header-logo
Suggest Exploit
explore-vulnerabilities

Explore Vulnerabilities

Version
Year

Explore all Exploits:

(ArticleMS) Article Management System 2.1.2 Reinstall Vulnerability

A vulnerability exists in Article Management System 2.1.2 which allows an attacker to reinstall the application by accessing the install/index.php?step=3 page. The attacker can then access the admin page at http://127.0.0.1/articlems_2_1_2/admin/.

osCSS 1.2.1 (REMOTE FILE UPLOAD) Vulnerabilities

A vulnerability exists in osCommerce 1.2.1 which allows an attacker to upload malicious files to the server. The vulnerability is due to insufficient validation of the file being uploaded. An attacker can exploit this vulnerability by uploading a malicious file to the server and then executing it.

phpBazar V2.1.1 stable rfi Vulnerability

phpBazar V2.1.1 stable is vulnerable to Remote File Inclusion. The vulnerability is caused due to the 'lib_path' parameter in 'picturelib.phtml' script not properly verified before being used to include a file. This can be exploited to execute arbitrary PHP code by including a malicious file from a remote host.

QtWeb 3.3 Remote DoS/Crash Exploit

QtWeb 3.3 is vulnerable to a remote denial of service attack. An attacker can send a specially crafted HTML file to the victim, which will cause the application to crash when opened. This vulnerability is due to a boundary error when handling HTML files. This can be exploited to cause a denial of service condition.

Member ID The Fish Index PHP SQL Injection Vulnerability

An attacker can exploit this vulnerability by sending a crafted SQL query to the vulnerable application. The crafted query can be sent as a parameter value in the URL. The crafted query can be used to extract data from the database, modify data, execute administration operations on the database, etc.

slogan design Script SQL Injection Vulnerability

A SQL injection vulnerability was discovered in slogan design Script version 3.1. An attacker can exploit this vulnerability by sending a malicious SQL query to the vulnerable parameter m_id in the index.php file. This can allow the attacker to gain access to the admin panel by using the PoC Username and Password. The vulnerable parameter can be found in the URL http://[site]/path/index.php?m_id={SQLi}.

SIMM Management System (SMS) Local File Inclusion Vulnerability

SIMM Management System (SMS) version 2 is vulnerable to a Local File Inclusion vulnerability. An attacker can exploit this vulnerability by sending a crafted HTTP request containing directory traversal sequences and a null byte (%00) to the vulnerable server. This will allow the attacker to read arbitrary files from the server.

Vastal I-Tech SQL Injection Vulnerability

An attacker can exploit this vulnerability by sending a crafted SQL query to the vulnerable parameter 'group_id' in the URL. For example, http://[site]/view_group.php?group_id={SQLI}. An attacker can also use the '-1+union+select+group_concat(admin_user,0x3a,admin_password)+from+admin_users--' payload to retrieve the admin credentials and gain access to the admin panel.

Recent Exploits: