header-logo
Suggest Exploit
explore-vulnerabilities

Explore Vulnerabilities

Version
Year

Explore all Exploits:

Cycade Gallery SQL Injection Exploit

An SQL injection vulnerability exists in Cycade Gallery, which allows an attacker to execute arbitrary SQL commands on the underlying database. This can be exploited to gain access to sensitive information, such as usernames and passwords. The vulnerability is due to insufficient sanitization of user-supplied input in the 'g_id' parameter of the 'catalog2.php' script. An attacker can exploit this vulnerability by sending a specially crafted HTTP request containing malicious SQL commands.

PBLang local file include vulnerability

In setcookie.php, an attacker can include a file from the server by making a request like GET http://localhost/path/setcookie.php?u=../../../../../etc/passwd HTTP/1.1. Cookie: eXtplorer=eRlQPZSWiGt2zRpFlXr6qCgja6DiLumU Host: localhost:80 Connection: Keep-alive Accept-Encoding: gzip,deflate User-Agent: Mozilla/4.0 (compatible; MSIE 8.0; Windows NT 6.0)

Network Instrument Observer SNMP SetRequest Denial of Service Vulnerability

The vulnerability is caused due to a NULL-pointer dereference error when copying an octet string from a variable binding list. This can be exploited to cause a crash via a specially crafted SNMP SetRequest PDU sent to UDP port 162.

Buffer Overflow Vulnerability on GOM Media Player v. 2.1.37

The Vulnerability Laboratory Research Team discovered a Buffer Overflow Vulnerability on GOM Media Player v. 2.1.37. The vulnerability can be exploited by local & remote attackers. An attacker can exploit this vulnerability by downloading & opening the software client, clicking open ==> Url, and putting vulnerability code. This will result in a buffer overflow.

[Iranian] Saman portal LFI

Vulnerability exists in modules/sisRapid/pnuserapi.php on line 117, where just '../' is filtered to prevent LFI but '....//' will work. An attacker can exploit this vulnerability by sending a crafted HTTP request to the vulnerable server, such as http://www.site.com/index.php?module=cdk&func=loadmodule&system=cdk&sismodule=....//....//....//....//....//....//....//....//....//....//....//....//etc/passwd, which will allow the attacker to view the contents of the /etc/passwd file.

Zend Server 5.6.0 Multiple Remote Script Insertion Vulnerabilities

An attacker can exploit these vulnerabilities by enticing an authenticated user to follow a malicious link. The malicious link contains a crafted URL with malicious script code in the vulnerable parameters. When the user visits the malicious link, the malicious script code will be stored in the vulnerable parameters and will be executed in the user's browser session in context of the affected site.

PyPAM — Python bindings for PAM – Double Free Corruption

While conducting an internal test LSE discovered that by supplying a password containing a NULL-byte to the PyPAM module, a double-free condition is triggered. This leads to undefined behaviour and may allow remote code execution.

PHP Address Book 6.2.12 Multiple security vulnerabilities

PHP Address Book 6.2.12 is prone to multiple XSS and SQL-Injection vulnerabilities. The PoC-Exploit includes a Blind SQL-Injection vulnerability in the edit.php, group.php and vcard.php files, as well as an XSS vulnerability in the preferences.php and index.php files.

RazorCMS <= 1.2.1 STABLE CSRF (Delete Web Pages)

RazorCMS 1.2.1 STABLE (and lower) is affected by CSRF Vulnerability which allows an attacker to delete web pages, both published and unpublished. An attacker can craft a malicious HTML page containing a form with the action attribute set to the URL of the vulnerable page, and when the victim visits the malicious page, the form will be automatically submitted, resulting in the deletion of the web page.

Recent Exploits: