Exploitdb Exploits

31,394 exploits tracked across all sources.

Sort: Activity Stars
CVE-2007-2337 EXPLOITDB text VERIFIED
Exponent CMS <= 0.96.6 - Cross-Site Scripting via Multiple Parameters
Multiple cross-site scripting (XSS) vulnerabilities in Exponent CMS 0.96.6 Alpha and earlier allow remote attackers to inject arbitrary web script or HTML via the (1) url parameter to (a) magpie_debug.php and (b) magpie_simple.php in external/magpierss/scripts/, the (2) rss_url parameter to (c) magpie_slashbox.php in external/magpierss/scripts/, and the (3) body parameter to the (d) weblogmodule (aka Weblog Comments) module.
by Hamid Ebadi
CVE-2007-2337 EXPLOITDB text VERIFIED
Exponent CMS <= 0.96.6 - Cross-Site Scripting via Multiple Parameters
Multiple cross-site scripting (XSS) vulnerabilities in Exponent CMS 0.96.6 Alpha and earlier allow remote attackers to inject arbitrary web script or HTML via the (1) url parameter to (a) magpie_debug.php and (b) magpie_simple.php in external/magpierss/scripts/, the (2) rss_url parameter to (c) magpie_slashbox.php in external/magpierss/scripts/, and the (3) body parameter to the (d) weblogmodule (aka Weblog Comments) module.
by Hamid Ebadi
CVE-2007-2252 EXPLOITDB text VERIFIED
Exponent CMS 0.96.6 Alpha - Directory Traversal via iconspopup.php icodir Parameter
Directory traversal vulnerability in iconspopup.php in Exponent CMS 0.96.6 Alpha and earlier allows remote attackers to obtain sensitive information via a .. (dot dot) in the icodir parameter.
by Hamid Ebadi
CVE-2007-2189 EXPLOITDB text VERIFIED
MX Smartor Full Album Pack 2.0 RC1 - Remote File Inclusion via phpbb_root_path Parameter
PHP remote file inclusion vulnerability in admin/admin_album_otf.php in the MX Smartor Full Album Pack (FAP) 2.0 RC1 module for mxBB allows remote attackers to execute arbitrary PHP code via a URL in the phpbb_root_path parameter.
by bd0rk
CVE-2007-2342 EXPLOITDB text VERIFIED
CreaScripts CreaDirectory 1.2 - SQL Injection
SQL injection vulnerability in error.asp in CreaScripts CreaDirectory 1.2 allows remote attackers to execute arbitrary SQL commands via the id parameter, a different vector than CVE-2006-6083.
by CyberGhost
CVE-2007-1748 EXPLOITDB text VERIFIED
Windows 2000 Server SP4 and Server 2003 SP1/SP2 - Remote Code Execution via DNS RPC Zone Name Overflow
Stack-based buffer overflow in the RPC interface in the Domain Name System (DNS) Server Service in Microsoft Windows 2000 Server SP 4, Server 2003 SP 1, and Server 2003 SP 2 allows remote attackers to execute arbitrary code via a long zone name containing character constants represented by escape sequences.
by Andres Tarasco
CVE-2007-2157 EXPLOITDB text VERIFIED
Zomplog 3.8 - Directory Traversal via File Parameter
Directory traversal vulnerability in upload/force_download.php in Zomplog 3.8 allows remote attackers to read arbitrary files via a .. (dot dot) in the file parameter.
by Dj7xpl
CVE-2007-2156 EXPLOITDB text VERIFIED
rezervi_generic < 0.9 - Remote File Inclusion via root Parameter
Multiple PHP remote file inclusion vulnerabilities in Rezervi Generic 0.9 allow remote attackers to execute arbitrary PHP code via a URL in the root parameter to (1) datumVonDatumBis.inc.php, (2) footer.inc.php, (3) header.inc.php, and (4) stylesheets.php in templates/; and (5) wochenuebersicht.inc.php, (6) monatsuebersicht.inc.php, (7) jahresuebersicht.inc.php, and (8) tagesuebersicht.inc.php in belegungsplan/.
by GoLd_M
CVE-2007-2166 EXPLOITDB text VERIFIED
OpenSurveyPilot < 1.2.1 - Remote File Inclusion via cfgPathToProjectAdmin Parameter
PHP remote file inclusion vulnerability in administration/user/lib/group.inc.php in OpenSurveyPilot (osp) 1.2.1 and earlier allows remote attackers to execute arbitrary PHP code via a URL in the cfgPathToProjectAdmin parameter.
by Alkomandoz Hacker
EIP-2026-109976 EXPLOITDB text VERIFIED
NuclearBB Alpha 1 - Multiple SQL Injections
by John Martinelli
CVE-2007-2169 EXPLOITDB text VERIFIED
Mozzers SubSystem 1.0 - Code Injection
Static code injection vulnerability in add.php in Mozzers SubSystem 1.0 allows remote attackers to inject PHP code into subs.php via the (1) Sub-name or (2) Sub-url field. NOTE: an earlier report indicated that the add action can be reached through a request to index.php.
by Dj7xpl
CVE-2007-2158 EXPLOITDB text VERIFIED
jGallery 1.3 - Remote Code Execution
PHP remote file inclusion vulnerability in index.php in jGallery 1.3 allows remote attackers to execute arbitrary PHP code via a URL in the G_JGALL[inc_path] parameter.
