#PHP,webapps,
-
Phone Shop Sales Managements System 1.0 - Authentication Bypass (SQLi)
-
Online Covid Vaccination Scheduler System 1.0 - 'username' time-based blind SQL Injection
-
Phone Shop Sales Managements System 1.0 - Arbitrary File Upload
-
Employee Record Management System 1.2 - Stored Cross-Site Scripting (XSS)
-
Wordpress Plugin SP Project & Document Manager 4.21 - Remote Code Execution (RCE) (Authenticated)
-
Exam Hall Management System 1.0 - Unrestricted File Upload + RCE (Unauthenticated)
-
Online Covid Vaccination Scheduler System 1.0 - Arbitrary File Upload to Remote Code Execution (Unauthenticated)
-
Church Management System 1.0 - SQL Injection (Authentication Bypass) + Arbitrary File Upload + RCE
-
WordPress Plugin LearnPress 3.2.6.8 - Privilege Escalation
-
WordPress Plugin Mimetic Books 0.2.13 - 'Default Publisher ID field' Stored Cross-Site Scripting (XSS)
-
CSZ CMS 1.2.9 - 'Multiple' Arbitrary File Deletion
-
WordPress Plugin KN Fix Your Title 1.0.1 - 'Separator' Stored Cross-Site Scripting (XSS)
-
XOS Shop 1.0.9 - 'Multiple' Arbitrary File Deletion (Authenticated)
-
WordPress Plugin Simple Post 1.1 - 'Text field' Stored Cross-Site Scripting (XSS)
-
PHP 7.3.15-3 - 'PHP_SESSION_UPLOAD_PROGRESS' Session Data Injection
-
Event Registration System with QR Code 1.0 - Authentication Bypass
-
Customer Relationship Management System (CRM) 1.0 - Sql Injection Authentication Bypass
-
Care2x Integrated Hospital Info System 2.7 - 'Multiple' SQL Injection
-
Men Salon Management System 1.0 - SQL Injection Authentication Bypass
-
Online Hotel Reservation System 1.0 - 'Multiple' Cross-site scripting (XSS)