header-logo
Suggest Exploit
explore-vulnerabilities

Explore Vulnerabilities

Version
Year

Explore all Exploits:

Mihalism Multi Host v2.0.7 download.php Remote File Disclosure Vuln

The vulnerability allows an attacker to disclose files on the remote server by exploiting the 'download.php' script. By manipulating the 'file' parameter and using directory traversal techniques, an attacker can access sensitive files such as the '/etc/passwd' file.

Kontakt Formular 1.4 Remote File Inclusion Vulnerability

The vulnerability allows an attacker to include arbitrary files from a remote server by exploiting the 'root_path' parameter in the 'function.php' file. By manipulating the 'root_path' parameter, an attacker can execute malicious code on the target server.

CMS Made Simple <= 1.2.2 (TinyMCE module) - Remote SQL Injection Advisory

The vulnerability exists in the 'content_css.php' file of the TinyMCE module in CMS Made Simple <= 1.2.2. The 'templateid' parameter is not properly checked, allowing an attacker to inject SQL code at line 67. This can be exploited to extract sensitive data from the database.

Recent Exploits: