Exploitdb Exploits

31,344 exploits tracked across all sources.

Sort: Activity Stars
EIP-2026-105632 EXPLOITDB text VERIFIED
Bs Scripts_Directory - SQL Injection / Authentication Bypass
by Sid3^effects
CVE-2010-2670 EXPLOITDB text VERIFIED
BrotherScripts Recipe Website - SQL Injection
SQL injection vulnerability in recipedetail.php in BrotherScripts Recipe Website allows remote attackers to execute arbitrary SQL commands via the id parameter.
by Sid3^effects
EIP-2026-105631 EXPLOITDB text VERIFIED
Bs Realtor_Web Script - SQL Injection
by Sid3^effects
EIP-2026-105630 EXPLOITDB text VERIFIED
Bs Home_Classifieds Script - SQL Injection
by Sid3^effects
EIP-2026-105629 EXPLOITDB text VERIFIED
Bs General_Classifieds Script - SQL Injection
by Sid3^effects
EIP-2026-105628 EXPLOITDB text VERIFIED
Bs Events_Locator Script - SQL Injection
by Sid3^effects
EIP-2026-105625 EXPLOITDB text VERIFIED
Bs Business_Directory Script - SQL Injection / Authentication Bypass
by Sid3^effects
EIP-2026-105624 EXPLOITDB text VERIFIED
Bs Auto_Classifieds Script - 'articlesdetails.php' SQL Injection
by Sid3^effects
EIP-2026-105622 EXPLOITDB text
Bs Auction Script - SQL Injection
by Sid3^effects
EIP-2026-105493 EXPLOITDB text VERIFIED
Bitweaver 2.7 - 'fImg' Cross-Site Scripting
by John Leitch
EIP-2026-105421 EXPLOITDB text VERIFIED
bbPress 1.0.2 - Cross-Site Request Forgery (Change Admin Password)
by saudi0hacker
EIP-2026-103942 EXPLOITDB text VERIFIED
id Software id Tech 4 Engine - 'key' Packet Remote Code Execution
by Luigi Auriemma
EIP-2026-103454 EXPLOITDB text VERIFIED
EDItran Communications Platform (editcp) 4.1 - Remote Buffer Overflow
by Pedro Andujar
CVE-2010-2714 EXPLOITDB text VERIFIED
TCW PHP Album 1.0 - SQL Injection
SQL injection vulnerability in photos/index.php in TCW PHP Album 1.0 allows remote attackers to execute arbitrary SQL commands via the album parameter.
by L0rd CrusAd3r
EIP-2026-114056 EXPLOITDB text VERIFIED
WordPress Plugin Simple:Press 4.3.0 - SQL Injection
by ADEO Security
CVE-2010-2715 EXPLOITDB text VERIFIED
TCW PHP Album 1.0 - XSS
Cross-site scripting (XSS) vulnerability in photos/index.php in TCW PHP Album 1.0 allows remote attackers to inject arbitrary web script or HTML via the album parameter.
by L0rd CrusAd3r
EIP-2026-111886 EXPLOITDB text VERIFIED
Sandbox 2.0.2 - Local File Inclusion
by saudi0hacker
EIP-2026-111043 EXPLOITDB text VERIFIED
phpFaber CMS 2.0.5 - Multiple Cross-Site Scripting Vulnerabilities
by prodigy
CVE-2010-2719 EXPLOITDB text
phpaaCms <0.3.1 - SQL Injection
SQL injection vulnerability in show.php in phpaaCms 0.3.1 UTF-8, and possibly other versions, allows remote attackers to execute arbitrary SQL commands via the id parameter.
by Shafiq-Ur-Rehman
CVE-2010-2720 EXPLOITDB text
phpaaCms <0.3.1 - SQL Injection
SQL injection vulnerability in list.php in phpaaCms 0.3.1 UTF-8, and possibly other versions, allows remote attackers to execute arbitrary SQL commands via the id parameter. NOTE: some of these details are obtained from third party information.
by CoBRa_21
EIP-2026-108828 EXPLOITDB text
Joomla! Component Phoca Gallery 2.7.3 - SQL Injection
by RoAd_KiLlEr
CVE-2010-4991 EXPLOITDB text
Joomla! - SQL Injection
SQL injection vulnerability in the NinjaMonials (com_ninjamonials) component for Joomla! allows remote attackers to execute arbitrary SQL commands via the Itemid parameter in a display action to index.php.
by Sid3^effects
EIP-2026-108655 EXPLOITDB text
Joomla! Component Front-End Article Manager System - Arbitrary File Upload
by Sid3^effects
CVE-2010-4990 EXPLOITDB text
Joomla! - SQL Injection
SQL injection vulnerability in the Front-edit Address Book (com_addressbook) component for Joomla! allows remote attackers to execute arbitrary SQL commands via the Itemid parameter in a contact action to index.php.
by Sid3^effects
EIP-2026-107785 EXPLOITDB text
iLister Listing Software - Local File Inclusion
by Sid3^effects