Exploitdb Exploits

31,394 exploits tracked across all sources.

Sort: Activity Stars
EIP-2026-111011 EXPLOITDB text VERIFIED
phpCMS 2008 - File Disclosure
by Securitylab Security Research
EIP-2026-111009 EXPLOITDB text VERIFIED
phpCMS 2008 - 'download.php' Information Disclosure
by Securitylab.ir
CVE-2009-3817 EXPLOITDB text VERIFIED
BookLibrary (com_booklibrary) 1.0 - Remote Code Execution via mosConfig_absolute_path Parameter
PHP remote file inclusion vulnerability in doc/releasenote.php in the BookLibrary (com_booklibrary) component 1.0 for Joomla! allows remote attackers to execute arbitrary PHP code via a URL in the mosConfig_absolute_path parameter, a different vector than CVE-2009-2637. NOTE: the provenance of this information is unknown; the details are obtained solely from third party information.
by kaMtiEz
CVE-2009-3822 EXPLOITDB text VERIFIED
Fiji Web Design Ajax Chat (com_ajaxchat) 1.0 - Remote Code Execution via GLOBALS[mosConfig_absolute_path] Parameter
PHP remote file inclusion vulnerability in Fiji Web Design Ajax Chat (com_ajaxchat) component 1.0 for Joomla! allows remote attackers to execute arbitrary PHP code via a URL in the GLOBALS[mosConfig_absolute_path] parameter to tests/ajcuser.php.
by kaMtiEz
CVE-2009-3802 EXPLOITDB text VERIFIED
amiro.cms <= 5.4.0.0 - Information Disclosure via Invalid Login Parameter
Amiro.CMS 5.4.0.0 and earlier allows remote attackers to obtain sensitive information via an invalid loginname ("%%%") to _admin/index.php, which reveals the installation path and other information in an error message.
by Vladimir Vorontsov
CVE-2009-3803 EXPLOITDB text VERIFIED
amiro.cms < 5.4.0.0 - Cross-Site Scripting via Multiple Parameters
Multiple cross-site scripting (XSS) vulnerabilities in Amiro.CMS 5.4.0.0 and earlier allow remote attackers to inject arbitrary web script or HTML via the status_message parameter to (1) /news, (2) /comment, (3) /forum, (4) /blog, and (5) /tags; the status_message parameter to (6) forum.php, (7) discussion.php, (8) guestbook.php, (9) blog.php, (10) news.php, (11) srv_updates.php, (12) srv_backups.php, (13) srv_twist_prevention.php, (14) srv_tags.php, (15) srv_tags_reindex.php, (16) google_sitemap.php, (17) sitemap_history.php, (18) srv_options.php, (19) locales.php and (20) plugins_wizard.php in _admin/; a crafted IMG BBcode tag in the message body of a (21) forum, (22) guestbook, or (23) comment; (24) the content of an avatar file, which is not properly handled by Internet Explorer; and (25) the loginname parameter (aka username) in _admin/index.php.
by Vladimir Vorontsov
CVE-2009-4067 EXPLOITDB MEDIUM text VERIFIED
Auerswald Linux USB <2.6.27 - Buffer Overflow
Buffer overflow in the auerswald_probe function in the Auerswald Linux USB driver for the Linux kernel before 2.6.27 allows physically proximate attackers to execute arbitrary code, cause a denial of service via a crafted USB device, or take full control of the system.
by R. Dominguez Veg
CVSS 6.8
EIP-2026-101144 EXPLOITDB text VERIFIED
3Com OfficeConnect - Code Execution
by Andrea Fabizi
CVE-2009-3333 EXPLOITDB text VERIFIED
alibasta com_koesubmit - Remote Code Execution via mosConfig_absolute_path Parameter
PHP remote file inclusion vulnerability in koesubmit.php in the koeSubmit (com_koesubmit) component 1.0 for Mambo allows remote attackers to execute arbitrary PHP code via a URL in the mosConfig_absolute_path parameter.
by Don Tukulesto
EIP-2026-103822 EXPLOITDB text VERIFIED
Xpdf 3.01 - Local Heap Overflow / Null Pointer Dereference
by Adam Zabrocki
EIP-2026-100288 EXPLOITDB text VERIFIED
DWebPro - Command Injection
by Rafael Sousa
EIP-2026-118656 EXPLOITDB text VERIFIED
httpdx 1.4 - h_handlepeer Buffer Overflow (Metasploit)
by Pankaj Kohli_ Trancer
CVE-2009-1547 EXPLOITDB HIGH text VERIFIED
Internet Explorer 5.01 SP4, 6, 6 SP1, 7 - Remote Code Execution via Crafted Data Stream Header
Unspecified vulnerability in Microsoft Internet Explorer 5.01 SP4, 6, 6 SP1, and 7 allows remote attackers to execute arbitrary code via a crafted data stream header that triggers memory corruption, aka "Data Stream Header Corruption Vulnerability."
