Exploitdb Exploits

31,394 exploits tracked across all sources.

Sort: Activity Stars
CVE-2009-2521 EXPLOITDB text VERIFIED
Microsoft Internet Information Services 5.0-7.0 - Authenticated Denial of Service via FTP List Command
Stack consumption vulnerability in the FTP Service in Microsoft Internet Information Services (IIS) 5.0 through 7.0 allows remote authenticated users to cause a denial of service (daemon crash) via a list (ls) -R command containing a wildcard that references a subdirectory, followed by a .. (dot dot), aka "IIS FTP Service DoS Vulnerability."
by kingcope
EIP-2026-112669 EXPLOITDB text VERIFIED
Ticket Support Script - 'ticket.php' Arbitrary File Upload
by InjEctOr5
CVE-2009-4474 EXPLOITDB text VERIFIED
Mike de Boer zoom (com_zoom) 2.0 - SQL Injection
SQL injection vulnerability in the Mike de Boer zoom (com_zoom) component 2.0 for Mambo allows remote attackers to execute arbitrary SQL commands via the catid parameter to index.php.
by boom3rang
CVE-2009-4475 EXPLOITDB text VERIFIED
Joomlub com_joomlub - SQL Injection via aid Parameter
SQL injection vulnerability in the Joomlub (com_joomlub) component for Joomla! allows remote attackers to execute arbitrary SQL commands via the aid parameter in an auction edit action to index.php.
by 599eme Man
CVE-2009-4470 EXPLOITDB text VERIFIED
DVBBS 2.0 - SQL Injection via boardrule.php groupboardid Parameter
SQL injection vulnerability in boardrule.php in DVBBS 2.0 allows remote attackers to execute arbitrary SQL commands via the groupboardid parameter.
by Securitylab.ir
EIP-2026-116093 EXPLOITDB text VERIFIED
PPstream 2.6.86.8900 - PPSMediaList ActiveX Remote Buffer Overflow (PoC) (2)
by expose 0day
EIP-2026-116092 EXPLOITDB text VERIFIED
PPstream 2.6.86.8900 - PPSMediaList ActiveX Remote Buffer Overflow (PoC) (1)
by expose 0day
CVE-2009-4472 EXPLOITDB text VERIFIED
PHPope < 1.0.0 - Remote Code Execution via GLOBALS Parameter Manipulation
Multiple PHP remote file inclusion vulnerabilities in PHPope 1.0.0 and earlier allow remote attackers to execute arbitrary PHP code via a URL in the (1) GLOBALS[config][dir][plugins] parameter to plugins/address/admin/index.php, (2) GLOBALS[config][dir][functions] parameter to plugins/im/compose.php, and (3) GLOBALS[config][dir][classes] parameter to plugins/cssedit/admin/index.php.
by cr4wl3r
CVE-2009-4471 EXPLOITDB text VERIFIED
FreeSchool < 1.1.0 - Remote Code Execution via CLASSPATH Parameter
Multiple PHP remote file inclusion vulnerabilities in FreeSchool 1.1.0 and earlier allow remote attackers to execute arbitrary PHP code via a URL in the CLASSPATH parameter to (1) bib_form.php, (2) bib_pldetails.php, (3) bib_plform.php, (4) bib_plsearchc.php, (5) bib_plsearchs.php, (6) bib_save.php, (7) bib_searchc.php, (8) bib_searchs.php, (9) edi_form.php, (10) edi_save.php, (11) gen_form.php, (12) gen_save.php, (13) lin_form.php, (14) lin_save.php, (15) luo_form.php, (16) luo_save.php, (17) sog_form.php, or (18) sog_save.php in biblioteca/; (19) cal_insert.php, (20) cal_save.php, or (21) cal_saveactivity.php in calendario/; (22) circolari/cir_save.php; or (23) modulistica/mdl_save.php.
by cr4wl3r
CVE-2009-3099 EXPLOITDB text VERIFIED
HP OpenView Operations Manager 8.1 - Info Disclosure
Unspecified vulnerability in HP OpenView Operations Manager 8.1 on Windows Server 2003 SP2 allows remote attackers to have an unknown impact, related to a "Remote exploit," as demonstrated by a certain module in VulnDisco Pack Professional 8.11, a different vulnerability than CVE-2007-3872. NOTE: as of 20090903, this disclosure has no actionable information. However, because the VulnDisco Pack author is a reliable researcher, the issue is being assigned a CVE identifier for tracking purposes.
by Intevydis
CVE-2009-4188 EXPLOITDB text VERIFIED
HP Operations Dashboard - Unauthenticated Remote Code Execution via Default j2deployer Credentials
HP Operations Dashboard has a default password of j2deployer for the j2deployer account, which allows remote attackers to execute arbitrary code via a session that uses the manager role to conduct unrestricted file upload attacks against the /manager servlet in the Tomcat servlet container. NOTE: this might overlap CVE-2009-3098.
by Intevydis
CVE-2009-3068 EXPLOITDB text VERIFIED
Adobe RoboHelp Server 8 - Unauthenticated Arbitrary File Upload and Remote Code Execution via JSP File Upload
Unrestricted file upload vulnerability in the RoboHelpServer Servlet (robohelp/server) in Adobe RoboHelp Server 8 allows remote attackers to execute arbitrary code by uploading a Java Archive (.jsp) file during a PUBLISH action, then accessing it via a direct request to the file in the robohelp/robo/reserved/web directory under its sessionid subdirectory, as demonstrated by the vd_adobe module in VulnDisco Pack Professional 8.7 through 8.11.
by Intevydis
EIP-2026-113281 EXPLOITDB text VERIFIED
Webformatique Reservation Manager 2.4 - 'index.php' Cross-Site Scripting
by Moudi
CVE-2009-3065 EXPLOITDB text VERIFIED
Rein Velt Vedit - Code Injection
PHP remote file inclusion vulnerability in editor/edit_htmlarea.php in Ve-EDIT 0.1.4 allows remote attackers to execute arbitrary PHP code via a URL in the highlighter parameter.
by RoMaNcYxHaCkEr
CVE-2009-3062 EXPLOITDB text VERIFIED
Phplivesupport. Phplive! - SQL Injection
SQL injection vulnerability in message_box.php in OSI Codes PHP Live! 3.3 allows remote attackers to execute arbitrary SQL commands via the deptid parameter.
by v3n0m
CVE-2009-4621 EXPLOITDB text VERIFIED
JiangHu Inn < 1.1 - SQL Injection via id Parameter
SQL injection vulnerability in the JiangHu Inn plugin 1.1 and earlier for Discuz! allows remote attackers to execute arbitrary SQL commands via the id parameter in a show action to forummission.php.
by ZhaoHuAn
CVE-2008-6992 EXPLOITDB text VERIFIED
GreenSQL Firewall - SQL Injection Protection Bypass via WHERE Clause Expression
GreenSQL Firewall (greensql-fw), possibly before 0.9.2 or 0.9.4, allows remote attackers to bypass the SQL injection protection mechanism via a WHERE clause containing an expression such as "x=y=z", which is successfully parsed by MySQL.
by Johannes Dahse
EIP-2026-103852 EXPLOITDB text VERIFIED
Apache Tomcat 3.2 - 404 Error Page Cross-Site Scripting
by MustLive
CVE-2009-2698 EXPLOITDB HIGH text VERIFIED
Linux Kernel <2.6.19 - Privilege Escalation
The udp_sendmsg function in the UDP implementation in (1) net/ipv4/udp.c and (2) net/ipv6/udp.c in the Linux kernel before 2.6.19 allows local users to gain privileges or cause a denial of service (NULL pointer dereference and system crash) via vectors involving the MSG_MORE flag and a UDP socket.
by spender
CVSS 7.8
CVE-2009-4477 EXPLOITDB text VERIFIED
Xstate Real Estate 1.0 - SQL Injection
SQL injection vulnerability in page.html in Xstate Real Estate 1.0 allows remote attackers to execute arbitrary SQL commands via the pid parameter.
by Moudi
EIP-2026-119150 EXPLOITDB text VERIFIED
SmartVMD 1.3 - ActiveX Control 'VideoMovementDetection.dll' Remote Buffer Overflow
by optix hacker
CVE-2009-4478 EXPLOITDB text VERIFIED
Xstate Real Estate 1.0 - Cross-Site Scripting via PATH_INFO to home.html or lands.html
Multiple cross-site scripting (XSS) vulnerabilities in Xstate Real Estate 1.0 allow remote attackers to inject arbitrary web script or HTML via the PATH_INFO to (1) home.html or (2) lands.html.
by Moudi
CVE-2009-3064 EXPLOITDB text VERIFIED
Rein Velt Vedit - Path Traversal
Directory traversal vulnerability in debugger/debug_php.php in Ve-EDIT 0.1.4 allows remote attackers to include and execute arbitrary local files via a .. (dot dot) in the _GET[filename] parameter.
by CoBRa_21
CVE-2009-3066 EXPLOITDB text VERIFIED
Property Watch 2.0 - Cross-Site Scripting via VideoID or Redirect Parameter
Multiple cross-site scripting (XSS) vulnerabilities in PropertyWatchScript.com Property Watch 2.0 allow remote attackers to inject arbitrary web script or HTML via the (1) videoid parameter to tools/email.php and (2) redirect parameter to tools/login.php.
by Moudi
CVE-2009-3066 EXPLOITDB text VERIFIED
Property Watch 2.0 - Cross-Site Scripting via VideoID or Redirect Parameter
Multiple cross-site scripting (XSS) vulnerabilities in PropertyWatchScript.com Property Watch 2.0 allow remote attackers to inject arbitrary web script or HTML via the (1) videoid parameter to tools/email.php and (2) redirect parameter to tools/login.php.
by Moudi