Exploitdb Exploits
31,344 exploits tracked across all sources.
com_tweetla 1.0.1 - Path Traversal via Controller Parameter
Directory traversal vulnerability in the TweetLA (com_tweetla) component 1.0.1 for Joomla! allows remote attackers to read arbitrary files via a .. (dot dot) in the controller parameter to index.php.
by AntiSecurity
Joomla! com_travelbook 1.0.1 - Path Traversal
Directory traversal vulnerability in the TRAVELbook (com_travelbook) component 1.0.1 for Joomla! allows remote attackers to read arbitrary files and possibly have unspecified other impact via a .. (dot dot) in the controller parameter to index.php.
by AntiSecurity
Joomla! com_rokmodule 1.1 - SQL Injection
SQL injection vulnerability in the RokModule (com_rokmodule) component 1.1 for Joomla! allows remote attackers to execute arbitrary SQL commands via the module parameter to index.php. NOTE: some of these details are obtained from third party information.
by AntiSecurity
Joomla! com_preventive 1.0.5 - Path Traversal
Directory traversal vulnerability in the Preventive & Reservation (com_preventive) component 1.0.5 for Joomla! allows remote attackers to read arbitrary files and possibly have unspecified other impact via a .. (dot dot) in the controller parameter to index.php.
by AntiSecurity
Joomla! Component mv_restaurantmenumanager - SQL Injection
by Sudden_death
com_mv_restaurantmenumanager < 1.5.2 - SQL Injection via mid Parameter
SQL injection vulnerability in the Multi-Venue Restaurant Menu Manager (aka MVRMM or com_mv_restaurantmenumanager) component 1.5.2 Stable Update 3 and earlier for Joomla! allows remote attackers to execute arbitrary SQL commands via the mid parameter in a menu_display action to index.php.
by Valentin
Joomla! com_jprojectmanager 1.0 - Path Traversal
Directory traversal vulnerability in the Ternaria Informatica JProject Manager (com_jprojectmanager) component 1.0 for Joomla! allows remote attackers to read arbitrary files and possibly have unspecified other impact via a .. (dot dot) in the controller parameter to index.php.
by AntiSecurity
Joomla! com_jfeedback 1.2 - Path Traversal
Directory traversal vulnerability in the Ternaria Informatica Jfeedback! (com_jfeedback) component 1.2 for Joomla! allows remote attackers to read arbitrary files and possibly have unspecified other impact via a .. (dot dot) in the controller parameter to index.php.
by AntiSecurity
Joomla! Component com_ticketbook - Local File Inclusion
by AntiSecurity
Joomla! Component com_spsnewsletter - Local File Inclusion
by AntiSecurity
Joomla! Component com_jajobboard - Multiple Local File Inclusions
by AntiSecurity
Joomla! com_alphauserpoints 1.5.5 - Path Traversal
Directory traversal vulnerability in the AlphaUserPoints (com_alphauserpoints) component 1.5.5 for Joomla! allows remote attackers to read arbitrary files and possibly have unspecified other impact via a .. (dot dot) in the view parameter to index.php.
by AntiSecurity
HotNews 0.7.2 - Remote File Inclusion via config[header] or config[incdir] Parameter
PHP remote file inclusion vulnerability in HotNews 0.7.2 and earlier allows remote attackers to execute arbitrary PHP code via the (1) config[header] parameter to hotnews-engine.inc.php3 or (2) config[incdir] parameter to hnmain.inc.php3.
by team_elite
mygamingladder MGL Combo System 7.5 - SQL Injection
by Easy Laster
Kiasabz Article News CMS Magazine - SQL Injection
by indoushka
Com-property Com Properties - SQL Injection
SQL injection vulnerability in the Real Estate Property (com_properties) component 3.1.22-03 for Joomla! allows remote attackers to execute arbitrary SQL commands via the aid parameter in an agentlisting action to index.php. NOTE: some of these details are obtained from third party information.
by c4uR
Joomla! Component allvideos - Blind SQL Injection
by bumble_be
vBulletin (Cyb - Advanced Forum Statistics) - 'misc.php' Denial of Service
by Andhra Hackers
Oracle Java SE/JDK/JRE <6.20 - Info Disclosure
Unspecified vulnerability in the Java Deployment Toolkit component in Oracle Java SE and Java for Business JDK and JRE 6 Update 10 through 19 allows remote attackers to affect confidentiality, integrity, and availability via unknown vectors.
by Tavis Ormandy
By Source