Text Exploits

31,386 exploits tracked across all sources.

Sort: Activity Stars
EIP-2026-100828 EXPLOITDB text VERIFIED
iOffice 0.1 - 'parametre' Remote Command Execution
by Marshall Whittaker
EIP-2026-100204 EXPLOITDB text VERIFIED
ClickAndRank Script - Authentication Bypass
by walid
CVE-2010-2911 EXPLOITDB text VERIFIED
Kayako eSupport <3.70.02 - SQL Injection
SQL injection vulnerability in index.php in Kayako eSupport 3.70.02 allows remote attackers to execute arbitrary SQL commands via the newsid parameter in a viewnews action.
by Sid3^effects
EIP-2026-112463 EXPLOITDB text
Subrion Auto Classifieds - Persistent Cross-Site Scripting
by Sid3^effects
CVE-2010-2912 EXPLOITDB text VERIFIED
Kayako eSupport 3.70.02 - SQL Injection
SQL injection vulnerability in index.php in Kayako eSupport 3.70.02 allows remote attackers to execute arbitrary SQL commands via the _a parameter in a downloads action.
by Sid3^effects
CVE-2010-2919 EXPLOITDB text VERIFIED
StaticXT (com_staticxt) - SQL Injection via id Parameter
SQL injection vulnerability in the StaticXT (com_staticxt) component for Joomla! allows remote attackers to execute arbitrary SQL commands via the id parameter to index.php.
by Palyo34 & KroNicKq
EIP-2026-108550 EXPLOITDB text VERIFIED
Joomla! Component com_spa - SQL Injection (2)
by Palyo34 & KroNicKq
EIP-2026-107228 EXPLOITDB text
Freelancers Marketplace Script - Persistent Cross-Site Scripting
by Sid3^effects
EIP-2026-107227 EXPLOITDB text
Freelancer Marketplace Script - Arbitrary File Upload
by Sid3^effects
EIP-2026-105693 EXPLOITDB text VERIFIED
Calendarix - 'cal_cat.php' SQL Injection
by SixP4ck3r
EIP-2026-119344 EXPLOITDB text VERIFIED
ActiTime 2.0-MA - Cross-Site Request Forgery
by Markot
EIP-2026-115372 EXPLOITDB text VERIFIED
Haihaisoft PDF Reader OCX Control 1.1.2.0 - Remote Buffer Overflow (PoC)
by shinnai
EIP-2026-111481 EXPLOITDB text VERIFIED
Pre Web Host System - Authentication Bypass
by D4rk357
EIP-2026-111479 EXPLOITDB text VERIFIED
Pre SoftClones Marketing Management System - Authentication Bypass
by D4rk357
CVE-2010-4959 EXPLOITDB text VERIFIED
Pre Projects Pre Podcast Portal - SQL Injection
SQL injection vulnerability in the login feature in Pre Projects Pre Podcast Portal allows remote attackers to execute arbitrary SQL commands via the password parameter.
by D4rk357
EIP-2026-111472 EXPLOITDB text VERIFIED
Pre E-Smart Cart - Authentication Bypass
by D4rk357
EIP-2026-111471 EXPLOITDB text VERIFIED
Pre Dynamic Institution - Web Authentication Bypass
by D4rk357
EIP-2026-107510 EXPLOITDB text VERIFIED
Group Office - Remote Command Execution
by ADEO Security
EIP-2026-107509 EXPLOITDB text VERIFIED
Group Office - 'comment_id' SQL Injection
by Canberk BOLAT
CVE-2010-2906 EXPLOITDB text VERIFIED
ScriptsFeed & BrotherScripts - SQL Injection
SQL injection vulnerability in articlesdetails.php in ScriptsFeed and BrotherScripts (BS) Scripts Directory allows remote attackers to execute arbitrary SQL commands via the id parameter, a different vector than CVE-2010-2905.
by k4k4shi
CVE-2010-2777 EXPLOITDB text VERIFIED
Novell GroupWise <7.0-8.0 - Buffer Overflow
Stack-based buffer overflow in the IMAP server component in GroupWise Internet Agent (GWIA) in Novell GroupWise 7.x before 7.0 post-SP4 FTF and 8.x before 8.0 SP2 allows remote attackers to execute arbitrary code via a long mailbox name in a CREATE command.
by Francis Provencher
EIP-2026-113404 EXPLOITDB text VERIFIED
Whizzy CMS 10.01 - Local File Inclusion
by Anarchy Angel
EIP-2026-112392 EXPLOITDB text VERIFIED
Spitfire 1.0.381 - Cross-Site Scripting / Cross-Site Request Forgery
by Nijel the Destroyer
EIP-2026-112357 EXPLOITDB text VERIFIED
Sourcefabric Campsite Articles - HTML Injection
by D4rk357
EIP-2026-111330 EXPLOITDB text VERIFIED
Pligg CMS 1.0.4 - 'search.php' Cross-Site Scripting
by High-Tech Bridge SA