Exploitdb Exploits

31,344 exploits tracked across all sources.

Sort: Activity Stars
EIP-2026-109384 EXPLOITDB text VERIFIED
MediaInSpot CMS - Local File Inclusion (1)
by Amoo Arash
CVE-2010-1533 EXPLOITDB text VERIFIED
com_tweetla 1.0.1 - Path Traversal via Controller Parameter
Directory traversal vulnerability in the TweetLA (com_tweetla) component 1.0.1 for Joomla! allows remote attackers to read arbitrary files via a .. (dot dot) in the controller parameter to index.php.
by AntiSecurity
CVE-2010-1535 EXPLOITDB text VERIFIED
Joomla! com_travelbook 1.0.1 - Path Traversal
Directory traversal vulnerability in the TRAVELbook (com_travelbook) component 1.0.1 for Joomla! allows remote attackers to read arbitrary files and possibly have unspecified other impact via a .. (dot dot) in the controller parameter to index.php.
by AntiSecurity
CVE-2010-1480 EXPLOITDB text VERIFIED
Joomla! com_rokmodule 1.1 - SQL Injection
SQL injection vulnerability in the RokModule (com_rokmodule) component 1.1 for Joomla! allows remote attackers to execute arbitrary SQL commands via the module parameter to index.php. NOTE: some of these details are obtained from third party information.
by AntiSecurity
CVE-2010-1475 EXPLOITDB text VERIFIED
Joomla! com_preventive 1.0.5 - Path Traversal
Directory traversal vulnerability in the Preventive & Reservation (com_preventive) component 1.0.5 for Joomla! allows remote attackers to read arbitrary files and possibly have unspecified other impact via a .. (dot dot) in the controller parameter to index.php.
by AntiSecurity
EIP-2026-108800 EXPLOITDB text
Joomla! Component mv_restaurantmenumanager - SQL Injection
by Sudden_death
CVE-2010-1468 EXPLOITDB text VERIFIED
com_mv_restaurantmenumanager < 1.5.2 - SQL Injection via mid Parameter
SQL injection vulnerability in the Multi-Venue Restaurant Menu Manager (aka MVRMM or com_mv_restaurantmenumanager) component 1.5.2 Stable Update 3 and earlier for Joomla! allows remote attackers to execute arbitrary SQL commands via the mid parameter in a menu_display action to index.php.
by Valentin
CVE-2010-1469 EXPLOITDB text VERIFIED
Joomla! com_jprojectmanager 1.0 - Path Traversal
Directory traversal vulnerability in the Ternaria Informatica JProject Manager (com_jprojectmanager) component 1.0 for Joomla! allows remote attackers to read arbitrary files and possibly have unspecified other impact via a .. (dot dot) in the controller parameter to index.php.
by AntiSecurity
CVE-2010-1478 EXPLOITDB text VERIFIED
Joomla! com_jfeedback 1.2 - Path Traversal
Directory traversal vulnerability in the Ternaria Informatica Jfeedback! (com_jfeedback) component 1.2 for Joomla! allows remote attackers to read arbitrary files and possibly have unspecified other impact via a .. (dot dot) in the controller parameter to index.php.
by AntiSecurity
EIP-2026-108635 EXPLOITDB text
Joomla! Component education - SQL Injection
by bumble_be
EIP-2026-108564 EXPLOITDB text VERIFIED
Joomla! Component com_ticketbook - Local File Inclusion
by AntiSecurity
EIP-2026-108554 EXPLOITDB text VERIFIED
Joomla! Component com_spsnewsletter - Local File Inclusion
by AntiSecurity
EIP-2026-108384 EXPLOITDB text VERIFIED
Joomla! Component com_jajobboard - Multiple Local File Inclusions
by AntiSecurity
CVE-2010-1476 EXPLOITDB text VERIFIED
Joomla! com_alphauserpoints 1.5.5 - Path Traversal
Directory traversal vulnerability in the AlphaUserPoints (com_alphauserpoints) component 1.5.5 for Joomla! allows remote attackers to read arbitrary files and possibly have unspecified other impact via a .. (dot dot) in the view parameter to index.php.
by AntiSecurity
CVE-2004-1796 EXPLOITDB text VERIFIED
HotNews 0.7.2 - Remote File Inclusion via config[header] or config[incdir] Parameter
PHP remote file inclusion vulnerability in HotNews 0.7.2 and earlier allows remote attackers to execute arbitrary PHP code via the (1) config[header] parameter to hotnews-engine.inc.php3 or (2) config[incdir] parameter to hnmain.inc.php3.
by team_elite
EIP-2026-105303 EXPLOITDB text
AuroraGPT 4.0 - Remote Code Execution
by Amoo Arash
EIP-2026-109767 EXPLOITDB text VERIFIED
mygamingladder MGL Combo System 7.5 - SQL Injection
by Easy Laster
EIP-2026-109518 EXPLOITDB text
MMHAQ CMS - SQL Injection
by s1ayer
EIP-2026-108997 EXPLOITDB text VERIFIED
Kiasabz Article News CMS Magazine - SQL Injection
by indoushka
CVE-2010-1874 EXPLOITDB text
Com-property Com Properties - SQL Injection
SQL injection vulnerability in the Real Estate Property (com_properties) component 3.1.22-03 for Joomla! allows remote attackers to execute arbitrary SQL commands via the aid parameter in an agentlisting action to index.php. NOTE: some of these details are obtained from third party information.
by c4uR
EIP-2026-108293 EXPLOITDB text
Joomla! Component com_ca - SQL Injection
by DigitALL
EIP-2026-108198 EXPLOITDB text VERIFIED
Joomla! Component allvideos - Blind SQL Injection
by bumble_be
EIP-2026-104682 EXPLOITDB text
vBulletin (Cyb - Advanced Forum Statistics) - 'misc.php' Denial of Service
by Andhra Hackers
CVE-2010-0886 EXPLOITDB text VERIFIED
Oracle Java SE/JDK/JRE <6.20 - Info Disclosure
Unspecified vulnerability in the Java Deployment Toolkit component in Oracle Java SE and Java for Business JDK and JRE 6 Update 10 through 19 allows remote attackers to affect confidentiality, integrity, and availability via unknown vectors.
by Tavis Ormandy
EIP-2026-113096 EXPLOITDB text VERIFIED
Viennabux Beta! - 'cat' SQL Injection
by Easy Laster