#PHP,webapps,
-
Fuel CMS 1.4.7 - 'col' SQL Injection (Authenticated)
-
CMS Made Simple 2.2.14 - Authenticated Arbitrary File Upload
-
vBulletin 5.6.2 - 'widget_tabbedContainer_tab_panel' Remote Code Execution
-
GetSimple CMS Plugin Multi User 1.8.2 - Cross-Site Request Forgery (Add Admin)
-
Pharmacy Medical Store and Sale Point 1.0 - 'catid' SQL Injection
-
ElkarBackup 1.3.3 - Persistent Cross-Site Scripting
-
Complaint Management System 1.0 - 'cid' SQL Injection
-
LimeSurvey 4.3.10 - 'Survey Menu' Persistent Cross-Site Scripting
-
Wordpress Plugin Autoptimize 2.7.6 - Arbitrary File Upload (Authenticated)
-
Online Shopping Alphaware 1.0 - 'id' SQL Injection
-
SymphonyCMS 3.0.0 - Persistent Cross-Site Scripting
-
Fuel CMS 1.4.8 - 'fuel_replace_id' SQL Injection (Authenticated)
-
Online Book Store 1.0 - 'id' SQL Injection
-
CMS Made Simple 2.2.14 - Arbitrary File Upload (Authenticated)
-
moziloCMS 2.0 - Persistent Cross-Site Scripting (Authenticated)
-
Mara CMS 7.5 - Remote Code Execution (Authenticated)
-
Stock Management System 1.0 - Cross-Site Request Forgery (Change Username)
-
grocy 2.7.1 - Persistent Cross-Site Scripting
-
SiteMagic CMS 4.4.2 - Arbitrary File Upload (Authenticated)
-
Daily Tracker System 1.0 - Authentication Bypass