Exploitdb Exploits

50,076 exploits tracked across all sources.

Sort: Activity Stars
EIP-2026-104352 EXPLOITDB html
Navetti PricePoint 4.6.0.0 - SQL Injection / Cross-Site Scripting / Cross-Site Request Forgery
by SEC Consult
EIP-2026-104351 EXPLOITDB html
Navetti PricePoint 4.6.0.0 - SQL Injection / Cross-Site Scripting / Cross-Site Request Forgery
by SEC Consult
CVE-2017-6549 EXPLOITDB HIGH text
ASUS RT-AC53 and other routers - Session Hijacking via HTTP Header Manipulation
Session hijack vulnerability in httpd on ASUS RT-N56U, RT-N66U, RT-AC66U, RT-N66R, RT-AC66R, RT-AC68U, RT-AC68R, RT-N66W, RT-AC66W, RT-AC87R, RT-AC87U, RT-AC51U, RT-AC68P, RT-N11P, RT-N12+, RT-N12E B1, RT-AC3200, RT-AC53U, RT-AC1750, RT-AC1900P, RT-N300, and RT-AC750 routers with firmware before 3.0.0.4.380.7378; RT-AC68W routers with firmware before 3.0.0.4.380.7266; and RT-N600, RT-N12+ B1, RT-N11P B1, RT-N12VP B1, RT-N12E C1, RT-N300 B1, and RT-N12+ Pro routers with firmware before 3.0.0.4.380.9488; and Asuswrt-Merlin firmware before 380.65_2 allows remote attackers to steal any active admin session by sending cgi_logout and asusrouter-Windows-IFTTT-1.0 in certain HTTP headers.
by Bruno Bierbaumer
CVSS 8.8
CVE-2017-6548 EXPLOITDB CRITICAL text
ASUS RT-AC53 and other ASUS routers - Remote Code Execution via Networkmap Buffer Overflow
Buffer overflows in networkmap on ASUS RT-N56U, RT-N66U, RT-AC66U, RT-N66R, RT-AC66R, RT-AC68U, RT-AC68R, RT-N66W, RT-AC66W, RT-AC87R, RT-AC87U, RT-AC51U, RT-AC68P, RT-N11P, RT-N12+, RT-N12E B1, RT-AC3200, RT-AC53U, RT-AC1750, RT-AC1900P, RT-N300, and RT-AC750 routers with firmware before 3.0.0.4.380.7378; RT-AC68W routers with firmware before 3.0.0.4.380.7266; and RT-N600, RT-N12+ B1, RT-N11P B1, RT-N12VP B1, RT-N12E C1, RT-N300 B1, and RT-N12+ Pro routers with firmware before 3.0.0.4.380.9488; and Asuswrt-Merlin firmware before 380.65_2 allow remote attackers to execute arbitrary code on the router via a long host or port in crafted multicast messages.
by Bruno Bierbaumer
CVSS 9.8
CVE-2017-6547 EXPLOITDB MEDIUM text
ASUS RT-AC53 Firmware - Cross-Site Scripting via Long Filename Request
Cross-site scripting (XSS) vulnerability in httpd on ASUS RT-N56U, RT-N66U, RT-AC66U, RT-N66R, RT-AC66R, RT-AC68U, RT-AC68R, RT-N66W, RT-AC66W, RT-AC87R, RT-AC87U, RT-AC51U, RT-AC68P, RT-N11P, RT-N12+, RT-N12E B1, RT-AC3200, RT-AC53U, RT-AC1750, RT-AC1900P, RT-N300, and RT-AC750 routers with firmware before 3.0.0.4.380.7378; RT-AC68W routers with firmware before 3.0.0.4.380.7266; and RT-N600, RT-N12+ B1, RT-N11P B1, RT-N12VP B1, RT-N12E C1, RT-N300 B1, and RT-N12+ Pro routers with firmware before 3.0.0.4.380.9488 allows remote attackers to inject arbitrary JavaScript by requesting filenames longer than 50 characters.
by Bruno Bierbaumer
CVSS 6.1
CVE-2017-8225 EXPLOITDB CRITICAL c
Wireless IP Camera (P2P) Firmware - Unauthenticated Credential Exposure via Empty Login Parameters
On Wireless IP Camera (P2P) WIFICAM devices, access to .ini files (containing credentials) is not correctly checked. An attacker can bypass authentication by providing an empty loginuse parameter and an empty loginpas parameter in the URI.
