Exploitdb Exploits

31,394 exploits tracked across all sources.

Sort: Activity Stars
CVE-2007-2751 EXPLOITDB text VERIFIED
PHPGlossar 0.8 - Remote File Inclusion via format_menue Parameter
Multiple PHP remote file inclusion vulnerabilities in PHPGlossar 0.8 allow remote attackers to execute arbitrary PHP code via a URL in the format_menue parameter to (1) admin/inc/change_action.php or (2) admin/inc/add.php.
by kezzap66345
CVE-2007-2743 EXPLOITDB text VERIFIED
GlossWord 1.8.1 - Remote File Inclusion via sys[path_addon] Parameter
PHP remote file inclusion vulnerability in custom_vars.php in GlossWord 1.8.1 allows remote attackers to execute arbitrary PHP code via a URL in the sys[path_addon] parameter.
by BeyazKurt
CVE-2007-2788 EXPLOITDB text VERIFIED
Sun JDK and JRE - Remote Code Execution via ICC Profile Integer Overflow
Integer overflow in the embedded ICC profile image parser in Sun Java Development Kit (JDK) before 1.5.0_11-b03 and 1.6.x before 1.6.0_01-b06, and Sun Java Runtime Environment in JDK and JRE 6, JDK and JRE 5.0 Update 10 and earlier, SDK and JRE 1.4.2_14 and earlier, and SDK and JRE 1.3.1_20 and earlier, allows remote attackers to execute arbitrary code or cause a denial of service (JVM crash) via a crafted JPEG or BMP file that triggers a buffer overflow.
by Chris Evans
CVE-2007-2753 EXPLOITDB text VERIFIED
RunawaySoft Haber portal 1.0 - Info Disclosure
RunawaySoft Haber portal 1.0 stores sensitive information under the web root with insufficient access control, which allows remote attackers to download a database via a direct request for data/xice.mdb.
by kerem125
CVE-2007-2441 EXPLOITDB text VERIFIED
Caucho Resin <3.1.0 - Info Disclosure
Caucho Resin Professional 3.1.0 and Caucho Resin 3.1.0 and earlier for Windows allows remote attackers to obtain the system path via certain URLs associated with (1) deploying web applications or (2) displaying .xtp files.
by Derek Abdine
CVE-2007-2440 EXPLOITDB text VERIFIED
Caucho Resin <3.1.0 - Path Traversal
Directory traversal vulnerability in Caucho Resin Professional 3.1.0 and Caucho Resin 3.1.0 and earlier for Windows allows remote attackers to read certain files via a .. (dot dot) in a URI containing a "\web-inf" sequence.
by Derek Abdine
CVE-2007-2722 EXPLOITDB text VERIFIED
NewzCrawler 1.8 - Denial of Service via ENCLOSURE URL Attribute
Unspecified vulnerability in NewzCrawler 1.8 allows remote attackers to cause a denial of service (application instability) via certain invalid strings in the URL attribute of an ENCLOSURE element, as demonstrated by a "%s" sequence, a "%Y" sequence, a "%%" sequence, and an "n," sequence.
by gbr
CVE-2007-2726 EXPLOITDB text VERIFIED
BitsCast 0.13.0 - Denial of Service via Invalid RSS pubDate Element
BitsCast 0.13.0 allows remote attackers to cause a denial of service (application crash) via an RSS 2.0 feed item with certain invalid strings in a pubDate element, as demonstrated by repeated "../A" or "A/../" patterns.
by gbr
CVE-2007-1898 EXPLOITDB text VERIFIED
Jetbox CMS 2.1 - Unauthenticated Arbitrary Email Spamming via formmail.php Parameters
formmail.php in Jetbox CMS 2.1 allows remote attackers to send arbitrary e-mails (spam) via modified recipient, _SETTINGS[allowed_email_hosts][], and subject parameters.
by Jesper Jurcenoks
CVE-2007-2732 EXPLOITDB text VERIFIED
Jetbox CMS - Cross-Site Scripting via Multiple Parameters
Multiple cross-site scripting (XSS) vulnerabilities in Jetbox CMS allow remote attackers to inject arbitrary web script or HTML via the (1) path parameter to view/search/; or the (2) companyname, (3) country, (4) email, (5) firstname, (6) middlename, (7) required, (8) surname, or (9) title parameter to view/supplynews/.
by Mikhail Markin
CVE-2007-2732 EXPLOITDB text VERIFIED
Jetbox CMS - Cross-Site Scripting via Multiple Parameters
Multiple cross-site scripting (XSS) vulnerabilities in Jetbox CMS allow remote attackers to inject arbitrary web script or HTML via the (1) path parameter to view/search/; or the (2) companyname, (3) country, (4) email, (5) firstname, (6) middlename, (7) required, (8) surname, or (9) title parameter to view/supplynews/.
by Mikhail Markin
CVE-2007-2736 EXPLOITDB text VERIFIED
Achievo 1.1.0 - Remote File Inclusion via config_atkroot Parameter
PHP remote file inclusion vulnerability in index.php in Achievo 1.1.0 allows remote attackers to execute arbitrary PHP code via a URL in the config_atkroot parameter.
