Exploitdb Exploits
31,344 exploits tracked across all sources.
Attachmate Reflection Standard Suite 2008 - ActiveX Buffer Overflow (PoC)
by Rad L. Sneak
phpMyAdmin 2.6.3-pl1 - Cross-Site Scripting / Full Path
by cp77fk4r
NPDS REvolution 10.02 - 'download.php' Cross-Site Scripting
by High-Tech Bridge SA
Bukulokomedia Lokomedia Cms - Path Traversal
Directory traversal vulnerability in downlot.php in Lokomedia CMS 1.4.1 and 2.0 allows remote attackers to read arbitrary files via a .. (dot dot) in the file parameter.
by vir0e5
Joomla! Component com_packages - SQL Injection
by Kernel Security Group
gpEasy CMS 1.6.2 - Authenticated Stored Cross-Site Scripting via gpcontent Parameter
Cross-site scripting (XSS) vulnerability in include/tool/editing_files.php in gpEasy CMS 1.6.2 allows remote authenticated users, with Edit privileges, to inject arbitrary web script or HTML via the gpcontent parameter to index.php. NOTE: some of these details are obtained from third party information.
by High-Tech Bridge SA
ecoCMS - Cross-Site Scripting via Admin.php p Parameter
Cross-site scripting (XSS) vulnerability in admin.php in ecoCMS allows remote attackers to inject arbitrary web script or HTML via the p parameter.
by High-Tech Bridge SA
B-Hind CMS (tiny_mce) - Arbitrary File Upload
by innrwrld & h00die
Abyss Web Server X1 - Cross-Site Request Forgery
by John Leitch
Tainos Webdesign (All Scripts) - SQL Injection / Cross-Site Scripting / HTML Injection
by CoBRa_21
PonVFTP - Insecure Cookie Authentication Bypass
by SkuLL-HackeR
MyNews CMS 1.0 - SQL Injection / Local File Inclusion / Cross-Site Scripting
by mr_me
Joomla! Component com_event - Multiple Vulnerabilities
by ALTBTA
Joenasejes JE Cms - SQL Injection
SQL injection vulnerability in index.php in JE CMS 1.0.0 and 1.1 allows remote attackers to execute arbitrary SQL commands via the categoryid parameter in a viewcategory action. NOTE: some of these details are obtained from third party information.
by AntiSecurity
Imagetraders Iceberg Cms - SQL Injection
SQL injection vulnerability in details.php in Iceberg CMS allows remote attackers to execute arbitrary SQL commands via the p_id parameter.
by cyberlog
By Source