Exploitdb Exploits

31,394 exploits tracked across all sources.

Sort: Activity Stars
CVE-2006-6927 EXPLOITDB text VERIFIED
Rialto 1.6 - SQL Injection via Multiple Parameters
Multiple SQL injection vulnerabilities in Rialto 1.6 allow remote attackers to execute arbitrary SQL commands via (1) the uname (username) and (2) pword (passwd) fields in (a) admin/default.asp; the (3) ID parameter to (b) listfull.asp or (c) printmain.asp; the (4) cat parameter to (d) listmain.asp, (e) searchoption.asp, or (f) searchmain.asp; the (5) Keyword parameter to (g) searchkey.asp; the (6) area parameter to searchmain.asp or searchoption.asp; the (7) searchin parameter to searchkey.asp; or the (8) cost1, (9) cost2, (10) acreage1, or (11) squarefeet1 parameters to searchoption.asp. NOTE: some of these details are obtained from third party information.
by laurent gaffie
CVE-2006-6928 EXPLOITDB text VERIFIED
Rialto 1.6 - Cross-Site Scripting via Multiple Parameters
Multiple cross-site scripting (XSS) vulnerabilities in Rialto 1.6 allow remote attackers to inject arbitrary web script or HTML via the (1) cat parameter to (a) listmain.asp or (b) searchmain.asp, the (2) the Keyword parameter to (c) searchkey.asp, or the (3) refno parameter to (d) forminfo.asp.
by laurent gaffie
CVE-2006-6927 EXPLOITDB text VERIFIED
Rialto 1.6 - SQL Injection via Multiple Parameters
Multiple SQL injection vulnerabilities in Rialto 1.6 allow remote attackers to execute arbitrary SQL commands via (1) the uname (username) and (2) pword (passwd) fields in (a) admin/default.asp; the (3) ID parameter to (b) listfull.asp or (c) printmain.asp; the (4) cat parameter to (d) listmain.asp, (e) searchoption.asp, or (f) searchmain.asp; the (5) Keyword parameter to (g) searchkey.asp; the (6) area parameter to searchmain.asp or searchoption.asp; the (7) searchin parameter to searchkey.asp; or the (8) cost1, (9) cost2, (10) acreage1, or (11) squarefeet1 parameters to searchoption.asp. NOTE: some of these details are obtained from third party information.
by laurent gaffie
CVE-2006-6928 EXPLOITDB text VERIFIED
Rialto 1.6 - Cross-Site Scripting via Multiple Parameters
Multiple cross-site scripting (XSS) vulnerabilities in Rialto 1.6 allow remote attackers to inject arbitrary web script or HTML via the (1) cat parameter to (a) listmain.asp or (b) searchmain.asp, the (2) the Keyword parameter to (c) searchkey.asp, or the (3) refno parameter to (d) forminfo.asp.
by laurent gaffie
CVE-2006-6927 EXPLOITDB text VERIFIED
Rialto 1.6 - SQL Injection via Multiple Parameters
Multiple SQL injection vulnerabilities in Rialto 1.6 allow remote attackers to execute arbitrary SQL commands via (1) the uname (username) and (2) pword (passwd) fields in (a) admin/default.asp; the (3) ID parameter to (b) listfull.asp or (c) printmain.asp; the (4) cat parameter to (d) listmain.asp, (e) searchoption.asp, or (f) searchmain.asp; the (5) Keyword parameter to (g) searchkey.asp; the (6) area parameter to searchmain.asp or searchoption.asp; the (7) searchin parameter to searchkey.asp; or the (8) cost1, (9) cost2, (10) acreage1, or (11) squarefeet1 parameters to searchoption.asp. NOTE: some of these details are obtained from third party information.
by laurent gaffie
CVE-2006-6080 EXPLOITDB text VERIFIED
gNews Publisher - SQL Injection via catID or editorID Parameter
Multiple SQL injection vulnerabilities in categories.asp in gNews Publisher allow remote attackers to execute arbitrary SQL commands via the (1) catID or (2) editorID parameter.
by Aria-Security Team
CVE-2006-6204 EXPLOITDB text VERIFIED
Enthrallweb eHomes - SQL Injection via Multiple Parameters
Multiple SQL injection vulnerabilities in Enthrallweb eHomes allow remote attackers to execute arbitrary SQL commands via the (1) cid parameter to (a) dircat.asp; the (2) sid parameter to (b) dirSub.asp; the (3) TYPE_ID parameter to (c) types.asp; the (4) AD_ID parameter to (d) homeDetail.asp; the (5) cat parameter to (e) result.asp; the (6) compare, (7) clear, and (8) adID parameters to (f) compareHomes.asp; and the (9) aminprice, (10) amaxprice, and (11) abedrooms parameters to (g) result.asp.
