Exploitdb Exploits

31,394 exploits tracked across all sources.

Sort: Activity Stars
EIP-2026-105231 EXPLOITDB text VERIFIED
Ariadne 2.4 - store_config[code] Remote File Inclusion
by Mehmet Ince
EIP-2026-112161 EXPLOITDB text VERIFIED
Simplog 0.9.3 - 'BlogID' Multiple SQL Injections
by Benjamin Moss
EIP-2026-112160 EXPLOITDB text VERIFIED
Simplog 0.9.3 - 'archive.php?PID' Cross-Site Scripting
by Benjamin Moss
CVE-2006-5730 EXPLOITDB text VERIFIED
Modx CMS <0.9.2.1 - Remote Code Execution
PHP remote file inclusion vulnerability in manager/media/browser/mcpuk/connectors/php/Commands/Thumbnail.php in Modx CMS 0.9.2.1 and earlier allows remote attackers to execute arbitrary PHP code via a URL in the base_path parameter. NOTE: it is possible that this is a vulnerability in FCKeditor.
by nuffsaid
CVE-2006-5777 EXPLOITDB text VERIFIED
Creasito E-Commerce Content Manager 1.3.08 - Auth Bypass
Creasito E-Commerce Content Manager 1.3.08 allows remote attackers to bypass authentication and perform privileged functions via a non-empty finame parameter to (1) addnewcont.php, (2) adminpassw.php, (3) amministrazione.php, (4) artins.php, (5) bgcolor.php, (6) cancartcat.php, (7) canccat.php, (8) cancelart.php, (9) cancontsit.php, (10) chanpassamm.php, (11) dele.php, (12) delecat.php, (13) delecont.php, (14) emailall.php, (15) gestflashtempl.php, (16) gestmagart.php, (17) gestmagaz.php, (18) gestpre.php, (19) input.php, (20) input3.php, (21) insnucat.php, (22) instempflash.php, (23) mailfc.php, (24) modfdati.php, (25) rescont4.php, (26) ricordo1.php, (27) ricordo4.php, (28) tabcatalg.php, (29) tabcont.php, (30) tabcont3.php, (31) tabstile.php, (32) tabstile3.php, (33) testimmg.php, and (34) update.php in admin/. NOTE: some of these details are obtained from third party information.
by SlimTim10
EIP-2026-104978 EXPLOITDB text VERIFIED
Advanced Guestbook 2.3.1 - 'admin.php' Remote File Inclusion
by BrokeN-ProXy
CVE-2006-5770 EXPLOITDB text VERIFIED
ac4p_mobile - Cross-Site Scripting via Multiple Parameters
Multiple cross-site scripting (XSS) vulnerabilities in ac4p Mobile allow remote attackers to inject arbitrary web script or HTML via (1) Bloks, (2) Newnews, (3) lBlok, and (4) foooot parameter in (a) index.php; Newnews, (5) newmsgs, and Bloks parameter in (b) MobileNews.php; Newnews parameter in (c) polls.php; (6) cats parameter in (d) send.php; (7) footer parameter in (e) up.php; and (8) pagenav parameter in (f) cp/index.php.
by AL-garnei
CVE-2006-5770 EXPLOITDB text VERIFIED
ac4p_mobile - Cross-Site Scripting via Multiple Parameters
Multiple cross-site scripting (XSS) vulnerabilities in ac4p Mobile allow remote attackers to inject arbitrary web script or HTML via (1) Bloks, (2) Newnews, (3) lBlok, and (4) foooot parameter in (a) index.php; Newnews, (5) newmsgs, and Bloks parameter in (b) MobileNews.php; Newnews parameter in (c) polls.php; (6) cats parameter in (d) send.php; (7) footer parameter in (e) up.php; and (8) pagenav parameter in (f) cp/index.php.
by AL-garnei
CVE-2006-5770 EXPLOITDB text VERIFIED
ac4p_mobile - Cross-Site Scripting via Multiple Parameters
Multiple cross-site scripting (XSS) vulnerabilities in ac4p Mobile allow remote attackers to inject arbitrary web script or HTML via (1) Bloks, (2) Newnews, (3) lBlok, and (4) foooot parameter in (a) index.php; Newnews, (5) newmsgs, and Bloks parameter in (b) MobileNews.php; Newnews parameter in (c) polls.php; (6) cats parameter in (d) send.php; (7) footer parameter in (e) up.php; and (8) pagenav parameter in (f) cp/index.php.
by AL-garnei
CVE-2006-5770 EXPLOITDB text VERIFIED
ac4p_mobile - Cross-Site Scripting via Multiple Parameters
Multiple cross-site scripting (XSS) vulnerabilities in ac4p Mobile allow remote attackers to inject arbitrary web script or HTML via (1) Bloks, (2) Newnews, (3) lBlok, and (4) foooot parameter in (a) index.php; Newnews, (5) newmsgs, and Bloks parameter in (b) MobileNews.php; Newnews parameter in (c) polls.php; (6) cats parameter in (d) send.php; (7) footer parameter in (e) up.php; and (8) pagenav parameter in (f) cp/index.php.
