header-logo
Suggest Exploit
explore-vulnerabilities

Explore Vulnerabilities

Version
Year

Explore all Exploits:

Jettweb PHP Hazir Rent A Car Sitesi Scripti V2 – ‘arac_kategori_id’ SQL Injection

The Jettweb PHP Hazir Rent A Car Sitesi Scripti V2 is vulnerable to SQL Injection through the 'arac_kategori_id' parameter. By injecting a specially crafted payload, an attacker can manipulate the SQL query and potentially gain unauthorized access to the database.

Homey BNB (Airbnb Clone Script) – Multiple SQL Injection

The Homey BNB (Airbnb Clone Script) version V4 is vulnerable to multiple SQL Injection attacks. The vulnerabilities exist in various parameters of different requests. An attacker can exploit these vulnerabilities to execute arbitrary SQL queries and potentially gain unauthorized access to the database.

Titan FTP Server Version 2019 Build 3505 Directory Traversal/Local File Inclusion

A Directory Traversal issue was discovered in the Web GUI in Titan FTP Server 2019 Build 3505. When an authenticated user attempts to preview an uploaded file (through PreviewHandler.ashx) by using a .... technique, arbitrary files can be loaded in the server response outside the root directory.

Softbiz Freelancers Script V.1

Softbiz Freelancers Script V.1 is affected by multiple vulnerabilities including SQL Injection and XSS. The SQL Injection vulnerability can be exploited by manipulating the 'search_form.php' parameter 'sb_showresult' to execute arbitrary SQL queries. The XSS vulnerability can be exploited by injecting malicious scripts into the 'errmsg' parameter of the 'signin.php' page.

Recent Exploits: