header-logo
Suggest Exploit
explore-vulnerabilities

Explore Vulnerabilities

Version
Year

Explore all Exploits:

Web Wiz NewsPad Remote Database Disclosure Vulnerability

A vulnerability exists in Web Wiz NewsPad, which allows an attacker to remotely access the database file NewsPad.mdb. This can be exploited by sending a request to the vulnerable server for the file NewsPad.mdb, which contains sensitive information such as usernames and passwords.

Picpuz Buffer Overflow DoS/PoC <=2.1.1

Picpuz does not check the length of input filename/directory thus overwriting the buffer [1000 in size] with a call to strcpy. Proof Of Concept: Image filename overflow: $ ./picpuz -f $(python -c 'print "A"*1500') Directory filename overflow: $ ./picpuz -i $(python -c 'print "A"*1500')

Pragyan CMS 2.6.4 (Search.php) Remote File Inclusion Vulnerability

Pragyan CMS 2.6.4 is vulnerable to a Remote File Inclusion vulnerability due to a lack of sanitization of user-supplied input. An attacker can exploit this vulnerability by sending a maliciously crafted HTTP request to the vulnerable application, which can allow the attacker to execute arbitrary code on the server.

Wbb3 Blind Sql Injection Injection in Announce Plugin (Kleinanzeigen Markt)

Wbb3 Blind Sql Injection Injection in Announce Plugin (Kleinanzeigen Markt) is a vulnerability that allows an attacker to inject malicious SQL code into a vulnerable web application. This vulnerability can be exploited to gain access to sensitive data stored in the database, such as user credentials, or to execute arbitrary code on the server. The vulnerability is caused by insufficient input validation and can be exploited by sending specially crafted SQL queries to the vulnerable application.

CastRipper 2.50.70 (.pls)Stack buffer Overflow Exploit WinXP SP3

CastRipper 2.50.70 is vulnerable to a stack buffer overflow vulnerability when a specially crafted .pls file is opened. This can be exploited to execute arbitrary code by corrupting the stack. The exploit code uses a NOP sled followed by a shellcode to execute calc.exe.

Joomla Component com_jeemaarticlecollection SQL injection Vulnerability

This vulnerability allows an attacker to gain access to the admin login credentials by exploiting a SQL injection vulnerability in the Joomla Component com_jeemaarticlecollection. The vulnerability exists due to insufficient filtration of malicious characters in the 'catid' parameter of the 'index.php' script.

Recent Exploits: