Notice: Function _load_textdomain_just_in_time was called incorrectly. Translation loading for the wp-pagenavi domain was triggered too early. This is usually an indicator for some code in the plugin or theme running too early. Translations should be loaded at the init action or later. Please see Debugging in WordPress for more information. (This message was added in version 6.7.0.) in /home/u918112125/domains/exploit.company/public_html/wp-includes/functions.php on line 6114
Exploits 450 - exploit.company
header-logo
Suggest Exploit
explore-vulnerabilities

Explore Vulnerabilities

Version
Year

Explore all Exploits:

enVivo!CMS SQL Injection Vulnerability

enVivo!CMS is prone to an SQL-injection vulnerability because the application fails to properly sanitize user-supplied input before using it in an SQL query. A successful exploit could allow an attacker to compromise the application, access or modify data, or exploit vulnerabilities in the underlying database.

Remote Code Execution in Adobe Flash Player

Adobe Flash Player is prone to a remote code-execution vulnerability because it fails to properly sanitize user-supplied input. An attacker can exploit this issue by tricking an unsuspecting victim into opening a malicious file. A successful exploit will result in the execution of arbitrary attacker-supplied code in the context of the victim running the vulnerable application.

Command Injection Vulnerability in Web Browsers

Attackers can inject commands through the 'firefoxurl' and 'navigatorurl' protocol handlers in Microsoft Internet Explorer, Mozilla Firefox, and Netscape Navigator. This allows remote attackers to execute arbitrary commands and gain unauthorized access. They can also perform cross-browser scripting attacks by using the '-chrome' argument and run JavaScript code with the privileges of trusted Chrome context.

Sun Java Runtime Environment Stack-Based Buffer Overflow Vulnerability

Sun Java Runtime Environment is prone to a stack-based buffer-overflow vulnerability because it fails to adequately bounds-check user-supplied input before copying it to an insufficiently sized memory buffer. An attacker can exploit this issue to execute arbitrary code with the privileges of the user running the affected application. Failed exploit attempts will likely result in a denial-of-service condition.

Vulnerabilities in SquirrelMail G/PGP Encryption Plugin

The SquirrelMail G/PGP encryption plugin in SquirrelMail 2.0 and 2.1 allows malicious webmail users to execute system commands remotely due to insufficient sanitization of user-supplied data. The commands run within the context of the webserver hosting the vulnerable software.

SQL Injection Vulnerability in Levent Veysi Portal

The Levent Veysi Portal is prone to an SQL-injection vulnerability because it fails to sufficiently sanitize user-supplied data before using it in an SQL query. An attacker can exploit this issue by manipulating the SQL query logic to carry out unauthorized actions on the underlying database.

NULL-byte injection vulnerabilities in Microsoft .NET Framework

The Microsoft .NET Framework is vulnerable to multiple NULL-byte injection vulnerabilities. These vulnerabilities occur due to a lack of proper sanitization of user-supplied data. An attacker can exploit these vulnerabilities to access sensitive information that may assist in further attacks. Additionally, other types of attacks may also be possible.

SAP Internet Graphics Server Cross-Site Scripting Vulnerability

The SAP Internet Graphics Server is prone to a cross-site scripting vulnerability due to improper sanitization of user-supplied input. An attacker can exploit this vulnerability by injecting malicious script code into the affected website, potentially leading to the theft of authentication credentials and the execution of other attacks.

Recent Exploits: