header-logo
Suggest Exploit
explore-vulnerabilities

Explore Vulnerabilities

Version
Year

Explore all Exploits:

Help Center Live 2.0.6(module=helpcenter&file=) Local File Inclusion

Help Center Live 2.0.6 is vulnerable to a local file inclusion vulnerability. An attacker can exploit this vulnerability by sending a crafted HTTP request to the vulnerable application. The crafted request contains a malicious file path in the ‘file’ parameter of the ‘module.php’ script. This allows an attacker to read sensitive files from the server.

Portaneo CMS 2.2.3 File Upload Vulnerability

Portaneo CMS 2.2.3 is vulnerable to a file upload vulnerability. The vulnerability exists in the ‘path/tools/fckeditor/editor/filemanager/connectors/php/config.php’ file, where the ‘$Config[‘Enabled’]’ parameter is set to ‘true’ by default, allowing an attacker to upload arbitrary files to the server.

Boutique SudBox 1.2 Changer Login et Mot de Passe CSRF Vulnerability

A CSRF vulnerability exists in Boutique SudBox 1.2 which allows an attacker to change the login and password of the admin user. An attacker can craft a malicious HTML page containing a form with the action set to http://localhost/boutique/admin/password_2.php and the parameters admin and motdepasse set to the desired values. When the admin user visits the malicious page, the form will be automatically submitted and the login and password will be changed.

PHP-Quick-Arcade 3.0.21 Multiple Vulnerabilites

PHP Quick Arcade 3.0.21 is vulnerable to multiple vulnerabilities such as SQL Injection, XSS and Register_Global. An attacker can exploit these vulnerabilities to gain access to the database, execute arbitrary code and steal sensitive information.

Recent Exploits: