header-logo
Suggest Exploit
explore-vulnerabilities

Explore Vulnerabilities

Version
Year

Explore all Exploits:

DMXReady Document Library Manager <= 1.1 Remote Contents Change Vulnerability

A vulnerability exists in DMXReady Document Library Manager version 1.1 and earlier which allows an attacker to remotely change the contents of the application. This is due to the application not properly validating user-supplied input before using it to modify the contents of the application.

DMXReady Contact Us Manager <= 1.1 Remote Contents Change Vulnerability

A vulnerability in DMXReady Contact Us Manager version 1.1 allows an attacker to remotely change the contents of the application. This is due to the lack of authentication when accessing the add_category.asp page, which allows an attacker to insert, update, and delete categories and subcategories, as well as upload images.

DMXReady Classified Listings Manager <= 1.1 SQL Injection Vulnerability

A SQL injection vulnerability exists in DMXReady Classified Listings Manager version 1.1 and earlier. An attacker can exploit this vulnerability to gain access to the application database and execute arbitrary SQL commands. The vulnerability is due to insufficient sanitization of user-supplied input in the 'cid' parameter of the 'upload_image_category.asp' script. An attacker can exploit this vulnerability by sending a specially crafted HTTP request containing malicious SQL statements to the vulnerable script. Successful exploitation of this vulnerability can result in unauthorized access to the application database and execution of arbitrary SQL commands.

DMXReady Catalog Manager <= 1.1 Remote Contents Change Vulnerability

DMXReady Catalog Manager is vulnerable to a remote contents change vulnerability. An attacker can exploit this vulnerability to update, delete, insert category/subcategory, image upload, etc. The vulnerability is due to insufficient validation of user-supplied input in the 'list.asp' script. An attacker can exploit this vulnerability by sending a malicious HTTP request to the vulnerable script.

OTSTurntables 1.00.027 (.ofl) Local Stack Overflow Exploit

This exploit is for a local stack overflow vulnerability in OTSTurntables 1.00.027 (.ofl). The exploit is written in Python and uses a win32_exec shellcode to execute a calculator. The exploit was discovered and exploited by suN8Hclf and tested on Windows XP SP2 Polish Full patched.

DMXReady Blog Manager <= 1.1 Remote Files Delete Vulnerability

DMXReady Blog Manager version 1.1 is vulnerable to a remote files delete vulnerability. An attacker can delete any file on the server by sending a specially crafted HTTP request to the assetmanager.asp page. This vulnerability can be exploited by unauthenticated attackers.

Excel Viewer OCX 3.2 Remote File execution exploit

This exploit allows a remote attacker to execute arbitrary code on a vulnerable system by using the OpenWebFile method of the Excel Viewer OCX 3.2 ActiveX control. The vulnerability is due to a lack of input validation when handling the OpenWebFile method, which allows an attacker to specify a remote file to be downloaded and executed on the vulnerable system.

Edraw Office Viewer Component v5.4 HttpDownloadFile() Insecure Method

Edraw Office Viewer Component v5.4 is vulnerable to an insecure method vulnerability. An attacker can exploit this vulnerability to download a malicious file from a remote server to the vulnerable system. This vulnerability is due to the HttpDownloadFile() method of the Edraw Office Viewer Component, which allows an attacker to download a file from a remote server to the vulnerable system without any authentication.

SQL Injection & Cross Site Scripting in CMS netvolution v1.0

SQL Injection can be used to find version, password and username of the CMS netvolution v1.0. Cross Site Scripting can be used to set the variable email to >"><ScRiPt%20%0a%0d>alert(XSS)%3B</ScRiPt>

Syzygy CMS <= 0.3 (Auth Bypass) SQL Injection Vulnerability

Syzygy CMS version 0.3 is vulnerable to an authentication bypass vulnerability due to improper sanitization of user-supplied input. An attacker can exploit this vulnerability by supplying a specially crafted username and password to bypass authentication. The vulnerable code is located in the login.php file, where the username and password are not properly sanitized before being used in an SQL query. An attacker can exploit this vulnerability by supplying a specially crafted username and password, such as 'x' OR 'x' = 'x'#, and any password, to bypass authentication.

Recent Exploits: