Exploitdb Exploits
31,344 exploits tracked across all sources.
Jamroom < 4.1.8 - XSS
Cross-site scripting (XSS) vulnerability in forum.php in Jamroom before 4.1.9 allows remote attackers to inject arbitrary web script or HTML via the post_id parameter in a modify action.
by High-Tech Bridge SA
Laubrotel G.cms Generator - SQL Injection
SQL injection vulnerability in G.CMS generator allows remote attackers to execute arbitrary SQL commands via the lang parameter to the default URI, probably index.php.
by Sid3^effects
Plesk Server Administrator (PSA) - 'locale' Local File Inclusion
by Pouya Daneshmand
IBM Websphere Ilog Jrules - XSS
Multiple cross-site scripting (XSS) vulnerabilities in content/internalError.jsp in IBM WebSphere ILOG JRules 6.7 allow remote attackers to inject arbitrary web script or HTML via an RTS URL to (1) explore/explore.jsp, (2) compose/compose.jsp, or (3) home.jsp in faces/.
by IBM
SimpleAssets - Authentication Bypass / Cross-Site Scripting
by L0rd CrusAd3r
Jce-tech Shareasale Script - SQL Injection
SQL injection vulnerability in merchant_product_list.php in JCE-Tech Shareasale Script (SASS) 1 allows remote attackers to execute arbitrary SQL commands via the mechant_id parameter.
by L0rd CrusAd3r
Jce-tech Overstock Script - SQL Injection
SQL injection vulnerability in storecat.php in JCE-Tech Overstock 1 allows remote attackers to execute arbitrary SQL commands via the store parameter.
by L0rd CrusAd3r
Tomacero Orohyip - SQL Injection
SQL injection vulnerability in withdraw_money.php in Toma Cero OroHYIP allows remote attackers to execute arbitrary SQL commands via the id parameter in a cancel action.
by L0rd CrusAd3r
Joomla! Component com_eportfolio - Arbitrary File Upload
by Sid3^effects
NetArt Media iBoutique 4.0 - SQL Injection
SQL injection vulnerability in index.php in NetArt Media iBoutique 4.0 allows remote attackers to execute arbitrary SQL commands via the page parameter.
by L0rd CrusAd3r
UK One Media CMS - 'id' Error-Based SQL Injection
by LiquidWorm
Rsjoomla Com Rscomments - XSS
Multiple cross-site scripting (XSS) vulnerabilities in the RSComments (com_rscomments) component 1.0.0 Rev 2 for Joomla! allow remote attackers to inject arbitrary web script or HTML via the (1) website and (2) name parameters to index.php.
by jdc
Elite Gaming Ladders 3.5 - SQL Injection
SQL injection vulnerability in standings.php in Elite Gaming Ladders 3.5 allows remote attackers to execute arbitrary SQL commands via the ladder[id] parameter.
by ahwak2000
Shopping Cart Script with Affiliate Program - SQL Injection
by L0rd CrusAd3r
KubeLance 1.7.6 - 'profile.php' SQL Injection
by L0rd CrusAd3r
Joomla! Component Gallery XML 1.1 - SQL Injection / Local File Inclusion
by jdc
Joomla! Component com_listbingo 1.3 - Multiple Vulnerabilities
by jdc
Joomla! Component com_joomdocs - Cross-Site Scripting
by Sid3^effects
By Source