#PHP,webapps,
-
Simple Online College Entrance Exam System 1.0 - Account Takeover
-
Simple Online College Entrance Exam System 1.0 - Unauthenticated Admin Creation
-
WordPress Plugin Pie Register 3.7.1.4 - Admin Privilege Escalation (Unauthenticated)
-
Loan Management System 1.0 - SQLi Authentication Bypass
-
Simple Payroll System 1.0 - SQLi Authentication Bypass
-
Company's Recruitment Management System 1.0 - 'Multiple' SQL Injection (Unauthenticated)
-
Pharmacy Point of Sale System 1.0 - 'Add New User' Cross-Site Request Forgery (CSRF)
-
Simple Issue Tracker System 1.0 - SQLi Authentication Bypass
-
Student Quarterly Grading System 1.0 - 'grade' Stored Cross-Site Scripting (XSS)
-
Online Learning System 2.0 - 'Multiple' SQLi Authentication Bypass
-
Company's Recruitment Management System 1.0. - 'title' Stored Cross-Site Scripting (XSS)
-
TextPattern CMS 4.8.7 - Remote Command Execution (RCE) (Authenticated)
-
Support Board 3.3.4 - 'Message' Stored Cross-Site Scripting (XSS)
-
Company's Recruitment Management System 1.0 - 'Add New user' Cross-Site Request Forgery (CSRF)
-
Company's Recruitment Management System 1.0 - 'description' Stored Cross-Site Scripting (XSS)
-
Online Motorcycle (Bike) Rental System 1.0 - Blind Time-Based SQL Injection (Unauthenticated)
-
Dolibarr ERP-CRM 14.0.2 - Stored Cross-Site Scripting (XSS) / Privilege Escalation
-
Online Course Registration 1.0 - Blind Boolean-Based SQL Injection (Authenticated)
-
Clinic Management System 1.0 - SQL injection to Remote Code Execution
-
Small CRM 3.0 - 'description' Stored Cross-Site Scripting (XSS)