Exploitdb Exploits

31,344 exploits tracked across all sources.

Sort: Activity Stars
CVE-2010-1532 EXPLOITDB text VERIFIED
Joomla! com_powermail 1.5.3 - Path Traversal
Directory traversal vulnerability in the givesight PowerMail Pro (com_powermail) component 1.5.3 for Joomla! allows remote attackers to read arbitrary files and possibly have unspecified other impact via a .. (dot dot) in the controller parameter to index.php.
by AntiSecurity
CVE-2010-1982 EXPLOITDB text VERIFIED
Joomlart Com Javoice - Path Traversal
Directory traversal vulnerability in the JA Voice (com_javoice) component 2.0 for Joomla! allows remote attackers to read arbitrary files via a .. (dot dot) in the view parameter to index.php.
by kaMtiEz
EIP-2026-108671 EXPLOITDB text
Joomla! Component Huru Helpdesk - SQL Injection (1)
by bumble_be
CVE-2010-2920 EXPLOITDB text VERIFIED
Joomla! com_foobla_suggestions 1.5.1.2 - Path Traversal
Directory traversal vulnerability in the Foobla Suggestions (com_foobla_suggestions) component 1.5.1.2 for Joomla! allows remote attackers to read arbitrary files via directory traversal sequences in the controller parameter to index.php.
by Chip d3 bi0s
EIP-2026-108477 EXPLOITDB text VERIFIED
Joomla! Component com_pcchess - Local File Inclusion
by team_elite
EIP-2026-107345 EXPLOITDB text
GarageSales - Arbitrary File Upload
by saidinh0
EIP-2026-104172 EXPLOITDB text
Asset Manager 1.0 - Arbitrary File Upload
by Shichemt Alen & NeT_Own3r
CVE-2010-0886 EXPLOITDB text VERIFIED
Oracle Java SE/JDK/JRE <6.20 - Info Disclosure
Unspecified vulnerability in the Java Deployment Toolkit component in Oracle Java SE and Java for Business JDK and JRE 6 Update 10 through 19 allows remote attackers to affect confidentiality, integrity, and availability via unknown vectors.
by Ruben Santamarta
CVE-2010-1493 EXPLOITDB text VERIFIED
com_awdwall < 1.5.4 - SQL Injection via cbuser Parameter
SQL injection vulnerability in the AWDwall (com_awdwall) component before 1.5.5 for Joomla! allows remote attackers to execute arbitrary SQL commands via the cbuser parameter in an awdwall action to index.php.
by AntiSecurity
EIP-2026-109047 EXPLOITDB text
Kubeit CMS - SQL Injection
by Phenom
EIP-2026-108842 EXPLOITDB text VERIFIED
Joomla! Component Realtyna Translator 1.0.15 - Local File Inclusion (1)
by AntiSecurity
EIP-2026-108591 EXPLOITDB text VERIFIED
Joomla! Component com_webeecomment 2.0 - Local File Inclusion
by AntiSecurity
EIP-2026-108269 EXPLOITDB text
Joomla! Component com_articles - SQL Injection
by pratul agrawal
CVE-2010-1494 EXPLOITDB text VERIFIED
Joomla! com_awdwall 1.5.4 - Path Traversal
Directory traversal vulnerability in the AWDwall (com_awdwall) component 1.5.4 for Joomla! allows remote attackers to read arbitrary files via a .. (dot dot) in the controller parameter to index.php.
by AntiSecurity
EIP-2026-104107 EXPLOITDB text VERIFIED
Tiny Java Web Server 1.71 - Multiple Input Validation Vulnerabilities
by cp77fk4r
EIP-2026-103986 EXPLOITDB text VERIFIED
miniature java Web server 1.71 - Multiple Vulnerabilities
by cp77fk4r
CVE-2009-2754 EXPLOITDB text VERIFIED
IBM Informix Dynamic Server <11.10.TC3 - RCE
Integer signedness error in the authentication functionality in librpc.dll in the Informix Storage Manager (ISM) Portmapper service (aka portmap.exe), as used in IBM Informix Dynamic Server (IDS) 10.x before 10.00.TC9 and 11.x before 11.10.TC3 and EMC Legato NetWorker, allows remote attackers to execute arbitrary code via a crafted parameter size that triggers a stack-based buffer overflow.
by ZSploit.com
EIP-2026-103230 EXPLOITDB text VERIFIED
TCPDF 4.5.036/4.9.5 - 'params' Attribute Remote Code Execution
by apoc
EIP-2026-111444 EXPLOITDB text VERIFIED
PotatoNews 1.0.2 - 'nid' Multiple Local File Inclusions
by mat
EIP-2026-111366 EXPLOITDB text VERIFIED
Plume CMS 1.2.4 - Multiple Local File Inclusions
by eidelweiss
CVE-2010-1354 EXPLOITDB text VERIFIED
Joomla! VJDEO <1.0.1 - Path Traversal
Directory traversal vulnerability in the VJDEO (com_vjdeo) component 1.0 and 1.0.1 for Joomla! allows remote attackers to read arbitrary files via a .. (dot dot) in the controller parameter to index.php. NOTE: some of these details are obtained from third party information.
by Angela Zhang
EIP-2026-108217 EXPLOITDB text VERIFIED
Joomla! Component aWiki - Local File Inclusion
by Angela Zhang
EIP-2026-107975 EXPLOITDB text
Istgah for Centerhost - Multiple Vulnerabilities
by indoushka
EIP-2026-107974 EXPLOITDB text VERIFIED
Istgah For Centerhost - 'view_ad.php' Cross-Site Scripting
by indoushka
EIP-2026-107213 EXPLOITDB text
Free Image & File Hosting - Arbitrary File Upload
by indoushka