Exploitdb Exploits
50,095 exploits tracked across all sources.
MCLogin System <1.3 - SQL Injection
SQL injection vulnerability in login/login_index.php in MCLogin System 1.1 and 1.2 allows remote attackers to execute arbitrary SQL commands via the myusername parameter (aka Username field) in a do_login action. NOTE: some of these details are obtained from third party information.
by L0rd CrusAd3r
Castripper 2.50.70 - '.pls' File Stack Buffer Overflow (DEP Bypass)
by mr_me
Motorola SB5101 Hax0rware Rajko HTTPd - Remote Denial of Service (PoC)
by Dillon Beresford
Motorola SB5101 - Hax0rware Event Reset Remote Overflow
by Dillon Beresford
McAfee Unified Threat Management Firewall 4.0.6 - 'page' Cross-Site Scripting
by Adam Baldwin
VUPlayer 2.49 - '.m3u' File Universal Buffer Overflow (DEP Bypass) (1)
by mr_me
D.R. Software Audio Converter 8.1, 2007, and 8.05 - Stack-based Buffer Overflow via PLS Playlist File
Stack-based buffer overflow in D.R. Software Audio Converter 8.1, 2007, and 8.05 allows remote attackers to execute arbitrary code via a crafted pls playlist file.
by chap0
D.R. Software Audio Converter 8.1, 2007, and 8.05 - Stack-based Buffer Overflow via PLS Playlist File
Stack-based buffer overflow in D.R. Software Audio Converter 8.1, 2007, and 8.05 allows remote attackers to execute arbitrary code via a crafted pls playlist file.
by sud0
D.R. Software Audio Converter 8.1, 2007, and 8.05 - Stack-based Buffer Overflow via PLS Playlist File
Stack-based buffer overflow in D.R. Software Audio Converter 8.1, 2007, and 8.05 allows remote attackers to execute arbitrary code via a crafted pls playlist file.
by sud0
EA Battlefield 2 1.41 / Battlefield 2142 1.50 - Multiple Denial of Service Vulnerabilities
by Francis Lavoie-Renaud
cPanel 11.25 Image Manager - 'target' Local File Inclusion
by AnTi SeCuRe
SenseSites CommonSense CMS - SQL Injection
SQL injection vulnerability in article.php in SenseSites CommonSense CMS allows remote attackers to execute arbitrary SQL commands via the article_id parameter.
by Pokeng
BoastMachine 3.1 - 'key' Cross-Site Scripting
by High-Tech Bridge SA
JForum 2.1.8 BookMarks - Cross-Site Request Forgery / Cross-Site Scripting
by Adam Baldwin
DJ-ArtGallery 0.9.1 - XSS
Cross-site scripting (XSS) vulnerability in the DJ-ArtGallery (com_djartgallery) component 0.9.1 for Joomla! allows remote attackers to inject arbitrary web script or HTML via the cid[] parameter in an editItem action to administrator/index.php. NOTE: some of these details are obtained from third party information.
by d0lc3
iScripts eSwap 2.0 - Cross-Site Scripting via txtHomeSearch Parameter
Cross-site scripting (XSS) vulnerability in search.php in iScripts eSwap 2.0 allows remote attackers to inject arbitrary web script or HTML via the txtHomeSearch parameter (aka the search field). NOTE: some of these details are obtained from third party information.
by Sid3^effects
wmscms < 2.0 - Cross-Site Scripting via search, sbr, p, or sbl Parameters
Multiple cross-site scripting (XSS) vulnerabilities in default.asp in WmsCms 2.0 and earlier allow remote attackers to inject arbitrary web script or HTML via the (1) search, (2) sbr, (3) p, and (4) sbl parameters, different vectors than CVE-2007-3137.
by Ariko-Security
WmsCms < 2.0 - SQL Injection via Multiple Parameters
Multiple SQL injection vulnerabilities in WmsCms 2.0 and earlier allow remote attackers to execute arbitrary SQL commands via the (1) search, (2) sbr, (3) pid, (4) sbl, and (5) FilePath parameters to default.asp; and the (6) sbr, (7) pr, and (8) psPrice parameters to printpage.asp.
by Ariko-Security
WebBiblio Subject Gateway System - Local File Inclusion
by AntiSecurity
Joomla! com_searchlog 3.1.0 - SQL Injection
SQL injection vulnerability in models/log.php in the Search Log (com_searchlog) component 3.1.0 for Joomla! allows remote authenticated users, with Public Back-end privileges, to execute arbitrary SQL commands via the search parameter in a log action to administrator/index.php. NOTE: some of these details are obtained from third party information.
by XroGuE
ReVou Twitter Clone 2.0 Beta - SQL Injection / Cross-Site Scripting
by Sid3^effects
By Source