Exploitdb Exploits

50,076 exploits tracked across all sources.

Sort: Activity Stars
CVE-2016-20057 EXPLOITDB HIGH text VERIFIED
NETGATE Registry Cleaner build 16.0.205 Unquoted Service Path Privilege Escalation
NETGATE Registry Cleaner build 16.0.205 contains an unquoted service path vulnerability in the NGRegClnSrv service that allows local attackers to escalate privileges by exploiting the service binary path. Attackers can place a malicious executable in the unquoted path and trigger service restart or system reboot to execute code with LocalSystem privileges.
by Amir.ght
CVSS 7.8
CVE-2016-20058 EXPLOITDB HIGH text VERIFIED
Netgate AMITI Antivirus build 23.0.305 Unquoted Service Path Privilege Escalation
Netgate AMITI Antivirus build 23.0.305 contains an unquoted service path vulnerability in the AmitiAvSrv and AmitiAntivirusHealth services that allows local attackers to escalate privileges. Attackers can place a malicious executable in the unquoted service path and trigger service restart or system reboot to execute code with LocalSystem privileges.
by Amir.ght
CVSS 7.8
EIP-2026-117679 EXPLOITDB text VERIFIED
NETGATE Data Backup build 3.0.605 - Unquoted Service Path Privilege Escalation
by Amir.ght
CVE-2020-37254 EXPLOITDB HIGH text
Wondershare PDFelement 5.2.9 Privilege Escalation via Unquoted Service Path
Wondershare PDFelement 5.2.9 contains a privilege escalation vulnerability due to an unquoted service path in the WsAppService Windows service. Local attackers can place a malicious executable in the service path and execute code with LocalSystem privileges upon service restart or system reboot.
by Saeed Hasanzadeh
CVSS 7.8
EIP-2026-117695 EXPLOITDB text
NO-IP DUC 4.1.1 - Unquoted Service Path Privilege Escalation
by Ehsan Hosseini
EIP-2026-117254 EXPLOITDB text VERIFIED
Graylog Collector 0.4.2 - Unquoted Service Path Privilege Escalation
by Joey Lane
EIP-2026-115865 EXPLOITDB python VERIFIED
Mozilla Firefox 49.0.1 - Denial of Service
by sultan albalawi
EIP-2026-114551 EXPLOITDB html
YouTube Automated CMS 1.0.7 - Cross-Site Request Forgery / Persistent Cross-Site Scripting
by Arbin Godar
EIP-2026-113204 EXPLOITDB text
Web Based Alumni Tracking System 0.1 - SQL Injection
by lahilote
EIP-2026-112450 EXPLOITDB text VERIFIED
Student Information System (SIS) 0.1 - Authentication Bypass
by lahilote
EIP-2026-112140 EXPLOITDB text
Simple Shopping Cart Application 0.1 - SQL Injection
by lahilote
EIP-2026-112097 EXPLOITDB text
Simple Forum PHP 2.4 - SQL Injection
by Ehsan Hosseini
EIP-2026-112096 EXPLOITDB html
Simple Forum PHP 2.4 - Cross-Site Request Forgery (Edit Options)
by Ehsan Hosseini
EIP-2026-112088 EXPLOITDB text
Simple Dynamic Web 0.1 - SQL Injection
by lahilote
EIP-2026-111929 EXPLOITDB text
School Full CBT 0.1 - SQL Injection
by lahilote
EIP-2026-109089 EXPLOITDB text
Learning Management System 0.1 - Authentication Bypass
by lahilote
EIP-2026-107565 EXPLOITDB text
Health Record System 0.1 - Authentication Bypass
by lahilote
EIP-2026-107051 EXPLOITDB text
Fashion Shopping Cart 0.1 - SQL Injection
by lahilote
CVE-2016-20060 EXPLOITDB HIGH text VERIFIED
Hotspot Shield 6.0.3 Unquoted Service Path Privilege Escalation
Hotspot Shield 6.0.3 contains an unquoted service path vulnerability in the hshld service binary that allows local attackers to escalate privileges by injecting malicious executables. Attackers can place executable files in the service path and upon service restart or system reboot, the malicious code executes with LocalSystem privileges.
by Amir.ght
CVSS 7.8
CVE-2016-20059 EXPLOITDB HIGH text
IObit Malware Fighter 4.3.1 Unquoted Service Path Privilege Escalation
IObit Malware Fighter 4.3.1 contains an unquoted service path vulnerability in the IMFservice and LiveUpdateSvc services that allows local attackers to escalate privileges. Attackers can insert a malicious executable file in the unquoted service path and trigger privilege escalation when the service restarts or the system reboots, executing code with LocalSystem privileges.
by Amir.ght
CVSS 7.8
EIP-2026-117322 EXPLOITDB text
InsOnSrv Asus InstantOn 2.3.1.1 - Unquoted Service Path Privilege Escalation
by Cyril Vallicari
EIP-2026-116830 EXPLOITDB text
ATKGFNEXSrv ATKGFNEX 1.0.11.1 - Unquoted Service Path Privilege Escalation
by Cyril Vallicari
EIP-2026-116815 EXPLOITDB text
ASLDRService ATK Hotkey 1.0.69.0 - Unquoted Service Path Privilege Escalation
by Cyril Vallicari
EIP-2026-112628 EXPLOITDB text
Thatware 0.4.6 - SQL Injection
by Besim
EIP-2026-112066 EXPLOITDB text
Simple Blog PHP 2.0 - SQL Injection
by Ehsan Hosseini