by Katatafish
EIP-2026-103785 EXPLOITDB text VERIFIED
Multiple Personal Firewall Products - Local Protection Mechanism Bypass
by Matousec Transparent security
CVE-2007-2709 EXPLOITDB text VERIFIED
NagiosQL 2005 2.00 - Remote File Inclusion via SETS[path][physical] Parameter
PHP remote file inclusion vulnerability in functions/prepend_adm.php in NagiosQL 2005 2.00 allows remote attackers to execute arbitrary PHP code via a URL in the SETS[path][physical] parameter.
by ThE TiGeR
CVE-2007-1902 EXPLOITDB text VERIFIED
SonicBB 1.0 - SQL Injection via Part or By Parameter in Search or ID Parameter in Viewforum
Multiple SQL injection vulnerabilities in SonicBB 1.0 allow remote attackers to execute arbitrary SQL commands via the (1) part and (2) by parameters to (a) search.php, or the (2) id parameter to (b) viewforum.php.
by Jesper Jurcenoks
CVE-2007-1903 EXPLOITDB text VERIFIED
SonicBB 1.0 - Cross-Site Scripting via Search Part Parameter
Cross-site scripting (XSS) vulnerability in search.php in SonicBB 1.0 allows remote attackers to inject arbitrary web script or HTML via the part parameter.
by Jesper Jurcenoks
CVE-2007-2710 EXPLOITDB text VERIFIED
NagiosQL < 2.00-p00 - Remote File Inclusion via SETS[path][IT] Parameter
PHP remote file inclusion vulnerability in functions/prepend_adm.php in NagiosQL 2.00-P00 and earlier allows remote attackers to execute arbitrary PHP code via a URL in the SETS[path][IT] parameter. NOTE: the provenance of this information is unknown; the details are obtained solely from third party information.
by ThE TiGeR
CVE-2007-2706 EXPLOITDB text VERIFIED
Media Gallery < 1.4.8a - Remote File Inclusion via _MG_CONF[path_html] Parameter
PHP remote file inclusion vulnerability in maint/ftpmedia.php in Media Gallery 1.4.8a and earlier for Geeklog allows remote attackers to execute arbitrary PHP code via a URL in the _MG_CONF[path_html] parameter.
by ThE TiGeR
CVE-2007-2707 EXPLOITDB text VERIFIED
Linksnet Newsfeed 1.0 - Remote File Inclusion via dirpath_linksnet_newsfeed Parameter
PHP remote file inclusion vulnerability in linksnet_linkslog_rss.php in Linksnet Newsfeed 1.0 allows remote attackers to execute arbitrary PHP code via a URL in the dirpath_linksnet_newsfeed parameter.
by ThE TiGeR
CVE-2007-2708 EXPLOITDB text VERIFIED
Feindt Computerservice News <2.0 - RCE
PHP remote file inclusion vulnerability in newsadmin.php in Feindt Computerservice News (News-Script) 2.0 allows remote attackers to execute arbitrary PHP code via a URL in the action parameter.
by Mogatil
CVE-2007-2662 EXPLOITDB text VERIFIED
EfesTECH Haber 5.0 - SQL Injection via id Parameter
SQL injection vulnerability in EfesTECH Haber 5.0 allows remote attackers to execute arbitrary SQL commands via the id parameter to the top-level URI.
by CyberGhost
CVE-2007-2199 EXPLOITDB text VERIFIED
CJG EXPLORER PRO 3.3 - Remote Code Execution via g_pcltar_lib_dir Parameter
PHP remote file inclusion vulnerability in lib/pcltar.lib.php (aka pcltar.php) in the PclTar module 1.3 and 1.3.1 for Vincent Blavet PhpConcept Library, as used in multiple products including (1) Joomla! 1.5.0 Beta, (2) N/X Web Content Management System (WCMS) 4.5, (3) CJG EXPLORER PRO 3.3, and (4) phpSiteBackup 0.1, allows remote attackers to execute arbitrary PHP code via a URL in the g_pcltar_lib_dir parameter.
by Mogatil
EIP-2026-114919 EXPLOITDB text VERIFIED
Apple Safari - Feed URI Denial of Service
by Moshe Ben-Abu
CVE-2007-2659 EXPLOITDB text VERIFIED
PHP Advanced Transfer Manager <1.30 - Path Traversal
Directory traversal vulnerability in index.php in PHP Advanced Transfer Manager (phpATM) 1.30 allows remote attackers to read arbitrary files and obtain script source code via a .. (dot dot) in the directory parameter in a downloadfile action.
by Ali.Mohajem
CVE-2007-2660 EXPLOITDB text VERIFIED
Vincent Blavet PhpConcept Library <3.3 - RCE
PHP remote file inclusion vulnerability in pcltrace.lib.php in the PclTar module in Vincent Blavet PhpConcept Library, as used in CJG EXPLORER PRO 3.3 and earlier and probably other products, allows remote attackers to execute arbitrary PHP code via a URL in the g_pcltar_lib_dir parameter. NOTE: CVE disputes this issue since there is no include statement in pcltrace.lib.php. NOTE: the pcltar.lib.php vector is already covered by CVE-2007-2199
by Mogatil