Exploitdb Exploits

31,346 exploits tracked across all sources.

Sort: Activity Stars
EIP-2026-111378 EXPLOITDB text VERIFIED
pMyAdmin 3.3.5.1 - 'db_create.php' Cross-Site Scripting
by Liscker
EIP-2026-108555 EXPLOITDB text VERIFIED
Joomla! Component com_start - SQL Injection
by DevilZ TM
EIP-2026-108430 EXPLOITDB text VERIFIED
Joomla! Component com_leader - SQL Injection
by DevilZ TM
EIP-2026-108421 EXPLOITDB text VERIFIED
Joomla! Component com_juliaportfolio - Local File Inclusion
by DevilZ TM
EIP-2026-108345 EXPLOITDB text VERIFIED
Joomla! Component com_family - SQL Injection
by DevilZ TM
EIP-2026-106727 EXPLOITDB text VERIFIED
Easynet4u Forum Host - 'topic.php' SQL Injection
by Pr0T3cT10n
EIP-2026-106724 EXPLOITDB text
Easynet Forum Host - 'topic.php' SQL Injection
by Yakir Wizman
EIP-2026-106571 EXPLOITDB text VERIFIED
dreamlive Auktionshaus script - 'news.php?id' SQL Injection
by Easy Laster
EIP-2026-119146 EXPLOITDB text VERIFIED
Skype - URI Handler Input Validation
by Paul Craig
EIP-2026-108495 EXPLOITDB text VERIFIED
Joomla! Component com_products - 'intCategoryId' SQL Injection
by N2n-Hacker
EIP-2026-108472 EXPLOITDB text VERIFIED
Joomla! Component com_party - SQL Injection
by DevilZ TM
EIP-2026-108359 EXPLOITDB text VERIFIED
Joomla! Component com_gigfe - SQL Injection
by DevilZ TM
EIP-2026-108310 EXPLOITDB text VERIFIED
Joomla! Component com_color - SQL Injection
by DevilZ TM
EIP-2026-108283 EXPLOITDB text VERIFIED
Joomla! Component com_blog - SQL Injection
by DevilZ TM
EIP-2026-108247 EXPLOITDB text VERIFIED
Joomla! Component com_about - SQL Injection
by snakespc
CVE-2010-0964 EXPLOITDB text VERIFIED
Eros Webkatalog - SQL Injection via start.php id Parameter
SQL injection vulnerability in start.php in Eros Webkatalog allows remote attackers to execute arbitrary SQL commands via the id parameter in a rubrik action.
by Easy Laster
EIP-2026-106046 EXPLOITDB text VERIFIED
CodeIgniter 1.0 - 'BASEPATH' Multiple Remote File Inclusions
by eidelweiss
CVE-2010-0971 EXPLOITDB text VERIFIED
ATutor 1.6.4 - Authenticated Cross-Site Scripting in Polls, Groups, and Assignments
Multiple cross-site scripting (XSS) vulnerabilities in ATutor 1.6.4 allow remote authenticated users, with Instructor privileges, to inject arbitrary web script or HTML via the (1) Question and (2) Choice fields in tools/polls/add.php, the (3) Type and (4) Title fields in tools/groups/create_manual.php, and the (5) Title field in assignments/add_assignment.php. NOTE: some of these details are obtained from third party information.
by ITSecTeam
EIP-2026-105252 EXPLOITDB text VERIFIED
ARTIS ABTON CMS - Multiple SQL Injections
by MustLive
EIP-2026-105178 EXPLOITDB text VERIFIED
AneCMS 1.0 - 'index.php' Multiple HTML Injection Vulnerabilities
by pratul agrawal
EIP-2026-105176 EXPLOITDB text VERIFIED
Ane CMS 1 - Persistent Cross-Site Scripting
by pratul agrawal
EIP-2026-105175 EXPLOITDB text VERIFIED
ANE CMD CRSF - Arbitrary Add Admin
by pratul agrawal
EIP-2026-100532 EXPLOITDB text VERIFIED
SamaGraph CMS - 'inside.aspx' SQL Injection
by K053
CVE-2010-0974 EXPLOITDB text VERIFIED
PHPCityPortal - SQL Injection via id Parameter
Multiple SQL injection vulnerabilities in PHPCityPortal allow remote attackers to execute arbitrary SQL commands via the id parameter to (1) video_show.php, (2) spotlight_detail.php, (3) real_estate_details.php, and (4) auto_details.php.
by R3d-D3V!L
EIP-2026-112321 EXPLOITDB text VERIFIED
Softbiz Jobs and Recruitment Script - 'search_result.php' SQL Injection
by Easy Laster