by laurent gaffie
CVE-2006-6205 EXPLOITDB text VERIFIED
Enthrallweb eHomes - Cross-Site Scripting via City or State Parameter
Multiple cross-site scripting (XSS) vulnerabilities in result.asp in Enthrallweb eHomes allow remote attackers to inject arbitrary web script or HTML via the (1) city or (2) State parameter.
by laurent gaffie
CVE-2006-6204 EXPLOITDB text VERIFIED
Enthrallweb eHomes - SQL Injection via Multiple Parameters
Multiple SQL injection vulnerabilities in Enthrallweb eHomes allow remote attackers to execute arbitrary SQL commands via the (1) cid parameter to (a) dircat.asp; the (2) sid parameter to (b) dirSub.asp; the (3) TYPE_ID parameter to (c) types.asp; the (4) AD_ID parameter to (d) homeDetail.asp; the (5) cat parameter to (e) result.asp; the (6) compare, (7) clear, and (8) adID parameters to (f) compareHomes.asp; and the (9) aminprice, (10) amaxprice, and (11) abedrooms parameters to (g) result.asp.
by laurent gaffie
CVE-2006-6204 EXPLOITDB text VERIFIED
Enthrallweb eHomes - SQL Injection via Multiple Parameters
Multiple SQL injection vulnerabilities in Enthrallweb eHomes allow remote attackers to execute arbitrary SQL commands via the (1) cid parameter to (a) dircat.asp; the (2) sid parameter to (b) dirSub.asp; the (3) TYPE_ID parameter to (c) types.asp; the (4) AD_ID parameter to (d) homeDetail.asp; the (5) cat parameter to (e) result.asp; the (6) compare, (7) clear, and (8) adID parameters to (f) compareHomes.asp; and the (9) aminprice, (10) amaxprice, and (11) abedrooms parameters to (g) result.asp.
by laurent gaffie
CVE-2006-6208 EXPLOITDB text VERIFIED
Enthrallweb eClassifieds - SQL Injection via AD_ID, cat_id, sub_id, ad_id, cid, or sid Parameters
Multiple SQL injection vulnerabilities in Enthrallweb eClassifieds allow remote attackers to execute arbitrary SQL commands via the (1) AD_ID, (2) cat_id, (3) sub_id, and (4) ad_id parameters to (a) ad.asp, the (5) cid parameter to (b) dircat.asp, and the (6) sid parameter to (c) dirSub.asp.
by laurent gaffie
CVE-2006-6208 EXPLOITDB text VERIFIED
Enthrallweb eClassifieds - SQL Injection via AD_ID, cat_id, sub_id, ad_id, cid, or sid Parameters
Multiple SQL injection vulnerabilities in Enthrallweb eClassifieds allow remote attackers to execute arbitrary SQL commands via the (1) AD_ID, (2) cat_id, (3) sub_id, and (4) ad_id parameters to (a) ad.asp, the (5) cid parameter to (b) dircat.asp, and the (6) sid parameter to (c) dirSub.asp.
by laurent gaffie
CVE-2006-6208 EXPLOITDB text VERIFIED
Enthrallweb eClassifieds - SQL Injection via AD_ID, cat_id, sub_id, ad_id, cid, or sid Parameters
Multiple SQL injection vulnerabilities in Enthrallweb eClassifieds allow remote attackers to execute arbitrary SQL commands via the (1) AD_ID, (2) cat_id, (3) sub_id, and (4) ad_id parameters to (a) ad.asp, the (5) cid parameter to (b) dircat.asp, and the (6) sid parameter to (c) dirSub.asp.
by laurent gaffie
CVE-2006-6044 EXPLOITDB text VERIFIED
phpquickgallery < 1.9 - Remote File Inclusion via gallery_top.inc.php textFile Parameter
PHP remote file inclusion vulnerability in gallery_top.inc.php in PHPQuickGallery 1.9 and earlier allows remote attackers to execute arbitrary PHP code via a URL in the textFile parameter.
