Text Exploits

31,386 exploits tracked across all sources.

Sort: Activity Stars
EIP-2026-108066 EXPLOITDB text VERIFIED
JBC Explorer 7.20 - 'arbre.php' Cross-Site Scripting
by Metropolis
CVE-2009-4426 EXPLOITDB text VERIFIED
Ignition 1.2 - Remote File Inclusion via Blog Parameter
Multiple directory traversal vulnerabilities in Ignition 1.2, when magic_quotes_gpc is disabled, allow remote attackers to include and execute arbitrary local files via a .. (dot dot) in the blog parameter to (1) comment.php and (2) view.php.
by cOndemned
EIP-2026-106962 EXPLOITDB text VERIFIED
Explorer 7.20 - Cross-Site Scripting
by Metropolis
EIP-2026-104969 EXPLOITDB text VERIFIED
Advance Biz Limited 1.0 - Authentication Bypass
by PaL-D3v1L
CVE-2006-5236 EXPLOITDB text VERIFIED
4images 1.7.x - Authenticated SQL Injection via search_user Parameter
SQL injection vulnerability in search.php in 4images 1.7.x allows remote authenticated users to execute arbitrary SQL commands via the search_user parameter.
by Master Mind
CVE-2009-4825 EXPLOITDB text VERIFIED
8pixel simple_blog - Unauthenticated Database Download via Direct Request
8pixel.net Blog 4 stores sensitive information under the web root with insufficient access control, which allows remote attackers to download a database via a direct request for App_Data/sb.mdb.
by LionTurk
EIP-2026-111901 EXPLOITDB text
Saurus CMS 4.6.4 - Multiple Remote File Inclusions
by cr4wl3r
EIP-2026-111568 EXPLOITDB text
Ptag 4.0.0 - Multiple Remote File Inclusions
by cr4wl3r
CVE-2006-0087 EXPLOITDB text
Lizard Cart CMS 1.04 - SQL Injection via id Parameter
SQL injection vulnerability in (1) pages.php and (2) detail.php in Lizard Cart CMS 1.04 allows remote attackers to execute arbitrary SQL commands via the id parameter.
by cr4wl3r
EIP-2026-107075 EXPLOITDB text
FestOs 2.2.1 - Multiple Remote File Inclusions
by cr4wl3r
CVE-2008-5781 EXPLOITDB text VERIFIED
Cant Find A Gaming CMS (CFAGCMS) 1.0 Beta 1 - SQL Injection
SQL injection vulnerability in right.php in Cant Find A Gaming CMS (CFAGCMS) 1.0 Beta 1 allows remote attackers to execute arbitrary SQL commands via the title parameter.
by cr4wl3r
EIP-2026-105399 EXPLOITDB text
Barracuda Web Firewall 660 Firmware 7.3.1.007 - Multiple Vulnerabilities
by Global-Evolution
EIP-2026-101177 EXPLOITDB text VERIFIED
Barracuda Web Application Firewall 660 - '/cgi-mod/index.cgi' Multiple HTML Injection Vulnerabilities
by Global-Evolution
EIP-2026-100592 EXPLOITDB text VERIFIED
Toast Forums 1.8 - Database Disclosure
by ViRuSMaN
CVE-2009-4424 EXPLOITDB text
Pyrmont plugin 2 for WordPress - SQL Injection via id Parameter
SQL injection vulnerability in results.php in the Pyrmont plugin 2 for WordPress allows remote attackers to execute arbitrary SQL commands via the id parameter.
by Gamoscu
EIP-2026-111944 EXPLOITDB text VERIFIED
Schweizer NISADA Communication CMS - SQL Injection
by Dr.0rYX & Cr3W-DZ
EIP-2026-108641 EXPLOITDB text VERIFIED
Joomla! Component Event Manager - Blind SQL Injection
by FL0RiX
EIP-2026-108609 EXPLOITDB text
Joomla! Component com_zcalendar - Blind SQL Injection
by FL0RiX
EIP-2026-108386 EXPLOITDB text VERIFIED
Joomla! Component com_jbook - Blind SQL Injection
by FL0RiX
EIP-2026-108329 EXPLOITDB text VERIFIED
Joomla! Component com_digistore - SQL Injection
by FL0RiX
EIP-2026-108249 EXPLOITDB text
Joomla! Component com_acmisc - SQL Injection
by FL0RiX
EIP-2026-108241 EXPLOITDB text VERIFIED
Joomla! Component City Portal - Blind SQL Injection
by FL0RiX
EIP-2026-107464 EXPLOITDB text
gpEasy 1.5RC3 - Remote File Inclusion
by cr4wl3r
CVE-2009-4435 EXPLOITDB text VERIFIED
F3Site 2009 - Path Traversal via GLOBALS[nlang] Parameter
Multiple directory traversal vulnerabilities in F3Site 2009 allow remote attackers to include and execute arbitrary local files via directory traversal sequences in the GLOBALS[nlang] parameter to (1) mod/poll.php and (2) mod/new.php.
by cr4wl3r
CVE-2009-4435 EXPLOITDB text VERIFIED
F3Site 2009 - Path Traversal via GLOBALS[nlang] Parameter
Multiple directory traversal vulnerabilities in F3Site 2009 allow remote attackers to include and execute arbitrary local files via directory traversal sequences in the GLOBALS[nlang] parameter to (1) mod/poll.php and (2) mod/new.php.
by cr4wl3r