Exploitdb Exploits

31,394 exploits tracked across all sources.

Sort: Activity Stars
CVE-2006-6094 EXPLOITDB text VERIFIED
ActiveNews Manager - SQL Injection via catID, articleID, or query Parameter
Multiple SQL injection vulnerabilities in ActiveNews Manager allow remote attackers to execute arbitrary SQL commands via the (1) catID parameter to activeNews_categories.asp, the (2) articleID parameter to activeNews_comments.asp, or the (3) query parameter to activenews_search.asp.
by laurent gaffie
CVE-2006-6095 EXPLOITDB text VERIFIED
ActiveNews Manager - SQL Injection via articleID or page Parameter
Multiple SQL injection vulnerabilities in ActiveNews Manager allow remote attackers to execute arbitrary SQL commands via the (1) articleID parameter to activenews_view.asp or the (2) page parameter to default.asp. NOTE: the activeNews_categories.asp and activeNews_comments.asp vectors are already covered by CVE-2006-6094.
by laurent gaffie
CVE-2006-6094 EXPLOITDB text VERIFIED
ActiveNews Manager - SQL Injection via catID, articleID, or query Parameter
Multiple SQL injection vulnerabilities in ActiveNews Manager allow remote attackers to execute arbitrary SQL commands via the (1) catID parameter to activeNews_categories.asp, the (2) articleID parameter to activeNews_comments.asp, or the (3) query parameter to activenews_search.asp.
by laurent gaffie
CVE-2006-6111 EXPLOITDB text VERIFIED
Alan Ward A-Cart Pro 2.0 - SQL Injection via productid or search Parameter
Multiple SQL injection vulnerabilities in Alan Ward A-Cart Pro 2.0 allow remote attackers to execute arbitrary SQL commands via the (1) productid parameter in product.asp or (2) search parameter in search.asp. NOTE: the category.asp vector is already covered by CVE-2004-1873.
by laurent gaffie
CVE-2006-6040 EXPLOITDB text VERIFIED
vBulletin 3.6.x - Cross-Site Scripting via Admin Control Panel Parameters
Multiple cross-site scripting (XSS) vulnerabilities in admincp/index.php in Jelsoft vBulletin 3.6.x allow remote attackers to inject arbitrary web script or HTML via (1) the prefs parameter in a buildnavprefs action or (2) the navprefs parameter in a savenavprefs action.
by insanity
CVE-2006-6038 EXPLOITDB text VERIFIED
pForum < 1.29a - SQL Injection via editpoll.php id Parameter
SQL injection vulnerability in editpoll.php in Powie's PHP Forum (pForum) 1.29a and earlier allows remote attackers to execute arbitrary SQL commands via the id parameter.
by SHiKaA
CVE-2006-6039 EXPLOITDB text VERIFIED
php_matchmaker < 4.06 - SQL Injection via matchdetail.php edit Parameter
SQL injection vulnerability in matchdetail.php in Powie's PHP MatchMaker 4.05 and earlier allows remote attackers to execute arbitrary SQL commands via the edit parameter.
by SHiKaA
CVE-2006-7133 EXPLOITDB text VERIFIED
php_upload_tool 1.0 - Directory Traversal via Filename Parameter
Directory traversal vulnerability in upload/bin/download.php in Upload Tool for PHP 1.0 allows remote attackers to read arbitrary files via (1) ".." sequences or (2) absolute pathnames in the filename parameter.
by Craig Heffner
CVE-2006-6065 EXPLOITDB text VERIFIED
CalSnails Module for MxBB Portal <1.06 - RCE
PHP remote file inclusion vulnerability in includes/mx_common.php in the CalSnails Module for MxBB Portal 1.06 allows remote attackers to execute arbitrary PHP code via a URL in the module_root_path parameter.
by bd0rk
CVE-2006-6341 EXPLOITDB text VERIFIED
mg.applanix < 1.3.1 - Remote File Inclusion via apx_root_path Parameter
Multiple PHP remote file inclusion vulnerabilities in mg.applanix 1.3.1 and earlier allow remote attackers to execute arbitrary PHP code via a URL in the apx_root_path parameter to (1) act/act_check_access.php, (2) dsp/dsp_form_booking_ctl.php, and (3) dsp/dsp_bookings.php.
by v1per-haCker
CVE-2006-6028 EXPLOITDB text VERIFIED
DoSePa 1.0.4 - Unauthenticated Directory Traversal via File Parameter
Directory traversal vulnerability in textview.php in Anton Vlasov DoSePa 1.0.4 allows remote attackers to read arbitrary files via a .. (dot dot) sequence or absolute file path in the file parameter.
by Craig Heffner
CVE-2006-6281 EXPLOITDB text VERIFIED
dicshunary 0.1 alpha - Remote File Inclusion via dicshunary_root_path Parameter
PHP remote file inclusion vulnerability in check_status.php in dicshunary 0.1 alpha allows remote attackers to execute arbitrary PHP code via a URL in the dicshunary_root_path parameter.
by DeltahackingTEAM
CVE-2004-1875 EXPLOITDB text VERIFIED
cPanel 9.1.0-R85 - Cross-Site Scripting via Multiple Parameters
Multiple cross-site scripting (XSS) vulnerabilities in cPanel 9.1.0-R85 allow remote attackers to inject arbitrary web script or HTML via the (1) email parameter to testfile.html, (2) file parameter to erredit.html, (3) dns parameter to dnslook.html, (4) account parameter to ignorelist.html, (5) account parameter to showlog.html, (6) db parameter to repairdb.html, (7) login parameter to doaddftp.html (8) account parameter to editmsg.htm, or (9) ip parameter to del.html. NOTE: the dnslook.html vector was later reported to exist in cPanel 10.
by Aria-Security Team
CVE-2006-6021 EXPLOITDB text VERIFIED
BestWebApp Dating Site - SQL Injection via Login Username and Password Parameters
SQL injection vulnerability in the login component in BestWebApp Dating Site allows remote attackers to execute arbitrary SQL commands via the (1) username and (2) passwd parameters.
by laurent gaffie
CVE-2006-6022 EXPLOITDB text VERIFIED
BestWebApp Dating Site - Stored Cross-Site Scripting via Login Form Msg Parameter
Cross-site scripting (XSS) vulnerability in login_form.asp in BestWebApp Dating Site allows remote attackers to inject arbitrary web script or HTML via the msg parameter.
by laurent gaffie
EIP-2026-100129 EXPLOITDB text VERIFIED
ASPCart 4.5 - Multiple SQL Injections
by laurent gaffie
EIP-2026-100086 EXPLOITDB text VERIFIED
20/20 Real Estate 3.2 - Multiple SQL Injections
by laurent gaffie
CVE-2006-6092 EXPLOITDB text VERIFIED
20/20 Auto Gallery - SQL Injection via vehiclelistings.asp Parameters
Multiple SQL injection vulnerabilities in vehiclelistings.asp in 20/20 Auto Gallery allow remote attackers to execute arbitrary SQL commands via the (1) vehicleID, (2) categoryID_list, (3) sale_type, (4) stock_number, (5) manufacturer, (6) model, (7) vehicleID, (8) year, (9) vin, and (10) listing_price parameters.
by laurent gaffie
CVE-2006-6067 EXPLOITDB text VERIFIED
20/20 DataShed - SQL Injection via itemID, peopleID, or sort_order Parameters
Multiple SQL injection vulnerabilities in 20/20 DataShed (aka Real Estate Listing System) allow remote attackers to execute arbitrary SQL commands via the (1) itemID parameter to (a) f-email.asp, or the (2) peopleID and (2) sort_order parameters to (b) listings.asp, different vectors than CVE-2006-5955.
by laurent gaffie
CVE-2006-6067 EXPLOITDB text VERIFIED
20/20 DataShed - SQL Injection via itemID, peopleID, or sort_order Parameters
Multiple SQL injection vulnerabilities in 20/20 DataShed (aka Real Estate Listing System) allow remote attackers to execute arbitrary SQL commands via the (1) itemID parameter to (a) f-email.asp, or the (2) peopleID and (2) sort_order parameters to (b) listings.asp, different vectors than CVE-2006-5955.
by laurent gaffie
EIP-2026-112382 EXPLOITDB text VERIFIED
Sphpblog 0.8 - Multiple Cross-Site Scripting Vulnerabilities
by the_Edit0r
CVE-2006-6951 EXPLOITDB text VERIFIED
OdysseusBlog - Cross-Site Scripting via Page Parameter
Cross-site scripting (XSS) vulnerability in blog.php in OdysseusBlog allows remote attackers to inject arbitrary web script or HTML via the page parameter.
by the_Edit0r
CVE-2006-7134 EXPLOITDB text VERIFIED
Upload Tool for PHP 1.0 - Unauthenticated Arbitrary File Upload via main_user.php
Unrestricted file upload vulnerability in main_user.php in Upload Tool for PHP 1.0 allows remote attackers to upload and execute arbitrary files with executable extensions such as .php. NOTE: the provenance of this information is unknown; the details are obtained solely from third party information.
by Craig Heffner
CVE-2006-6020 EXPLOITDB text VERIFIED
Blog Torrent Preview 0.92 - Cross-Site Scripting via Announce.php Left Parameter
Cross-site scripting (XSS) vulnerability in announce.php in Blog Torrent Preview 0.92 allows remote attackers to inject arbitrary web script or HTML via the left parameter.
by the_Edit0r
CVE-2006-6197 EXPLOITDB text VERIFIED
b2evolution 1.8.2-1.9 beta - Cross-Site Scripting via app_name, baseurl, or ReqURI Parameters
Multiple cross-site scripting (XSS) vulnerabilities in b2evolution 1.8.2 through 1.9 beta allow remote attackers to inject arbitrary web script or HTML via the (1) app_name parameter in (a) _404_not_found.page.php, (b) _410_stats_gone.page.php, and (c) _referer_spam.page.php in inc/VIEW/errors/; the (2) baseurl parameter in (d) inc/VIEW/errors/_404_not_found.page.php; and the (3) ReqURI parameter in (e) inc/VIEW/errors/_referer_spam.page.php.
by lotto fischer