by Al7ejaz Hacker
CVE-2006-6070 EXPLOITDB text VERIFIED
ASP Nuke < 0.80 - SQL Injection via StateCode Parameter
SQL injection vulnerability in module/account/register/register.asp in ASP Nuke 0.80 and earlier allows remote attackers to execute arbitrary SQL commands via the StateCode parameter.
by ajann
CVE-2006-6042 EXPLOITDB text VERIFIED
phpwebthings < 1.5.2 - Remote File Inclusion via editor_insert_bottom Parameter
PHP remote file inclusion vulnerability in core/editor.php in phpWebThings 1.5.2 and earlier, when register_globals is enabled, allows remote attackers to execute arbitrary PHP code via a URL in the editor_insert_bottom parameter.
by nuffsaid
CVE-2007-3141 EXPLOITDB text VERIFIED
phpWebThings 1.5.2 - Remote File Inclusion via editor_insert_top Parameter
PHP remote file inclusion vulnerability in core/editor.php in phpWebThings 1.5.2 allows remote attackers to execute arbitrary PHP code via a URL in the editor_insert_top parameter. NOTE: the editor_insert_bottom vector is already covered by CVE-2006-6042.
by nuffsaid
CVE-2006-6387 EXPLOITDB text VERIFIED
LINK Content Management Server - SQL Injection via IDMeniGlavni or IDStranicaPodaci Parameter
Multiple SQL injection vulnerabilities in LINK Content Management Server (CMS) allow remote attackers to execute arbitrary SQL commands via the (1) IDMeniGlavni parameter to navigacija.php, and the (2) IDStranicaPodaci parameter to prikazInformacije.php. NOTE: The provenance of this information is unknown; the details are obtained solely from third party information.
by Ivan Markovic
CVE-2006-6387 EXPLOITDB text VERIFIED
LINK Content Management Server - SQL Injection via IDMeniGlavni or IDStranicaPodaci Parameter
Multiple SQL injection vulnerabilities in LINK Content Management Server (CMS) allow remote attackers to execute arbitrary SQL commands via the (1) IDMeniGlavni parameter to navigacija.php, and the (2) IDStranicaPodaci parameter to prikazInformacije.php. NOTE: The provenance of this information is unknown; the details are obtained solely from third party information.
by Ivan Markovic
CVE-2006-6035 EXPLOITDB text VERIFIED
BLOG:CMS < 4.1.3 - Cross-Site Scripting via FADDR Parameter
Cross-site scripting (XSS) vulnerability in list.php in BLOG:CMS 4.1.3 and earlier allows remote attackers to inject arbitrary web script or HTML via the FADDR parameter.
by Katatafish
CVE-2006-6050 EXPLOITDB text VERIFIED
ClickTech Texas Rank'em - SQL Injection via selPlayer or tournament_id Parameter
Multiple SQL injection vulnerabilities in ClickTech Texas Rank'em allow remote attackers to execute arbitrary SQL commands via the (1) selPlayer parameter to player.asp or the (2) tournament_id parameter to tournaments.asp.
by Aria-Security Team
CVE-2006-6050 EXPLOITDB text VERIFIED
ClickTech Texas Rank'em - SQL Injection via selPlayer or tournament_id Parameter
Multiple SQL injection vulnerabilities in ClickTech Texas Rank'em allow remote attackers to execute arbitrary SQL commands via the (1) selPlayer parameter to player.asp or the (2) tournament_id parameter to tournaments.asp.
by Aria-Security Team
CVE-2004-1873 EXPLOITDB text VERIFIED
A-CART Pro and A-CART 2.0 - SQL Injection via catcode Parameter
SQL injection vulnerability in category.asp in A-CART Pro and A-CART 2.0 allows remote attackers to gain privileges via the catcode parameter.
by laurent gaffie
CVE-2006-6096 EXPLOITDB text VERIFIED
ActiveNews Manager - Cross-Site Scripting via activenews_search.asp Query Parameter
Cross-site scripting (XSS) vulnerability in activenews_search.asp in ActiveNews Manager allows remote attackers to inject arbitrary web script or HTML via the query parameter.
by laurent gaffie
CVE-2006-6095 EXPLOITDB text VERIFIED
ActiveNews Manager - SQL Injection via articleID or page Parameter
Multiple SQL injection vulnerabilities in ActiveNews Manager allow remote attackers to execute arbitrary SQL commands via the (1) articleID parameter to activenews_view.asp or the (2) page parameter to default.asp. NOTE: the activeNews_categories.asp and activeNews_comments.asp vectors are already covered by CVE-2006-6094.
by laurent gaffie