#PHP,webapps,
-
Simple Image Gallery 1.0 - Remote Code Execution (RCE) (Unauthenticated)
-
COVID19 Testing Management System 1.0 - 'Multiple' SQL Injections
-
Crime records Management System 1.0 - 'Multiple' SQL Injection (Authenticated)
-
Online Traffic Offense Management System 1.0 - Remote Code Execution (RCE) (Unauthenticated)
-
Laundry Booking Management System 1.0 - 'Multiple' Stored Cross-Site Scripting (XSS)
-
Simple Phone Book 1.0 - 'Username' SQL Injection (Unauthenticated)
-
WordPress Plugin Mail Masta 1.0 - Local File Inclusion (2)
-
RaspAP 2.6.6 - Remote Code Execution (RCE) (Authenticated)
-
Online Leave Management System 1.0 - Arbitrary File Upload to Shell (Unauthenticated)
-
WordPress Plugin Duplicate Page 4.4.1 - Stored Cross-Site Scripting (XSS)
-
Bus Pass Management System 1.0 - 'viewid' SQL Injection
-
Patient Appointment Scheduler System 1.0 - Unauthenticated File Upload
-
Patient Appointment Scheduler System 1.0 - Persistent Cross-Site Scripting
-
Bus Pass Management System 1.0 - 'viewid' Insecure direct object references (IDOR)
-
Projectsend r1295 - 'name' Stored XSS
- 1 篇意见
- 43 次查看
-
Traffic Offense Management System 1.0 - Remote Code Execution (RCE) (Unauthenticated)
-
WordPress Plugin Payments Plugin | GetPaid 2.4.6 - HTML Injection
-
Dolibarr ERP 14.0.1 - Privilege Escalation
-
WordPress Plugin WP Sitemap Page 1.6.4 - Stored Cross-Site Scripting (XSS)
-
WordPress Plugin TablePress 1.14 - CSV Injection