#PHP,webapps,
-
TextPattern CMS 4.9.0-dev - Remote Command Execution (RCE) (Authenticated)
-
Simple Client Management System 1.0 - Remote Code Execution (RCE)
-
Billing System Project 1.0 - Remote Code Execution (RCE) (Unauthenticated)
-
Exam Hall Management System 1.0 - Unrestricted File Upload (Unauthenticated)
-
Phone Shop Sales Managements System 1.0 - Authentication Bypass (SQLi)
-
Phone Shop Sales Managements System 1.0 - Arbitrary File Upload
-
WordPress Plugin Anti-Malware Security and Bruteforce Firewall 4.20.59 - Directory Traversal
-
Online Covid Vaccination Scheduler System 1.0 - 'username' time-based blind SQL Injection
-
Exam Hall Management System 1.0 - Unrestricted File Upload + RCE (Unauthenticated)
-
Employee Record Management System 1.2 - Stored Cross-Site Scripting (XSS)
-
Online Covid Vaccination Scheduler System 1.0 - Arbitrary File Upload to Remote Code Execution (Unauthenticated)
-
Wordpress Plugin SP Project & Document Manager 4.21 - Remote Code Execution (RCE) (Authenticated)
-
Church Management System 1.0 - SQL Injection (Authentication Bypass) + Arbitrary File Upload + RCE
-
Zoo Management System 1.0 - 'Multiple' Persistent Cross-Site-Scripting (XSS)
-
WordPress Plugin WPFront Notification Bar 1.9.1.04012 - Stored Cross-Site Scripting (XSS)
-
Invoice System 1.0 - 'Multiple' Stored Cross-Site Scripting (XSS)
-
Garbage Collection Management System 1.0 - SQL Injection + Arbitrary File Upload
-
WordPress Plugin Current Book 1.0.1 - 'Book Title' Persistent Cross-Site Scripting
-
osCommerce 2.3.4.1 - Remote Code Execution (2)
-
WordPress Plugin LearnPress 3.2.6.8 - Privilege Escalation