by Skylined
CVSS 8.8
EIP-2026-117598 EXPLOITDB text VERIFIED
Millenium MP3 Studio 2.0 - '.m3u' Local Buffer Overflow
by dellnull
CVE-2009-4554 EXPLOITDB text VERIFIED
Snitz Forums 2000 3.4.07 - Cross-Site Scripting via IMG or Sound Tag Onload Attribute
Multiple cross-site scripting (XSS) vulnerabilities in Snitz Forums 2000 3.4.07 allow remote attackers to inject arbitrary web script or HTML via (1) the url parameter to pop_send_to_friend.asp, related to a crafted onload attribute of an IMG element; or (2) an onload attribute in a sound tag.
by Andrea Fabrizi
CVE-2009-4554 EXPLOITDB text VERIFIED
Snitz Forums 2000 3.4.07 - Cross-Site Scripting via IMG or Sound Tag Onload Attribute
Multiple cross-site scripting (XSS) vulnerabilities in Snitz Forums 2000 3.4.07 allow remote attackers to inject arbitrary web script or HTML via (1) the url parameter to pop_send_to_friend.asp, related to a crafted onload attribute of an IMG element; or (2) an onload attribute in a sound tag.
by Andrea Fabrizi
CVE-2009-2114 EXPLOITDB text VERIFIED
SkyBlueCanvas 1.1 r237 - Cross-Site Scripting via mgroup mgr objtype id or dir Parameter
Multiple cross-site scripting (XSS) vulnerabilities in admin.php in SkyBlueCanvas 1.1 r237 allow remote attackers to inject arbitrary web script or HTML via the (1) mgroup, (2) mgr, (3) objtype, (4) id, and (5) dir parameters.
by MaXe
CVE-2009-4522 EXPLOITDB text VERIFIED
BloofoxCMS 0.3.5 - Cross-Site Scripting via Search Parameter
Cross-site scripting (XSS) vulnerability in search.5.html in BloofoxCMS 0.3.5 allows remote attackers to inject arbitrary web script or HTML via the search parameter to index.php. NOTE: some of these details are obtained from third party information.
by drunken danish rednecks
CVE-2009-3591 EXPLOITDB text VERIFIED
Dopewars 1.5.12 - Denial of Service via Invalid REQUESTJET Message
Dopewars 1.5.12 allows remote attackers to cause a denial of service (segmentation fault) via a REQUESTJET message with an invalid location.
by Doug Prostko
CVE-2006-5675 EXPLOITDB text VERIFIED
Pentaho Business Intelligence Suite - SQL Injection via MySQL Scripts
Multiple unspecified vulnerabilities in Pentaho Business Intelligence (BI) Suite before 1.2 RC3 (1.2.0.470-RC3) have unknown impact and attack vectors, related to "MySQL Scripts need changes for security," possibly SQL injection vulnerabilities associated with these scripts.
by antisnatchor
CVE-2009-3730 EXPLOITDB text VERIFIED
IBM Rational RequisitePro 7.1.0 - Cross-Site Scripting via ReqWeb Help Parameters
Multiple cross-site scripting (XSS) vulnerabilities in the ReqWeb Help feature (aka the Web Client Help system) in IBM Rational RequisitePro 7.1.0 allow remote attackers to inject arbitrary web script or HTML via (1) the operation parameter to ReqWebHelp/advanced/workingSet.jsp, or the (2) searchWord, (3) maxHits, (4) scopedSearch, or (5) scope parameter to ReqWebHelp/basic/searchView.jsp.
by IBM
CVE-2009-3730 EXPLOITDB text VERIFIED
IBM Rational RequisitePro 7.1.0 - Cross-Site Scripting via ReqWeb Help Parameters
Multiple cross-site scripting (XSS) vulnerabilities in the ReqWeb Help feature (aka the Web Client Help system) in IBM Rational RequisitePro 7.1.0 allow remote attackers to inject arbitrary web script or HTML via (1) the operation parameter to ReqWebHelp/advanced/workingSet.jsp, or the (2) searchWord, (3) maxHits, (4) scopedSearch, or (5) scope parameter to ReqWebHelp/basic/searchView.jsp.
by IBM
CVE-2009-3730 EXPLOITDB text VERIFIED
IBM Rational RequisitePro 7.1.0 - Cross-Site Scripting via ReqWeb Help Parameters
Multiple cross-site scripting (XSS) vulnerabilities in the ReqWeb Help feature (aka the Web Client Help system) in IBM Rational RequisitePro 7.1.0 allow remote attackers to inject arbitrary web script or HTML via (1) the operation parameter to ReqWebHelp/advanced/workingSet.jsp, or the (2) searchWord, (3) maxHits, (4) scopedSearch, or (5) scope parameter to ReqWebHelp/basic/searchView.jsp.
by IBM
CVE-2009-4554 EXPLOITDB text VERIFIED
Snitz Forums 2000 3.4.07 - Cross-Site Scripting via IMG or Sound Tag Onload Attribute
Multiple cross-site scripting (XSS) vulnerabilities in Snitz Forums 2000 3.4.07 allow remote attackers to inject arbitrary web script or HTML via (1) the url parameter to pop_send_to_friend.asp, related to a crafted onload attribute of an IMG element; or (2) an onload attribute in a sound tag.
by Andrea Fabrizi
EIP-2026-118944 EXPLOITDB text VERIFIED
NaviCOPA 3.0.1.2 - Source Disclosure
by Dr_IDE