#PHP,webapps,
-
Student Quarterly Grading System 1.0 - 'grade' Stored Cross-Site Scripting (XSS)
-
TextPattern CMS 4.8.7 - Remote Command Execution (RCE) (Authenticated)
-
Support Board 3.3.4 - 'Message' Stored Cross-Site Scripting (XSS)
-
Company's Recruitment Management System 1.0. - 'title' Stored Cross-Site Scripting (XSS)
-
Company's Recruitment Management System 1.0 - 'description' Stored Cross-Site Scripting (XSS)
-
Company's Recruitment Management System 1.0 - 'Add New user' Cross-Site Request Forgery (CSRF)
-
Online Motorcycle (Bike) Rental System 1.0 - Blind Time-Based SQL Injection (Unauthenticated)
-
Dolibarr ERP-CRM 14.0.2 - Stored Cross-Site Scripting (XSS) / Privilege Escalation
-
Small CRM 3.0 - 'description' Stored Cross-Site Scripting (XSS)
-
Clinic Management System 1.0 - SQL injection to Remote Code Execution
-
Online Course Registration 1.0 - Blind Boolean-Based SQL Injection (Authenticated)
-
Engineers Online Portal 1.0 - File Upload Remote Code Execution (RCE)
-
Balbooa Joomla Forms Builder 2.0.6 - SQL Injection (Unauthenticated)
-
Engineers Online Portal 1.0 - 'multiple' Stored Cross-Site Scripting (XSS)
-
Online Event Booking and Reservation System 1.0 - 'reason' Stored Cross-Site Scripting (XSS)
-
Engineers Online Portal 1.0 - 'multiple' Authentication Bypass
-
Engineers Online Portal 1.0 - 'id' SQL Injection
-
WordPress Plugin Media-Tags 3.2.0.2 - Stored Cross-Site Scripting (XSS)
-
WordPress Plugin Ninja Tables 4.1.7 - Stored Cross-Site Scripting (XSS)
-
Wordpress 4.9.6 - Arbitrary File Deletion (Authenticated) (2)