Exploitdb Exploits

50,076 exploits tracked across all sources.

Sort: Activity Stars
EIP-2026-108002 EXPLOITDB text
Itech Movie Portal Script 7.35 - SQL Injection
by Ihsan Sencan
EIP-2026-106759 EXPLOITDB text
ECommerce-TIBSECART - Arbitrary File Upload
by Ihsan Sencan
EIP-2026-106758 EXPLOITDB text
ECommerce-Multi-Vendor Software - Arbitrary File Upload
by Ihsan Sencan
EIP-2026-106367 EXPLOITDB text
Dating Script 3.25 - SQL Injection
by Dawid Morawski
EIP-2026-105032 EXPLOITDB text
Airbnb Clone Script - Arbitrary File Upload
by Ihsan Sencan
CVE-2017-2930 EXPLOITDB HIGH text VERIFIED
Adobe Flash Player < 24.0.0.186 - Memory Corruption via Display List Concurrency Error
Adobe Flash Player versions 24.0.0.186 and earlier have an exploitable memory corruption vulnerability due to a concurrency error when manipulating a display list. Successful exploitation could lead to arbitrary code execution.
by COSIG
CVSS 8.8
CVE-2017-2930 EXPLOITDB HIGH text VERIFIED
Adobe Flash Player < 24.0.0.186 - Memory Corruption via Display List Concurrency Error
Adobe Flash Player versions 24.0.0.186 and earlier have an exploitable memory corruption vulnerability due to a concurrency error when manipulating a display list. Successful exploitation could lead to arbitrary code execution.
by COSIG
CVSS 8.8
EIP-2026-118428 EXPLOITDB python VERIFIED
DiskBoss Enterprise 7.5.12 - 'POST' Remote Buffer Overflow (SEH)
by Wyndell Bibera
EIP-2026-114238 EXPLOITDB text VERIFIED
WordPress Plugin WP Support Plus Responsive Ticket System 7.1.3 - Privilege Escalation
by Kacper Szurek
EIP-2026-112424 EXPLOITDB text VERIFIED
Starting Page 1.3 - 'linkid' SQL Injection
by JaMbA
EIP-2026-107167 EXPLOITDB html
FMyLife Clone Script (Pro Edition) 1.1 - Cross-Site Request Forgery (Add Admin)
by Ihsan Sencan
CVE-2016-1827 EXPLOITDB HIGH c
Apple iOS <9.3.2 - Privilege Escalation
The kernel in Apple iOS before 9.3.2, OS X before 10.11.5, tvOS before 9.2.1, and watchOS before 2.2.1 allows attackers to execute arbitrary code in a privileged context or cause a denial of service (memory corruption) via a crafted app, a different vulnerability than CVE-2016-1828, CVE-2016-1829, and CVE-2016-1830.
by Brandon Azad
CVSS 7.8
EIP-2026-101781 EXPLOITDB text
Huawei Flybox B660 - Cross-Site Request Forgery (1)
by Vulnerability-Lab
EIP-2026-101629 EXPLOITDB text
D-Link DIR-615 - Multiple Vulnerabilities
by Osanda Malith Jayathissa
EIP-2026-109673 EXPLOITDB text
My PHP Dating 2.0 - 'path' SQL Injection
by Ihsan Sencan
EIP-2026-109672 EXPLOITDB text
My PHP Dating 2.0 - 'id' SQL Injection
by Sniper Pex
EIP-2026-107251 EXPLOITDB text VERIFIED
Friends in War Make or Break 1.7 - 'imgid' SQL Injection
by v3n0m
EIP-2026-103767 EXPLOITDB
Cemu 1.6.4b - Information Leak / Buffer Overflow (Emulator Breakout)
by Wack0
CVE-2016-9587 EXPLOITDB HIGH text
Ansible < 2.1.4 and < 2.2.1 - Remote Code Execution via Client Fact Data
Ansible before versions 2.1.4, 2.2.1 is vulnerable to an improper input validation in Ansible's handling of data sent from client systems. An attacker with control over a client system being managed by Ansible and the ability to send facts back to the Ansible server could use this flaw to execute arbitrary code on the Ansible server using the Ansible server privileges.
by Computest
CVSS 8.1
EIP-2026-102838 EXPLOITDB
Firejail - Local Privilege Escalation
by Daniel Hodson
EIP-2026-102361 EXPLOITDB text
Blackboard LMS 9.1 SP14 - Cross-Site Scripting
by Vulnerability-Lab
CVE-2016-7255 EXPLOITDB HIGH c
Microsoft Windows - Privilege Escalation
The kernel-mode drivers in Microsoft Windows Vista SP2, Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Windows 8.1, Windows Server 2012 Gold and R2, Windows RT 8.1, Windows 10 Gold, 1511, and 1607, and Windows Server 2016 allow local users to gain privileges via a crafted application, aka "Win32k Elevation of Privilege Vulnerability."
by Rick Larabee
CVSS 7.8
EIP-2026-116736 EXPLOITDB text VERIFIED
Advanced Desktop Locker 6.0.0 - Lock Screen Bypass
by Squnity
EIP-2026-104632 EXPLOITDB text
DirectAdmin 1.50.1 - Denial of Service
by IeDb ir
EIP-2026-103427 EXPLOITDB html VERIFIED
Brave Browser 1.2.16/1.9.56 - Address Bar URL Spoofing
by Aaditya Purani