by PierreKimSec
CVSS 9.8
CVE-2017-6427 EXPLOITDB HIGH python
EvoStream Media Server 1.7.1 - Buffer Overflow via Malicious HTTP Header
A Buffer Overflow was discovered in EvoStream Media Server 1.7.1. A crafted HTTP request with a malicious header will cause a crash. An example attack methodology may include a long message-body in a GET request.
by Peter Baris
CVSS 7.5
CVE-2017-6506 EXPLOITDB CRITICAL python VERIFIED
Azure Data Expert Ultimate 2.2.16 - Remote Code Execution via SMTP 220 String Buffer Overflow
In Azure Data Expert Ultimate 2.2.16, the SMTP verification function suffers from a buffer overflow vulnerability, leading to remote code execution. The attack vector is a crafted SMTP daemon that sends a long 220 (aka "Service ready") string.
by Peter Baris
CVSS 9.8
CVE-2017-6178 EXPLOITDB HIGH c
USBPcap 1.1.0.0 - Privilege Escalation via IOCTL Call
The IofCallDriver function in USBPcap 1.1.0.0 allows local users to gain privileges via a crafted 0x00090028 IOCTL call, which triggers a NULL pointer dereference.
by Parvez Anwar
CVSS 7.8
EIP-2026-109477 EXPLOITDB text
Mini CMS 1.1 - 'name' SQL Injection
by Ihsan Sencan
CVE-2017-6558 EXPLOITDB CRITICAL text
iball iB-WRA150N v1 00000001 1.2.6 build 110401 Rel.47776n - Authentication Bypass via Password CGI HTML Source
iball Baton 150M iB-WRA150N v1 00000001 1.2.6 build 110401 Rel.47776n devices are prone to an authentication bypass vulnerability that allows remote attackers to view and modify administrative router settings by reading the HTML source code of the password.cgi file.
by Indrajith.A.N
CVSS 9.8
EIP-2026-106338 EXPLOITDB text
Daily Deals Script 1.0 - 'id' SQL Injection
by Ihsan Sencan
CVE-2017-5638 EXPLOITDB CRITICAL python VERIFIED
Apache Struts 2.3.x < 2.3.32 and 2.5.x < 2.5.10.1 - Remote Code Execution via Jakarta Multipart Parser
The Jakarta Multipart parser in Apache Struts 2 2.3.x before 2.3.32 and 2.5.x before 2.5.10.1 has incorrect exception handling and error-message generation during file-upload attempts, which allows remote attackers to execute arbitrary commands via a crafted Content-Type, Content-Disposition, or Content-Length HTTP header, as exploited in the wild in March 2017 with a Content-Type header containing a #cmd= string.
by Vex Woo
CVSS 9.8
EIP-2026-100014 EXPLOITDB text VERIFIED
Bull/IBM AIX Clusterwatch/Watchware - Multiple Vulnerabilities
by RandoriSec
EIP-2026-117011 EXPLOITDB
CyberGhost 6.0.4.2205 - Local Privilege Escalation
by Kacper Szurek
EIP-2026-114519 EXPLOITDB text
Yellow Pages Clone Script 1.3.4 - SQL Injection
by Ihsan Sencan
EIP-2026-113349 EXPLOITDB text
Website Broker Script 3.02 - 'view' SQL Injection
by Ihsan Sencan
EIP-2026-112293 EXPLOITDB text
Social Network Script 3.01 - 'id' SQL Injection
by Ihsan Sencan
EIP-2026-112171 EXPLOITDB text
Single Theater Booking Script - 'newsid' SQL Injection
by Ihsan Sencan
EIP-2026-111972 EXPLOITDB text
Select Your College Script 2.01 - SQL Injection
by Ihsan Sencan
EIP-2026-111942 EXPLOITDB text
Schools Alert Management Script 2.01 - 'list_id' SQL Injection
by Ihsan Sencan
EIP-2026-111751 EXPLOITDB text
Responsive Matrimonial Script 4.0.1 - SQL Injection
by Ihsan Sencan
EIP-2026-111747 EXPLOITDB text
Responsive Events & Movie Ticket Booking Script - SQL Injection
by Ihsan Sencan
EIP-2026-111731 EXPLOITDB text
Redbus Clone Script 3.05 - 'hid_Busid' SQL Injection
by Ihsan Sencan
EIP-2026-110723 EXPLOITDB text
PHP Matrimonial Script 3.0 - SQL Injection
by Ihsan Sencan