Exploitdb Exploits

50,076 exploits tracked across all sources.

Sort: Activity Stars
CVE-2016-7237 EXPLOITDB MEDIUM text VERIFIED
Microsoft Windows - Authenticated Denial of Service via LSASS Crafted Request
Local Security Authority Subsystem Service (LSASS) in Microsoft Windows Vista SP2, Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Windows 8.1, Windows Server 2012 Gold and R2, Windows RT 8.1, Windows 10 Gold, 1511, and 1607, and Windows Server 2016 allows remote authenticated users to cause a denial of service (system hang) via a crafted request, aka "Local Security Authority Subsystem Service Denial of Service Vulnerability."
by laurent gaffie
CVSS 6.5
EIP-2026-106667 EXPLOITDB php VERIFIED
e107 CMS 2.1.2 - Privilege Escalation
by Kacper Szurek
CVE-2025-34048 EXPLOITDB HIGH bash
D-Link DSL-2730U/2750U/2750E - Path Traversal
A path traversal vulnerability exists in the web management interface of D-Link DSL-2730U, DSL-2750U, and DSL-2750E ADSL routers with firmware versions IN_1.02, SEA_1.04, and SEA_1.07. The vulnerability is due to insufficient input validation on the getpage parameter within the /cgi-bin/webproc CGI script. This flaw allows an unauthenticated remote attacker to perform path traversal attacks by supplying crafted requests, enabling arbitrary file read on the affected device. Exploitation evidence was observed by the Shadowserver Foundation on 2025-02-04 UTC.
by Todor Donev
EIP-2026-116862 EXPLOITDB python
Avira Antivirus 15.0.21.86 - '.zip' Directory Traversal / Command Execution
by R-73eN
EIP-2026-115817 EXPLOITDB perl
Microsoft Windows Server 2008/2012 - LDAP RootDSE Netlogon Denial of Service
by Todor Donev
EIP-2026-114183 EXPLOITDB text
WordPress Plugin WassUp Real Time Analytics 1.9 - Persistent Cross-Site Scripting
by Burak Kelebek
EIP-2026-113518 EXPLOITDB text VERIFIED
WordPress Plugin 404 to 301 2.2.8 - Persistent Cross-Site Scripting
by Alyssa Milburn
EIP-2026-103349 EXPLOITDB ruby
Eir D1000 Wireless Router - WAN Side Remote Command Injection (Metasploit)
by Kenzo
EIP-2026-101409 EXPLOITDB bash
PLANET ADSL Router AND-4101 - Remote File Disclosure
by Todor Donev
EIP-2026-101384 EXPLOITDB bash
Netgear WNR500/WNR612v3/JNR1010/JNR2010 ADSL Router - (Authenticated) Remote File Disclosure
by Todor Donev
EIP-2026-101379 EXPLOITDB bash
Netgear JNR1010 ADSL Router - (Authenticated) Remote File Disclosure
by Todor Donev
EIP-2026-101368 EXPLOITDB bash
MOVISTAR BHS_RTA ADSL Router - Remote File Disclosure
by Todor Donev
CVE-2014-6363 EXPLOITDB html VERIFIED
Microsoft VBScript 5.6-5.8 - Remote Code Execution via Memory Corruption
vbscript.dll in Microsoft VBScript 5.6 through 5.8, as used with Internet Explorer 6 through 11 and other products, allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted web site, aka "VBScript Memory Corruption Vulnerability."
by Skylined
EIP-2026-115735 EXPLOITDB html
Microsoft Internet Explorer 9 - MSHTML CPtsTextParaclient::CountApes Out-of-Bounds Read
by Skylined
EIP-2026-112346 EXPLOITDB text VERIFIED
Sophos Web Appliance 4.2.1.3 - Remote Code Execution
by KoreLogic
EIP-2026-111938 EXPLOITDB text VERIFIED
Schoolhos CMS 2.29 - 'kelas' SQL Injection
by Vulnerability-Lab
EIP-2026-111301 EXPLOITDB text
Piwik 2.16.0 - 'layout' PHP Object Injection
by Egidio Romano
EIP-2026-109950 EXPLOITDB text VERIFIED
NodCMS - PHP Code Execution
by Ashiyane Digital Security Team
EIP-2026-101149 EXPLOITDB bash
Acoem 01dB CUBE/DUO Smart Noise Monitor - Password Change
by Todor Donev
EIP-2026-112508 EXPLOITDB text VERIFIED
SweetRice 1.5.1 - Backup Disclosure
by Ashiyane Digital Security Team
EIP-2026-112507 EXPLOITDB python VERIFIED
SweetRice 1.5.1 - Arbitrary File Upload
by Ashiyane Digital Security Team
EIP-2026-119028 EXPLOITDB python VERIFIED
PCMan FTP Server 2.0.7 - 'SITE CHMOD' Remote Buffer Overflow
by Luis Noriega
EIP-2026-119026 EXPLOITDB python VERIFIED
PCMan FTP Server 2.0.7 - 'PORT' Remote Buffer Overflow
by Pablo González
EIP-2026-119025 EXPLOITDB python VERIFIED
PCMan FTP Server 2.0.7 - 'NLST' Remote Buffer Overflow
by Karri93
EIP-2026-118577 EXPLOITDB python VERIFIED
Freefloat FTP Server 1.0 - 'SITE ZONE' Remote Buffer Overflow
by Luis Noriega