#PHP,webapps,
-
PHP Melody 3.0 - 'Multiple' Cross-Site Scripting (XSS)
-
PHP Melody 3.0 - Persistent Cross-Site Scripting (XSS)
-
Vanguard 2.1 - 'Search' Cross-Site Scripting (XSS)
-
Opencart 3 Extension TMD Vendor System - Blind SQL Injection
-
Ultimate POS 4.4 - 'name' Cross-Site Scripting (XSS)
-
Payment Terminal 3.1 - 'Multiple' Cross-Site Scripting (XSS)
-
Kmaleon 1.1.0.205 - 'tipocomb' SQL Injection (Authenticated)
-
Simple Client Management System 1.0 - 'multiple' Stored Cross-Site Scripting (XSS)
-
Simple Client Management System 1.0 - SQLi (Authentication Bypass)
-
WordPress Plugin Backup and Restore 1.0.3 - Arbitrary File Deletion
-
Money Transfer Management System 1.0 - Authentication Bypass
-
Employee Daily Task Management System 1.0 - 'Name' Stored Cross-Site Scripting (XSS)
-
Employee and Visitor Gate Pass Logging System 1.0 - 'name' Stored Cross-Site Scripting (XSS)
-
WordPress Plugin AccessPress Social Icons 1.8.2 - 'icon title' Stored Cross-Site Scripting (XSS)
-
WordPress Plugin WP Symposium Pro 2021.10 - 'wps_admin_forum_add_name' Stored Cross-Site Scripting (XSS)
-
WordPress Plugin Contact Form to Email 1.3.24 - Stored Cross Site Scripting (XSS) (Authenticated)
-
Fuel CMS 1.4.13 - 'col' Blind SQL Injection (Authenticated)
-
Quick.CMS 6.7 - Cross Site Request Forgery (CSRF) to Cross Site Scripting (XSS) (Authenticated)
-
Wordpress Plugin Smart Product Review 1.0.4 - Arbitrary File Upload
-
Wordpress Plugin WP Guppy 1.1 - WP-JSON API Sensitive Information Disclosure