by Dj7xpl
CVE-2004-0733 EXPLOITDB text VERIFIED
OllyDbg 1.10 - Remote Code Execution via Format String Specifiers
Format string vulnerability in OllyDbg 1.10 allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via format string specifiers that are directly provided to the OutputDebugString function call.
by jamikazu
CVE-2007-2098 EXPLOITDB text VERIFIED
Wabbit PHP Gallery 0.9 - Cross-Site Scripting via pic or gal Parameter
Multiple cross-site scripting (XSS) vulnerabilities in showpic.php in Wabbit PHP Gallery 0.9 allow remote attackers to inject arbitrary web script or HTML via the (1) pic and (2) gal parameters.
by the_Edit0r
EIP-2026-110870 EXPLOITDB text VERIFIED
PHP-Nuke 8.0.3.3b - SQL Injection Protection Bypass / Multiple SQL Injections
by Aleksandar
CVE-2007-2144 EXPLOITDB text VERIFIED
JoomlaPack 1.0.4a2 RE - Remote Code Execution via mosConfig_absolute_path Parameter
PHP remote file inclusion vulnerability in includes/CAltInstaller.php in the JoomlaPack (com_jpack) 1.0.4a2 RE component for Joomla! allows remote attackers to execute arbitrary PHP code via a URL in the mosConfig_absolute_path parameter.
by Cold Zero
CVE-2007-2154 EXPLOITDB text VERIFIED
cabron_connector < 1.1.0 - Remote File Inclusion via CabronServiceFolder Parameter
PHP remote file inclusion vulnerability in services/samples/inclusionService.php in Cabron Connector 1.1.0 allows remote attackers to execute arbitrary PHP code via a URL in the CabronServiceFolder parameter.
by Dj7xpl
CVE-2007-2094 EXPLOITDB text VERIFIED
Anthologia 0.5.2 - Remote File Inclusion via ads_file Parameter
PHP remote file inclusion vulnerability in index.php in Anthologia 0.5.2 allows remote attackers to execute arbitrary PHP code via a URL in the ads_file parameter.
by Dj7xpl
CVE-2007-2142 EXPLOITDB text VERIFIED
AjPortal2Php - Remote File Inclusion via PagePrefix Parameter
Multiple PHP remote file inclusion vulnerabilities in AjPortal2Php allow remote attackers to execute arbitrary PHP code via a URL in the PagePrefix parameter to (1) begin.inc.php, (2) connection.inc.php, (3) events.inc.php, (4) footer.inc.php, (5) header.inc.php, (6) menuleft.inc.php, or (7) pages.inc.php in includes/.
by Alkomandoz Hacker
CVE-2007-2091 EXPLOITDB text VERIFIED
tsdisplay4xoops 0.1 - Remote Code Execution via xoops_url Parameter
PHP remote file inclusion vulnerability in blocks/tsdisplay4xoops_block2.php in tsdisplay4xoops (TSD4XOOPS, aka the TeamSpeak display module) 0.1 allows remote attackers to execute arbitrary PHP code via a URL in the xoops_url parameter.
by GoLd_M
CVE-2007-2070 EXPLOITDB text VERIFIED
SunShop Shopping Cart < 3.5.1 - Remote Code Execution via abs_path Parameter
Multiple PHP remote file inclusion vulnerabilities in Turnkey Web Tools SunShop Shopping Cart before 3.5.1 allow remote attackers to execute arbitrary PHP code via a URL in the abs_path parameter to (1) index.php or (2) checkout.php.
by irvian
CVE-2007-2068 EXPLOITDB text VERIFIED
StoreFront mods for Gallery - Remote File Inclusion via GALLERY_BASEDIR Parameter
Multiple PHP remote file inclusion vulnerabilities in the StoreFront mods for Gallery allow remote attackers to execute arbitrary PHP code via a URL in the GALLERY_BASEDIR parameter to (1) mods/business_functions.php or (2) mods/ui_functions.php.
by Alkomandoz Hacker
CVE-2007-2069 EXPLOITDB text VERIFIED
openmairie < 1.11 - Directory Traversal via dsn[phptype] Parameter
Directory traversal vulnerability in scr/soustab.php in openMairie 1.11 and earlier allows remote attackers to include and execute arbitrary local files via a .. (dot dot) in the dsn[phptype] parameter.
by GoLd_M
CVE-2007-2064 EXPLOITDB text VERIFIED
Robert Ladstaetter ActionPoll 1.1.0-1.1.1 - RCE
Multiple PHP remote file inclusion vulnerabilities in Robert Ladstaetter ActionPoll 1.1.0, and possibly 1.1.1, allow remote attackers to execute arbitrary PHP code via a URL in (1) the CONFIG_POLLDB parameter to actionpoll.php or (2) the CONFIG_DB parameter to db/DataReaderWriter.php, different vectors than CVE-2001-1297.
by SekoMirza
CVE-2007-2086 EXPLOITDB text VERIFIED
CNStats 2.9 - Remote Code Execution
Multiple PHP remote file inclusion vulnerabilities in CNStats 2.9 allow remote attackers to execute arbitrary PHP code via a URL in the bj parameter to (1) who_r.php or (2) who_s.php in reports/.
by irvian