers to execute arbitrary SQL commands via the id parameter.
by JosS
CVE-2010-2916 EXPLOITDB text VERIFIED
AJ Square AJ HYIP MERIDIAN - SQL Injection
SQL injection vulnerability in news.php in AJ Square AJ HYIP MERIDIAN allows remote attackers to execute arbitrary SQL commands via the id parameter.
by JosS
EIP-2026-119411 EXPLOITDB text VERIFIED
Outlook Web Access 2003 - Cross-Site Request Forgery
by anonymous
EIP-2026-118673 EXPLOITDB text VERIFIED
id Software id Tech 4 Engine - 'idGameLocal::GetGameStateObject()' Remote Code Execution
by Luigi Auriemma
EIP-2026-111677 EXPLOITDB text VERIFIED
RapidLeech Scripts - Arbitrary File Upload
by H-SK33PY
EIP-2026-110330 EXPLOITDB text
OpenX - 'phpAdsNew' Remote File Inclusion
by ViRuS Qalaa
EIP-2026-103552 EXPLOITDB text VERIFIED
Monolith Lithtech Game Engine - Memory Corruption
by Luigi Auriemma
EIP-2026-116462 EXPLOITDB text VERIFIED
Unreal Tournament 3 2.1 - 'STEAMBLOB' Remote Denial of Service
by Luigi Auriemma
EIP-2026-115724 EXPLOITDB text
Microsoft Internet Explorer 7 - Microsoft Clip Organizer Multiple Insecure ActiveX Control Denial of Service Vulnerabilities
by Beenu Arora
EIP-2026-115559 EXPLOITDB text VERIFIED
Lithtech Engine - Memory Corruption
by Luigi Auriemma
EIP-2026-110662 EXPLOITDB text VERIFIED
PHP Chat for 123 Flash Chat - Remote File Inclusion
by HaCkEr arar
EIP-2026-108549 EXPLOITDB text VERIFIED
Joomla! Component com_spa - SQL Injection (1)
by ALTBTA
CVE-2010-1214 EXPLOITDB text VERIFIED
Mozilla Firefox <3.5.11 & SeaMonkey <2.0.6 - RCE
Integer overflow in Mozilla Firefox 3.5.x before 3.5.11 and 3.6.x before 3.6.7, and SeaMonkey before 2.0.6, allows remote attackers to execute arbitrary code via plugin content with many parameter elements.
by J23
EIP-2026-100420 EXPLOITDB text VERIFIED
Mayasan Portal 2.0 - 'makaledetay.asp' SQL Injection
by v0calist
EIP-2026-100419 EXPLOITDB text VERIFIED
Mayasan Portal 2.0 - 'haberdetay.asp' SQL Injection
by CoBRa_21
EIP-2026-100181 EXPLOITDB text VERIFIED
Caner Hikaye Script - SQL Injection
by v0calist