Exploitdb Exploits

31,394 exploits tracked across all sources.

Sort: Activity Stars
CVE-2007-2661 EXPLOITDB text VERIFIED
BlogMe 3.0 - SQL Injection via archshow.asp var Parameter
SQL injection vulnerability in archshow.asp in BlogMe 3.0 allows remote attackers to execute arbitrary SQL commands via the var parameter, a different vector than CVE-2006-5976.
by gsy
CVE-2007-2664 EXPLOITDB text VERIFIED
yet_another_asterisk_panel < 1.5 - Remote File Inclusion via root_path Parameter
PHP remote file inclusion vulnerability in includes/common.php in Yaap 1.5 and earlier allows remote attackers to execute arbitrary PHP code via a URL in the root_path parameter, possibly related to the __autoload function.
by 3l3ctric-Cracker
CVE-2007-2717 EXPLOITDB text VERIFIED
iGeneric (iG) Shop 1.4 - SQL Injection
SQL injection vulnerability in shop/page.php in iGeneric (iG) Shop 1.4 allows remote attackers to execute arbitrary SQL commands via the type_id[] parameter, a different vector than CVE-2005-0537.
by gsy
CVE-2007-2716 EXPLOITDB text VERIFIED
EQdkp < 1.3.2c - Cross-Site Scripting via Show Parameter
Multiple cross-site scripting (XSS) vulnerabilities in EQdkp 1.3.2c and earlier allow remote attackers to inject arbitrary web script or HTML via the show parameter to (1) listmembers.php and (2) stats.php. NOTE: some of these details are obtained from third party information.
by kefka
CVE-2007-2718 EXPLOITDB text VERIFIED
Stalker CommuniGate Pro <5.1.8 - XSS
Cross-site scripting (XSS) vulnerability in the WebMail system in Stalker CommuniGate Pro 5.1.8 and earlier, when using Microsoft Internet Explorer, allows remote attackers to inject arbitrary web script or HTML via crafted STYLE tags.
by Alla Bezroutchko
CVE-2007-2663 EXPLOITDB text VERIFIED
Beacon 0.2.0 - Remote File Inclusion via languagePath Parameter
PHP remote file inclusion vulnerability in language/1/splash.lang.php in Beacon 0.2.0 allows remote attackers to execute arbitrary PHP code via a URL in the languagePath parameter.
by ThE TiGeR
CVE-2007-2639 EXPLOITDB text VERIFIED
TFTPdWin 0.4.2 - Directory Traversal
Directory traversal vulnerability in TFTPdWin 0.4.2 allows remote attackers to read or modify arbitrary files outside the TFTP root via unspecified vectors.
by Digital Defense
EIP-2026-116103 EXPLOITDB text VERIFIED
Progress OpenEdge 10b - Multiple Denial of Service Vulnerabilities
by Eelko Neven
CVE-2007-2642 EXPLOITDB text VERIFIED
R2K Gallery 1.7 - Directory Traversal via lang2 Parameter
Directory traversal vulnerability in galeria.php in R2K Gallery 1.7 allows remote attackers to read arbitrary files via a .. (dot dot) in the lang2 parameter.
by Dj7xpl
CVE-2007-2643 EXPLOITDB text VERIFIED
PinkCrow Designs Gallery/maGAZIn 2.0 - Path Traversal
Directory traversal vulnerability in phpThumb.php in PinkCrow Designs Gallery or maGAZIn 2.0 allows remote attackers to read arbitrary files via a .. (dot dot) in the src parameter.
by Dj7xpl
EIP-2026-104104 EXPLOITDB text VERIFIED
TeamSpeak Server 2.0.23 (Multiple Scripts) - Multiple Cross-Site Scripting Vulnerabilities
by Gilberto Ficara
CVE-2007-2645 EXPLOITDB text VERIFIED
libexif <0.6.14 - DoS/Code Injection
Integer overflow in the exif_data_load_data_entry function in exif-data.c in libexif before 0.6.14 allows user-assisted remote attackers to cause a denial of service (crash) or possibly execute arbitrary code via crafted EXIF data, involving the (1) doff or (2) s variable.
by Victor Stinner
CVE-2007-2641 EXPLOITDB text VERIFIED
W1L3D4 Philboard 0.2 - SQL Injection
SQL injection vulnerability in W1L3D4_bolum.asp in W1L3D4 Philboard 0.2 allows remote attackers to execute arbitrary SQL commands via the forumid parameter, a different vector than CVE-2007-0920.
by gsy
CVE-2007-2617 EXPLOITDB text VERIFIED
Sun Remote Services Net Connect Software - Unauthenticated Arbitrary File Read via srsexec Options
srsexec in Sun Remote Services (SRS) Net Connect Software Proxy Core package in Sun Solaris 10 does not enforce file permissions when opening files, which allows local users to read the first line of arbitrary files via the -d and -v options.
by anonymous
CVE-2007-2621 EXPLOITDB text VERIFIED
Thyme Calendar 1.3 - SQL Injection via event_view.php eid Parameter
SQL injection vulnerability in event_view.php in Thyme Calendar 1.3 allows remote attackers to execute arbitrary SQL commands via the eid parameter.
