Exploitdb Exploits

31,344 exploits tracked across all sources.

Sort: Activity Stars
EIP-2026-108795 EXPLOITDB text VERIFIED
Joomla! Component mod_VisitorData 1.1 - Remote code Execution
by Chip d3 bi0s
EIP-2026-107205 EXPLOITDB text VERIFIED
Free Advertisment CMS - 'user_info.php' SQL Injection
by XroGuE
EIP-2026-106447 EXPLOITDB text
Digital College 1.0 - Arbitrary File Upload
by indoushka
EIP-2026-104869 EXPLOITDB text VERIFIED
724CMS Enterprise 4.59 - 'section.php' SQL Injection
by CoBRa_21
EIP-2026-104868 EXPLOITDB text VERIFIED
724CMS Enterprise 4.59 - 'section.php' Local File Inclusion
by CoBRa_21
EIP-2026-100294 EXPLOITDB text VERIFIED
e-webtech - 'page.asp' SQL Injection
by CoBRa_21
EIP-2026-113174 EXPLOITDB text VERIFIED
Waibrasil - Local/Remote File Inclusion
by eXeSoul
CVE-2010-1925 EXPLOITDB text VERIFIED
Rifat Kurban Tekno.portal - SQL Injection
SQL injection vulnerability in makale.php in tekno.Portal 0.1b allows remote attackers to execute arbitrary SQL commands via the id parameter, a different vector than CVE-2006-2817.
by CoBRa_21
EIP-2026-112546 EXPLOITDB text
Tadbir CMS - 'FCKeditor' Arbitrary File Upload
by Pouya Daneshmand
EIP-2026-112363 EXPLOITDB text VERIFIED
Spaceacre - Multiple SQL Injections
by gendenk
CVE-2008-5088 EXPLOITDB text
Knowledgebase-script Phpkb Knowledge Base Software - SQL Injection
Multiple SQL injection vulnerabilities in PHPKB Knowledge Base Software 1.5 Professional allow remote attackers to execute arbitrary SQL commands via the ID parameter to (1) email.php and (2) question.php, a different vector than CVE-2008-1909.
by R3d-D3V!L
EIP-2026-107104 EXPLOITDB text VERIFIED
Fiomental & Coolsis Backoffice - Multiple Vulnerabilities
by MasterGipy
EIP-2026-107040 EXPLOITDB text VERIFIED
family connections 2.2.3 - Multiple Vulnerabilities
by Salvatore Fresta
EIP-2026-106733 EXPLOITDB text VERIFIED
EasyPublish CMS 23.04.2010 - URI Cross-Site Scripting
by High-Tech Bridge SA
EIP-2026-106651 EXPLOITDB text VERIFIED
e-webtech - 'new.asp?id=' SQL Injection
by protocol
EIP-2026-106353 EXPLOITDB text
Dark Hart Portal - 'login.php' Remote File Inclusion
by CoBRa_21
CVE-2010-2003 EXPLOITDB text VERIFIED
Proxy2 Advanced Poll - XSS
Cross-site scripting (XSS) vulnerability in misc/get_admin.php in Advanced Poll 2.08 allows remote attackers to inject arbitrary web script or HTML via the mysql_host parameter.
by High-Tech Bridge SA
CVE-2008-1858 EXPLOITDB text VERIFIED
724Networks 724CMS <4.01 - SQL Injection
SQL injection vulnerability in index.php in 724Networks 724CMS 4.01 and earlier allows remote attackers to execute arbitrary SQL commands via the ID parameter.
by cyberlog
CVE-2010-1922 EXPLOITDB text
29o3 Cms - Code Injection
Multiple PHP remote file inclusion vulnerabilities in 29o3 CMS 0.1 allow remote attackers to execute arbitrary PHP code via a URL in the LibDir parameter to (1) lib/page/pageDescriptionObject.php, and (2) layoutHeaderFuncs.php, (3) layoutManager.php, and (4) layoutParser.php in lib/layout/.
by eidelweiss
EIP-2026-104637 EXPLOITDB text
MiniManager For Mangos/Trinity Server - Denial of Service
by XroGuE
EIP-2026-103621 EXPLOITDB text
Pargoon CMS - Denial of Service
by Pouya Daneshmand
EIP-2026-118774 EXPLOITDB text VERIFIED
Mereo 1.9.1 - Directory Traversal
by John Leitch
EIP-2026-116420 EXPLOITDB text VERIFIED
Torque Game Engine - Multiple Denial of Service Vulnerabilities
by Luigi Auriemma
CVE-2010-1918 EXPLOITDB text VERIFIED
Efront < 3.6.2 - SQL Injection
SQL injection vulnerability in ask_chat.php in eFront 3.6.2 and earlier allows remote attackers to execute arbitrary SQL commands via the chatrooms_ID parameter.
by Stefan Esser
CVE-2010-1923 EXPLOITDB text VERIFIED
Phpscripte24 Web Social Network Freunde Community - SQL Injection
SQL injection vulnerability in user.php in Hi Web Wiesbaden Web 2.0 Social Network Freunde Community System allows remote attackers to execute arbitrary SQL commands via the id parameter in a showgallery action.
by Easy Laster