#PHP,webapps,
-
Money Transfer Management System 1.0 - Authentication Bypass
-
WordPress Plugin Backup and Restore 1.0.3 - Arbitrary File Deletion
-
Employee Daily Task Management System 1.0 - 'Name' Stored Cross-Site Scripting (XSS)
-
Employee and Visitor Gate Pass Logging System 1.0 - 'name' Stored Cross-Site Scripting (XSS)
-
WordPress Plugin WP Symposium Pro 2021.10 - 'wps_admin_forum_add_name' Stored Cross-Site Scripting (XSS)
-
WordPress Plugin AccessPress Social Icons 1.8.2 - 'icon title' Stored Cross-Site Scripting (XSS)
-
Fuel CMS 1.4.13 - 'col' Blind SQL Injection (Authenticated)
-
WordPress Plugin Contact Form to Email 1.3.24 - Stored Cross Site Scripting (XSS) (Authenticated)
-
Quick.CMS 6.7 - Cross Site Request Forgery (CSRF) to Cross Site Scripting (XSS) (Authenticated)
-
Wordpress Plugin Smart Product Review 1.0.4 - Arbitrary File Upload
-
Aimeos Laravel ecommerce platform 2021.10 LTS - 'sort' SQL injection
-
Wordpress Plugin WP Guppy 1.1 - WP-JSON API Sensitive Information Disclosure
-
Bus Pass Management System 1.0 - 'Search' SQL injection
-
CMSimple 5.4 - Local file inclusion (LFI) to Remote code execution (RCE) (Authenticated)
-
opencart 3.0.3.8 - Sessjion Injection
- 1 篇意见
- 48 次查看
-
Laundry Booking Management System 1.0 - Remote Code Execution (RCE)
-
WordPress Plugin All-in-One Video Gallery plugin 2.4.9 - Local File Inclusion (LFI)
-
WordPress Plugin Slider by Soliloquy 2.6.2 - 'title' Stored Cross Site Scripting (XSS) (Authenticated)
-
Chikitsa Patient Management System 2.0.2 - 'plugin' Remote Code Execution (RCE) (Authenticated)
-
Chikitsa Patient Management System 2.0.2 - 'backup' Remote Code Execution (RCE) (Authenticated)