header-logo
Suggest Exploit
explore-vulnerabilities

Explore Vulnerabilities

Version
Year

Explore all Exploits:

X.Org X Window System Xserver Denial-of-Service Vulnerability

X.Org X Window System Xserver is prone to a denial-of-service vulnerabilty because the software fails to properly handle exceptional conditions. Attackers who can connect to a vulnerable X server may exploit this issue to crash the targeted server, denying further service to legitimate users.

E-Annu SQL Injection Vulnerability

E-Annu is prone to an SQL-injection vulnerability because it fails to sufficiently sanitize user-supplied data before using it in an SQL query. Exploiting this issue could allow an attacker to compromise the application, access or modify data, or exploit latent vulnerabilities in the underlying database implementation.

MyBB <= 1.6.11 Remote Code Execution Using Admin Privileges

In older versions of MyBB, it was possible to execute PHP code by injecting the code into a template file. This bug has been fixed in the latest version, but there is a little bug in the language editor section. By exploiting this bug, an attacker with admin privileges can write PHP code in the language file and execute it. The exploit takes advantage of the fact that MyBB treats the language variable as an integer, allowing the execution of PHP functions.

SQL Injection in Gazi Download Portal

The Gazi Download Portal is vulnerable to SQL injection due to lack of proper input sanitization. An attacker can exploit this vulnerability by injecting malicious SQL code into user-supplied data, which can lead to unauthorized access, data manipulation, and exploitation of other vulnerabilities in the database.

Cross-Site Scripting Vulnerabilities in Red Hat Directory Server

Red Hat Directory Server is prone to multiple cross-site scripting vulnerabilities because the application fails to sufficiently sanitize user-supplied input.An attacker can exploit these issues to steal cookie-based authentication credentials and launch other attacks.

Apache AXIS Path Information Disclosure Vulnerability

The Apache AXIS web application framework is prone to a vulnerability that allows remote attackers to disclose sensitive path information. This vulnerability occurs when an attacker sends a specially crafted request to the affected server, which results in the disclosure of directory paths on the webserver.

Burak Yilmaz Blog SQL Injection Vulnerability

The Burak Yilmaz Blog is prone to an SQL-injection vulnerability because it fails to sufficiently sanitize user-supplied data before using it in an SQL query. Exploiting this issue could allow an attacker to compromise the application, access or modify data, or exploit latent vulnerabilities in the underlying database implementation.

Recent Exploits: