Exploitdb Exploits

31,348 exploits tracked across all sources.

Sort: Activity Stars
EIP-2026-100261 EXPLOITDB text VERIFIED
DMXReady Faqs Manager 1.1 - Remote Contents Change
by ajann
EIP-2026-100259 EXPLOITDB text VERIFIED
DMXReady Document Library Manager 1.1 - Contents Change
by ajann
EIP-2026-100257 EXPLOITDB text VERIFIED
DMXReady Contact Us Manager 1.1 - Remote Contents Change
by ajann
CVE-2009-0428 EXPLOITDB text VERIFIED
DMXReady Secure Document Library <1.1 - SQL Injection
SQL injection vulnerability in CategoryManager/upload_image_category.asp in DMXReady Secure Document Library 1.1 and earlier allows remote attackers to execute arbitrary SQL commands via the cid parameter.
by ajann
EIP-2026-100255 EXPLOITDB text VERIFIED
DMXReady Catalog Manager 1.1 - Remote Contents Change
by ajann
EIP-2026-100254 EXPLOITDB text VERIFIED
DMXReady BillboardManager 1.1 - Contents Change
by x0r
CVE-2009-0726 EXPLOITDB text VERIFIED
GigCalendar (com_gigcal) 1.0 - SQL Injection
SQL injection vulnerability in the GigCalendar (com_gigcal) component 1.0 for Mambo and Joomla! allows remote attackers to execute arbitrary SQL commands via the gigcal_gigs_id parameter in a details action to index.php.
by boom3rang
CVE-2009-0326 EXPLOITDB text VERIFIED
Dark Age CMS 0.2c beta - SQL Injection
SQL injection vulnerability in login.php in Dark Age CMS 0.2c beta allows remote attackers to execute arbitrary SQL commands via the (1) username and (2) password parameters. NOTE: the provenance of this information is unknown; the details are obtained solely from third party information.
by darkjoker
CVE-2009-0498 EXPLOITDB text VERIFIED
Virtual GuestBook 2.1 - Info Disclosure
Virtual GuestBook (vgbook) 2.1 stores sensitive information under the web root with insufficient access control, which allows remote attackers to download the database file via a direct request to guestbook.mdb.
by Moudi
EIP-2026-100267 EXPLOITDB text VERIFIED
DMXReady News Manager 1.1 - Arbitrary Category Change
by ajann
EIP-2026-100251 EXPLOITDB text VERIFIED
DMXReady Account List Manager 1.1 - Contents Change
by ajann
CVE-2009-0263 EXPLOITDB text VERIFIED
Winamp < 5.541 - Buffer Overflow via AIFF COMM Chunk or MP3 File
Multiple buffer overflows in Winamp 5.541 and earlier allow remote attackers to cause a denial of service and possibly execute arbitrary code via (1) a large Common Chunk (COMM) header value in an AIFF file and (2) a large invalid value in an MP3 file.
by securfrog
EIP-2026-114254 EXPLOITDB text VERIFIED
WordPress Plugin WP-Forum 1.7.8 - SQL Injection
by seomafia
EIP-2026-113130 EXPLOITDB text VERIFIED
Visuplay CMS - Multiple SQL Injections
by Joseph Giron
CVE-2009-0495 EXPLOITDB text VERIFIED
REALTOR 747 4.11 - Remote Code Execution via INC_DIR Parameter
PHP remote file inclusion vulnerability in include/define.php in REALTOR 747 4.11 allows remote attackers to execute arbitrary PHP code via a URL in the INC_DIR parameter.
by ahmadbady
EIP-2026-111597 EXPLOITDB text VERIFIED
PWP Wiki Processor 1-5-1 - Arbitrary File Upload
by ahmadbady
EIP-2026-110416 EXPLOITDB text VERIFIED
Ovidentia 6.7.5 - 'index.php' Multiple Cross-Site Scripting Vulnerabilities
by Ivan Sanchez
CVE-2009-0494 EXPLOITDB text VERIFIED
com_portfol 1.2 - SQL Injection via vcatid Parameter
SQL injection vulnerability in the Portfol (com_portfol) 1.2 component for Joomla! allows remote attackers to execute arbitrary SQL commands via the vcatid parameter in a viewcategory action to index.php.
by H!tm@N
EIP-2026-100250 EXPLOITDB text VERIFIED
dMx READ - Remote Database Disclosure
by Cyber-Zone
EIP-2026-114476 EXPLOITDB text VERIFIED
XOOPS Module tadbook2 - SQL Injection
by stylextra
EIP-2026-113391 EXPLOITDB text VERIFIED
Weight Loss Recipe Book 3.1 - Authentication Bypass
by x0r
EIP-2026-112288 EXPLOITDB text VERIFIED
Social Engine - SQL Injection
by snakespc
EIP-2026-111993 EXPLOITDB text VERIFIED
Seo4SMF for SMF forums - Multiple Vulnerabilities
by WHK
EIP-2026-110819 EXPLOITDB text VERIFIED
PHP-Fusion Mod the_kroax - SQL Injection
by FasTWORM
EIP-2026-110614 EXPLOITDB text VERIFIED
Photobase 1.2 - 'Language' Local File Inclusion
by Osirys