#PHP,webapps,
-
TextPattern CMS 4.8.7 - Stored Cross-Site Scripting (XSS)
-
WoWonder Social Network Platform 3.1 - Authentication Bypass
-
COVID19 Testing Management System 1.0 - 'State' Stored Cross-Site-Scripting (XSS)
-
Stock Management System 1.0 - 'user_id' Blind SQL injection (Authenticated)
-
Small CRM 3.0 - 'Authentication Bypass' SQL Injection
-
TextPattern CMS 4.8.7 - Remote Command Execution (Authenticated)
-
Client Management System 1.1 - 'username' Stored Cross-Site Scripting (XSS)
-
Cotonti Siena 0.9.19 - 'maintitle' Stored Cross-Site Scripting
-
Teachers Record Management System 1.0 - 'email' Stored Cross-site Scripting (XSS)
-
Teachers Record Management System 1.0 - 'Multiple' SQL Injection (Authenticated)
-
CKEditor 3 - Server-Side Request Forgery (SSRF)
-
Unified Office Total Connect Now 1.0 - 'data' SQL Injection
-
Online Shopping Portal 3.1 - Remote Code Execution (Unauthenticated)
-
ICE Hrm 29.0.0.OS - 'Account Takeover' Cross-Site Request Forgery (CSRF)
-
ICE Hrm 29.0.0.OS - 'xml upload' Stored Cross-Site Scripting (XSS)
-
Simple CRM 3.0 - 'name' Stored Cross site scripting (XSS)
-
Simple CRM 3.0 - 'Change user information' Cross-Site Request Forgery (CSRF)
-
Customer Relationship Management System (CRM) 1.0 - Remote Code Execution
-
Responsive Tourism Website 3.1 - Remote Code Execution (RCE) (Unauthenticated)
-
Phone Shop Sales Managements System 1.0 - Insecure Direct Object Reference (IDOR)