by warlord
CVE-2007-2632 EXPLOITDB text VERIFIED
PHP Multi User Randomizer 2006.09.13 - Cross-Site Scripting via edit_plugin Parameter or Array Parameters
Multiple cross-site scripting (XSS) vulnerabilities in PHP Multi User Randomizer (phpMUR) 2006.09.13 allow remote attackers to inject arbitrary web script or HTML via (1) the edit_plugin parameter to configure_plugin.tpl.php, or (2) certain array parameters to web/phpinfo.php, as demonstrated by 1[] or a[].
by the_Edit0r
CVE-2007-2620 EXPLOITDB text VERIFIED
Jakub Steiner's Original 0.11 - RCE
PHP remote file inclusion vulnerability in inc/config.inc.php in Jakub Steiner (aka jimmac) original 0.11 allows remote attackers to execute arbitrary PHP code via a URL in the x[1] parameter.
by GoLd_M
CVE-2007-2596 EXPLOITDB text VERIFIED
aForum < 1.32 - Remote File Inclusion via CommonAbsDir Parameter
PHP remote file inclusion vulnerability in common/func.php in aForum 1.32 and earlier allows remote attackers to execute arbitrary PHP code via a URL in the CommonAbsDir parameter.
by ThE TiGeR
CVE-2007-2597 EXPLOITDB text VERIFIED
telltarget_cms < 1.3.3 - Remote File Inclusion via Multiple Parameters
Multiple PHP remote file inclusion vulnerabilities in telltarget CMS 1.3.3 allow remote attackers to execute arbitrary PHP code via a URL in the (1) ordnertiefe parameter to site_conf.php; or the (2) tt_docroot parameter to (a) class.csv.php, (b) produkte_nach_serie.php, or (c) ref_kd_rubrik.php in functionen/; (d) hg_referenz_jobgalerie.php, (e) surfer_anmeldung_NWL.php, (f) produkte_nach_serie_alle.php, (g) surfer_aendern.php, (h) ref_kd_rubrik.php, or (i) referenz.php in module/; or (j) 1/lay.php or (k) 3/lay.php in standard/.
by GoLd_M
CVE-2007-2634 EXPLOITDB text VERIFIED
aForum 1.32 - Remote File Inclusion via Header Parameter
PHP remote file inclusion vulnerability in common/errormsg.php in aForum 1.32 and possibly earlier, when register_globals is enabled, allows remote attackers to execute arbitrary PHP code via a URL in the header parameter. NOTE: the provenance of this information is unknown; the details are obtained solely from third party information.
by ThE TiGeR
CVE-2007-2216 EXPLOITDB text VERIFIED
Internet Explorer 5.01, 6 SP1, and 7 - Remote Code Execution via tblinf32.dll ActiveX Control
The tblinf32.dll (aka vstlbinf.dll) ActiveX control for Internet Explorer 5.01, 6 SP1, and 7 uses an incorrect IObjectsafety implementation, which allows remote attackers to execute arbitrary code by requesting the HelpString property, involving a crafted DLL file argument to the TypeLibInfoFromFile function, which overwrites the HelpStringDll property to call the DLLGetDocumentation function in another DLL file, aka "ActiveX Object Vulnerability."
by Brett Moore
CVE-2007-1280 EXPLOITDB text VERIFIED
Adobe RoboHelp X5-6 & Server 6 - XSS
Cross-site scripting (XSS) vulnerability in Adobe RoboHelp X5, 6, and Server 6 allows remote attackers to inject arbitrary web script or HTML via a URL after a # (hash) in the URL path, as demonstrated using en/frameset-7.html, and possibly other unspecified vectors involving templates and (1) whstart.js and (2) whcsh_home.htm in WebHelp, (3) wf_startpage.js and (4) wf_startqs.htm in FlashHelp, or (5) WindowManager.dll in RoboHelp Server 6.
by Michael Domberg
CVE-2007-2615 EXPLOITDB text VERIFIED
Crie seu PHPLojaFacil 0.1.5 - Remote File Inclusion via path_local Parameter
Multiple PHP remote file inclusion vulnerabilities in Crie seu PHPLojaFacil 0.1.5 allow remote attackers to execute arbitrary PHP code via a URL in the path_local parameter to (1) ftp.php, (2) libs/db.php, and (3) libs/ftp.php.
by GoLd_M
CVE-2007-2608 EXPLOITDB text VERIFIED
Miplex2 Alpha 1 - Remote File Inclusion via Smarty Directory Parameter
PHP remote file inclusion vulnerability in lib/smarty/SmartyFU.class.php in Miplex2 Alpha 1 allows remote attackers to execute arbitrary PHP code via a URL in the system[smarty][dir] parameter.
by ThE TiGeR
CVE-2007-2607 EXPLOITDB text VERIFIED
LaVague < 0.3 - Remote File Inclusion via views_path Parameter
PHP remote file inclusion vulnerability in views/print/printbar.php in LaVague 0.3 and earlier allows remote attackers to execute arbitrary PHP code via a URL in the views_path parameter.
by kezzap66345