Exploitdb Exploits

31,346 exploits tracked across all sources.

Sort: Activity Stars
EIP-2026-115999 EXPLOITDB text
Opera 10.10 - XML Parser Denial of Service (PoC)
by d3b4g
EIP-2026-115862 EXPLOITDB text VERIFIED
Mozilla Firefox 3.6 - XML Parser Memory Corruption (PoC) / Denial of Service
by d3b4g
EIP-2026-112048 EXPLOITDB text VERIFIED
SilverStripe CMS 2.3.5 - Cross-Site Request Forgery / Open Redirection
by cp77fk4r
EIP-2026-105574 EXPLOITDB text
BoastMachine 3.1 - Arbitrary File Upload
by alnjm33
EIP-2026-110281 EXPLOITDB text
OpenDb 1.5.0.4 - Multiple Local File Inclusions
by ViRuSMaN
CVE-2010-0457 EXPLOITDB text VERIFIED
magic-portal 2.1 - SQL Injection via home.php id Parameter
SQL injection vulnerability in home.php in magic-portal 2.1 allows remote attackers to execute arbitrary SQL commands via the id parameter.
by alnjm33
EIP-2026-108689 EXPLOITDB text VERIFIED
Joomla! Component JBDiary - Blind SQL Injection
by B-HUNT3|2
EIP-2026-108387 EXPLOITDB text VERIFIED
Joomla! Component com_jbpublishdownfp - SQL Injection
by B-HUNT3|2
EIP-2026-108317 EXPLOITDB text VERIFIED
Joomla! Component com_ContentBlogList - SQL Injection
by B-HUNT3|2
CVE-2010-0461 EXPLOITDB text
Joomla com_casino 1.0 - SQL Injection via id Parameter
SQL injection vulnerability in the casino (com_casino) component 1.0 for Joomla! allows remote attackers to execute arbitrary SQL commands via the id parameter in a (1) category or (2) player action to index.php.
by B-HUNT3|2
EIP-2026-117496 EXPLOITDB text VERIFIED
Microsoft Internet Explorer - 'wshom.ocx' (Run) ActiveX Code Execution (Add Admin)
by Stack
EIP-2026-110331 EXPLOITDB text VERIFIED
OpenX 2.6.1 - SQL Injection
by AndySoon
EIP-2026-109043 EXPLOITDB text
KosmosBlog 0.9.3 - SQL Injection / Cross-Site Scripting / Cross-Site Request Forgery
by Milos Zivanovic
EIP-2026-108362 EXPLOITDB text VERIFIED
Joomla! Component com_gurujibook - SQL Injection
by snakespc
CVE-2010-0456 EXPLOITDB text VERIFIED
indianpulse Game Server (com_gameserver) 1.2 - SQL Injection via grp Parameter
SQL injection vulnerability in the indianpulse Game Server (com_gameserver) component 1.2 for Joomla! allows remote attackers to execute arbitrary SQL commands via the grp parameter in a gameserver action to index.php.
by B-HUNT3|2
EIP-2026-108281 EXPLOITDB text VERIFIED
Joomla! Component com_biographies - SQL Injection
by snakespc
EIP-2026-108272 EXPLOITDB text
Joomla! Component com_avosbillets - SQL Injection
by snakespc
EIP-2026-103669 EXPLOITDB text VERIFIED
Sun Java System Web Server 7.0 Update 6 - 'admin' Server Denial of Service
by Intevydis
CVE-2010-0388 EXPLOITDB text VERIFIED
Sun Java System Web Server 7.0 Update 6 - Denial of Service via WebDAV PROPFIND Request Format String
Format string vulnerability in the WebDAV implementation in webservd in Sun Java System Web Server 7.0 Update 6 allows remote attackers to cause a denial of service (daemon crash) and possibly have unspecified other impact via format string specifiers in the encoding attribute of the XML declaration in a PROPFIND request.
by Intevydis
EIP-2026-119424 EXPLOITDB text VERIFIED
SHOUTcast Server 1.9.8/Win32 - Cross-Site Request Forgery
by cp77fk4r
CVE-2010-0027 EXPLOITDB text VERIFIED
Microsoft Internet Explorer 5.01-8 - Remote Code Execution via URL Validation Flaw
The URL validation functionality in Microsoft Internet Explorer 5.01, 6, 6 SP1, 7 and 8, and the ShellExecute API function in Windows 2000 SP4, XP SP2 and SP3, and Server 2003 SP2, does not properly process input parameters, which allows remote attackers to execute arbitrary local programs via a crafted URL, aka "URL Validation Vulnerability."
by Lostmon Lords
EIP-2026-115441 EXPLOITDB text VERIFIED
IntelliTamper 2.07/2.08 - Defer Remote Buffer Overflow (PoC)
by SkuLL-HackeR
EIP-2026-108285 EXPLOITDB text VERIFIED
Joomla! Component com_book - SQL Injection
by Evil-Cod3r
EIP-2026-106220 EXPLOITDB text VERIFIED
cPanel and WHM 11.25 - 'failurl' HTTP Response Splitting
by Trancer
CVE-2010-0458 EXPLOITDB text VERIFIED
NetArt Media Blog System 1.5 - SQL Injection via cat or note Parameter
Multiple SQL injection vulnerabilities in NetArt Media Blog System 1.5 allow remote attackers to execute arbitrary SQL commands via the (1) cat parameter to index.php and the (2) note parameter to blog.php.
by h4ck3r