Exploitdb Exploits
31,344 exploits tracked across all sources.
Local Glibc Shared Library (.so) 2.11.1 - Code Execution
by Rh0
McAfee Email Gateway < 6.7.2 Hotfix 2 - Multiple Vulnerabilities
by Nahuel Grisolia
NextGEN Gallery < 1.5.2 - Cross-Site Scripting via mode Parameter
Cross-site scripting (XSS) vulnerability in xml/media-rss.php in the NextGEN Gallery plugin before 1.5.2 for WordPress allows remote attackers to inject arbitrary web script or HTML via the mode parameter.
by Alejandro Rodriguez
com_xobbix 1.0.1 - SQL Injection via prodid Parameter
SQL injection vulnerability in the XOBBIX (com_xobbix) component 1.0.1 for Joomla! allows remote attackers to execute arbitrary SQL commands via the prodid parameter in a prod_desc action to index.php.
by AntiSecurity
Seber Cart <1.0.0.12-1.0.0.13 - Path Traversal
Directory traversal vulnerability in the Seber Cart (com_sebercart) component 1.0.0.12 and 1.0.0.13 for Joomla!, when magic_quotes_gpc is disabled, allows remote attackers to read arbitrary files via a .. (dot dot) in the view parameter to index.php. NOTE: some of these details are obtained from third party information.
by AntiSecurity
iJoomla News Portal <1.5.x - Path Traversal
Directory traversal vulnerability in the iJoomla News Portal (com_news_portal) component 1.5.x for Joomla! allows remote attackers to read arbitrary files via a .. (dot dot) in the controller parameter to index.php.
by AntiSecurity
JOOFORGE Jutebox <1.7 - Path Traversal
Directory traversal vulnerability in the JOOFORGE Jutebox (com_jukebox) component 1.0 and 1.7 for Joomla! allows remote attackers to read arbitrary files via a .. (dot dot) in the controller parameter to index.php. NOTE: some of these details are obtained from third party information.
by AntiSecurity
Roberto Aloi Com Joomlaflickr - Path Traversal
Directory traversal vulnerability in joomlaflickr.php in the Joomla Flickr (com_joomlaflickr) component 1.0.3 for Joomla! allows remote attackers to include and execute arbitrary local files via a .. (dot dot) in the controller parameter to index.php.
by AntiSecurity
Gohigheris Com Jwhmcs - Path Traversal
Directory traversal vulnerability in the J!WHMCS Integrator (com_jwhmcs) component 1.5.0 for Joomla! allows remote attackers to read arbitrary files via a .. (dot dot) in the controller parameter to index.php.
by AntiSecurity
Highslide JS <2.0.9 - Path Traversal
Directory traversal vulnerability in the Highslide JS (com_hsconfig) component 1.5 and 2.0.9 for Joomla! allows remote attackers to read arbitrary files via a .. (dot dot) in the controller parameter to index.php. NOTE: some of these details are obtained from third party information.
by AntiSecurity
Freestyle FAQs Lite - SQL Injection via faqid Parameter
SQL injection vulnerability in the Freestyle FAQs Lite (com_fsf) component, possibly 1.3, for Joomla! allows remote attackers to execute arbitrary SQL commands via the faqid parameter in an faq action to index.php.
by Chip d3 bi0s
Fabrik 2.0 - Path Traversal via Controller Parameter
Directory traversal vulnerability in the Fabrik (com_fabrik) component 2.0 for Joomla! allows remote attackers to read arbitrary files via a .. (dot dot) in the controller parameter to index.php.
by AntiSecurity
Joomla! Component Appointment 1.5 - Local File Inclusion
by AntiSecurity
Affiliatefeeds Com Datafeeds - Path Traversal
Directory traversal vulnerability in the Affiliate Datafeeds (com_datafeeds) component build 880 for Joomla! allows remote attackers to read arbitrary files via a .. (dot dot) in the controller parameter to index.php.
by AntiSecurity
McAfee Email Gateway (formerly IronMail) - Cross-Site Scripting
by Nahuel Grisolia
McAfee Email Gateway (formerly IronMail) - Denial of Service
by Nahuel Grisolia
McAfee Email Gateway (formerly IronMail) - Local Privilege Escalation
by Nahuel Grisolia
McAfee Email Gateway (formerly IronMail) - Internal Information Disclosure
by Nahuel Grisolia
Joomla! com_svmap 1.1.1 - Path Traversal
Directory traversal vulnerability in the SVMap (com_svmap) component 1.1.1 for Joomla! allows remote attackers to read arbitrary files via a .. (dot dot) in the controller parameter to index.php.
by Vrs-hCk
By Source