by AL-garnei
CVE-2006-5770 EXPLOITDB text VERIFIED
ac4p_mobile - Cross-Site Scripting via Multiple Parameters
Multiple cross-site scripting (XSS) vulnerabilities in ac4p Mobile allow remote attackers to inject arbitrary web script or HTML via (1) Bloks, (2) Newnews, (3) lBlok, and (4) foooot parameter in (a) index.php; Newnews, (5) newmsgs, and Bloks parameter in (b) MobileNews.php; Newnews parameter in (c) polls.php; (6) cats parameter in (d) send.php; (7) footer parameter in (e) up.php; and (8) pagenav parameter in (f) cp/index.php.
by AL-garnei
CVE-2006-5770 EXPLOITDB text VERIFIED
ac4p_mobile - Cross-Site Scripting via Multiple Parameters
Multiple cross-site scripting (XSS) vulnerabilities in ac4p Mobile allow remote attackers to inject arbitrary web script or HTML via (1) Bloks, (2) Newnews, (3) lBlok, and (4) foooot parameter in (a) index.php; Newnews, (5) newmsgs, and Bloks parameter in (b) MobileNews.php; Newnews parameter in (c) polls.php; (6) cats parameter in (d) send.php; (7) footer parameter in (e) up.php; and (8) pagenav parameter in (f) cp/index.php.
by AL-garnei
CVE-2006-5773 EXPLOITDB text VERIFIED
freewebshop < 2.2.1 - Directory Traversal via Action Parameter
Directory traversal vulnerability in index.php in FreeWebshop 2.2.1 and earlier allows remote attackers to read arbitrary files and disclose the installation path via a .. (dot dot) in the action parameter.
by Spiked
CVE-2006-5772 EXPLOITDB text VERIFIED
freewebshop < 2.2.1 - SQL Injection via Password or Prod Parameter
Multiple SQL injection vulnerabilities in index.php in FreeWebshop 2.2.1 and earlier allow remote attackers to execute arbitrary SQL commands via the (1) password and (2) prod parameter.
by Spiked
EIP-2026-115723 EXPLOITDB text VERIFIED
Microsoft Internet Explorer 7 - MHTML Denial of Service
by Positive Technologies
EIP-2026-111832 EXPLOITDB text VERIFIED
RunCMS 1.x - Avatar Arbitrary File Upload
by securfrog
CVE-2006-6941 EXPLOITDB text VERIFIED
FreeWebshop <2.2.2 - Info Disclosure
index.php in FreeWebshop 2.2.2 and earlier allows remote attackers to obtain sensitive information via an invalid action parameter in an info operation, which discloses the path in an error message.
by Spiked
EIP-2026-107246 EXPLOITDB text VERIFIED
FreeWebShop 2.2 - 'index.php' SQL Injection
by Spiked
CVE-2006-5766 EXPLOITDB text VERIFIED
Article System 0.6 - Remote File Inclusion via config[public_dir] Parameter
PHP remote file inclusion vulnerability in volume.php in Article System 0.6 allows remote attackers to execute arbitrary PHP code via a URL in the config[public_dir] parameter.
by GregStar
CVE-2006-5701 EXPLOITDB text VERIFIED
Linux Kernel 2.6.x - Denial of Service via SquashFS Double Free
Double free vulnerability in squashfs module in the Linux kernel 2.6.x, as used in Fedora Core 5 and possibly other distributions, allows local users to cause a denial of service by mounting a crafted squashfs filesystem.
by LMH
CVE-2006-5721 EXPLOITDB text VERIFIED
Outpost Firewall PRO 4.0 (964.582.059) - Denial of Service via SandBox Driver DeviceIoControl
The \Device\SandBox driver in Outpost Firewall PRO 4.0 (964.582.059) allows local users to cause a denial of service (system crash) via an invalid argument to the DeviceIoControl function that triggers an invalid memory operation.
by Matousec Transparent security
CVE-2006-5703 EXPLOITDB text VERIFIED
Tikiwiki 1.9.5 - Cross-Site Scripting via url Parameter in tiki-featured_link.php
Cross-site scripting (XSS) vulnerability in tiki-featured_link.php in Tikiwiki 1.9.5 allows remote attackers to inject arbitrary web script or HTML via a url parameter that evades filtering, as demonstrated by a parameter value containing malformed, nested SCRIPT elements.
by securfrog
EIP-2026-111811 EXPLOITDB text VERIFIED
RSSonate - 'Project_Root' Remote File Inclusion
by Arab4services
EIP-2026-111598 EXPLOITDB text VERIFIED
PwsPHP 1.1 - '/themes/fin.php' Remote File Inclusion
by 3l3ctric-Cracker
CVE-2006-5667 EXPLOITDB text VERIFIED
p-book < 1.17 - Remote File Inclusion via pb_lang Parameter
Multiple PHP remote file inclusion vulnerabilities in P-Book 1.17 and earlier allow remote attackers to execute arbitrary PHP code via a URL in the pb_lang parameter to (1) admin.php and (2) pbook.php.
by Matdhule