Exploitdb Exploits

31,394 exploits tracked across all sources.

Sort: Activity Stars
CVE-2007-1071 EXPLOITDB text VERIFIED
Apple Mac OS X 10.4.8 - DoS/Arbitrary Code Execution
Integer overflow in the gifGetBandProc function in ImageIO in Apple Mac OS X 10.4.8 allows remote attackers to cause a denial of service (segmentation fault) and possibly execute arbitrary code via a crafted GIF image that triggers the overflow during decompression. NOTE: this is a different issue than CVE-2006-3502 and CVE-2006-3503.
by Tom Ferris
CVE-2007-1058 EXPLOITDB text VERIFIED
Online Web Building 2.0 - SQL Injection
SQL injection vulnerability in user_pages/page.asp in Online Web Building 2.0 allows remote attackers to execute arbitrary SQL commands via the art_id parameter.
by Mehmet Ince
CVE-2007-1077 EXPLOITDB text VERIFIED
Design4Online UserPages2 2.0 - SQL Injection
SQL injection vulnerability in page.asp in Design4Online UserPages2 2.0 allows remote attackers to execute arbitrary SQL commands via the art_id parameter. NOTE: the provenance of this information is unknown; the details are obtained solely from third party information.
by xoron
CVE-2008-0982 EXPLOITDB text VERIFIED
Spyce 2.1.3 - Information Disclosure via Direct Request to automaton.spy
Spyce - Python Server Pages (PSP) 2.1.3 allows remote attackers to obtain sensitive information via a direct request for spyce/examples/automaton.spy, which reveals the path in an error message.
by Richard Brain
CVE-2008-0980 EXPLOITDB text VERIFIED
Spyce 2.1.3 - Cross-Site Scripting via Multiple Parameters
Multiple cross-site scripting (XSS) vulnerabilities in Spyce - Python Server Pages (PSP) 2.1.3 allow remote attackers to inject arbitrary web script or HTML via (1) the url or type parameter to docs/examples/redirect.spy; (2) the x parameter to docs/examples/handlervalidate.spy; (3) the name parameter to spyce/examples/request.spy; (4) the Name parameter to spyce/examples/getpost.spy; (5) the mytextarea parameter, the mypass parameter, or an empty parameter to spyce/examples/formtag.spy; (6) the newline parameter to the default URI under demos/chat/; (7) the text1 parameter to docs/examples/formintro.spy; or (8) the mytext or mydate parameter to docs/examples/formtag.spy.
by Richard Brain
CVE-2008-0980 EXPLOITDB text VERIFIED
Spyce 2.1.3 - Cross-Site Scripting via Multiple Parameters
Multiple cross-site scripting (XSS) vulnerabilities in Spyce - Python Server Pages (PSP) 2.1.3 allow remote attackers to inject arbitrary web script or HTML via (1) the url or type parameter to docs/examples/redirect.spy; (2) the x parameter to docs/examples/handlervalidate.spy; (3) the name parameter to spyce/examples/request.spy; (4) the Name parameter to spyce/examples/getpost.spy; (5) the mytextarea parameter, the mypass parameter, or an empty parameter to spyce/examples/formtag.spy; (6) the newline parameter to the default URI under demos/chat/; (7) the text1 parameter to docs/examples/formintro.spy; or (8) the mytext or mydate parameter to docs/examples/formtag.spy.
by Richard Brain
CVE-2008-0980 EXPLOITDB text VERIFIED
Spyce 2.1.3 - Cross-Site Scripting via Multiple Parameters
Multiple cross-site scripting (XSS) vulnerabilities in Spyce - Python Server Pages (PSP) 2.1.3 allow remote attackers to inject arbitrary web script or HTML via (1) the url or type parameter to docs/examples/redirect.spy; (2) the x parameter to docs/examples/handlervalidate.spy; (3) the name parameter to spyce/examples/request.spy; (4) the Name parameter to spyce/examples/getpost.spy; (5) the mytextarea parameter, the mypass parameter, or an empty parameter to spyce/examples/formtag.spy; (6) the newline parameter to the default URI under demos/chat/; (7) the text1 parameter to docs/examples/formintro.spy; or (8) the mytext or mydate parameter to docs/examples/formtag.spy.
by Richard Brain
CVE-2008-0980 EXPLOITDB text VERIFIED
Spyce 2.1.3 - Cross-Site Scripting via Multiple Parameters
Multiple cross-site scripting (XSS) vulnerabilities in Spyce - Python Server Pages (PSP) 2.1.3 allow remote attackers to inject arbitrary web script or HTML via (1) the url or type parameter to docs/examples/redirect.spy; (2) the x parameter to docs/examples/handlervalidate.spy; (3) the name parameter to spyce/examples/request.spy; (4) the Name parameter to spyce/examples/getpost.spy; (5) the mytextarea parameter, the mypass parameter, or an empty parameter to spyce/examples/formtag.spy; (6) the newline parameter to the default URI under demos/chat/; (7) the text1 parameter to docs/examples/formintro.spy; or (8) the mytext or mydate parameter to docs/examples/formtag.spy.
by Richard Brain
CVE-2008-0980 EXPLOITDB text VERIFIED
Spyce 2.1.3 - Cross-Site Scripting via Multiple Parameters
Multiple cross-site scripting (XSS) vulnerabilities in Spyce - Python Server Pages (PSP) 2.1.3 allow remote attackers to inject arbitrary web script or HTML via (1) the url or type parameter to docs/examples/redirect.spy; (2) the x parameter to docs/examples/handlervalidate.spy; (3) the name parameter to spyce/examples/request.spy; (4) the Name parameter to spyce/examples/getpost.spy; (5) the mytextarea parameter, the mypass parameter, or an empty parameter to spyce/examples/formtag.spy; (6) the newline parameter to the default URI under demos/chat/; (7) the text1 parameter to docs/examples/formintro.spy; or (8) the mytext or mydate parameter to docs/examples/formtag.spy.
by Richard Brain
CVE-2007-1044 EXPLOITDB text VERIFIED
Pearson Education PowerSchool <5.1.2 - Info Disclosure
Pearson Education PowerSchool 4.3.6 allows remote attackers to list the contents of the admin folder via a URI composed of the admin/ directory name and an arbitrary filename ending in ".js." NOTE: it was later reported that this issue had been addressed by 5.1.2.
by gheetotank
CVE-2007-1026 EXPLOITDB text VERIFIED
xlatunes < 0.1 - SQL Injection via view.php album Parameter
SQL injection vulnerability in view.php in XLAtunes 0.1 and earlier allows remote attackers to execute arbitrary SQL commands via the album parameter in view mode. NOTE: some of these details are obtained from third party information.
by Bl0od3r
CVE-2007-1031 EXPLOITDB text VERIFIED
SpoonLabs Vivvo Article Management CMS <3.4 - Path Traversal
Directory traversal vulnerability in include/db_conn.php in SpoonLabs Vivvo Article Management CMS 3.4 allows remote attackers to include and execute arbitrary local files via the root parameter.
by Snip0r
CVE-2007-1024 EXPLOITDB text VERIFIED
Meganoide's news 1.1.1 - Remote File Inclusion via _SERVER[DOCUMENT_ROOT] Parameter
PHP remote file inclusion vulnerability in include.php in Meganoide's news 1.1.1 allows remote attackers to execute arbitrary PHP code via a URL in the _SERVER[DOCUMENT_ROOT] parameter.
by KaRTaL
CVE-2007-1013 EXPLOITDB text VERIFIED
VirtualSystem Htaccess Passwort Generator 1.1 - RCE
PHP remote file inclusion vulnerability in generate.php in VirtualSystem Htaccess Passwort Generator 1.1 allows remote attackers to execute arbitrary PHP code via a URL in the ht_pfad parameter.
by kezzap66345
CVE-2007-1043 EXPLOITDB text VERIFIED
Ezboo webstats - Unauthenticated Access Control Bypass via Direct Request
Ezboo webstats, possibly 3.0.3, allows remote attackers to bypass authentication and gain access via a direct request to (1) update.php and (2) config.php.
by sn0oPy
CVE-2007-1020 EXPLOITDB text VERIFIED
CedStat 1.31 - Cross-Site Scripting via hier Parameter
Cross-site scripting (XSS) vulnerability in index.php in CedStat 1.31 allows remote attackers to inject arbitrary web script or HTML via the hier parameter.
by sn0oPy
CVE-2007-1022 EXPLOITDB text VERIFIED
Turuncu Portal 1.0 - SQL Injection via id Parameter
SQL injection vulnerability in h_goster.asp in Turuncu Portal 1.0 allows remote attackers to execute arbitrary SQL commands via the id parameter. NOTE: the provenance of this information is unknown; the details are obtained solely from third party information.
by chernobiLe
CVE-2007-1023 EXPLOITDB text VERIFIED
Snitz Forums 2000 3.1 SR4 - SQL Injection
SQL injection vulnerability in pop_profile.asp in Snitz Forums 2000 3.1 SR4 allows remote attackers to execute arbitrary SQL commands via the id parameter.
by Mehmet Ince
CVE-2007-1015 EXPLOITDB text VERIFIED
Aktueldownload Haber - SQL Injection
SQL injection vulnerability in HaberDetay.asp in Aktueldownload Haber script allows remote attackers to execute arbitrary SQL commands via the id parameter.
by Mehmet Ince
EIP-2026-116983 EXPLOITDB text VERIFIED
Comodo Firewall 2.3/2.4 - Flawed Component Control Cryptographic Hash
by Matousec Transparent security
CVE-2007-1010 EXPLOITDB text VERIFIED
ZebraFeeds 1.0 - Remote File Inclusion via zf_path Parameter
Multiple PHP remote file inclusion vulnerabilities in ZebraFeeds 1.0, when register_globals is enabled, allow remote attackers to execute arbitrary PHP code via a URL in the zf_path parameter to (1) aggregator.php and (2) controller.php in newsfeeds/includes/.
by ThE dE@Th
CVE-2005-2157 EXPLOITDB text VERIFIED
nabopoll 1.2 - Remote File Inclusion via survey.inc.php path Parameter
PHP remote file inclusion vulnerability in survey.inc.php for nabopoll 1.2 allows remote attackers to execute arbitrary PHP code via the path parameter.
by Cr@zy_King
EIP-2026-107712 EXPLOITDB text VERIFIED
ibProArcade 2.5.9+ - 'Arcade.php' SQL Injection
by sp00k
EIP-2026-106424 EXPLOITDB text VERIFIED
Deskpro 1.1 - 'faq.php' Cross-Site Scripting
by BLacK ZeRo
EIP-2026-105689 EXPLOITDB text VERIFIED
Calendar Express - 'search.php' Cross-Site Scripting
by BL4CK