Simple College Website 1.0 – ‘full’ Stored Cross Site Scripting
>> AUTHOR: deepcore
Simple College Website 1.0 – ‘full’ Stored Cross Site Scripting
Tenda AC5 AC1200 Wireless – ‘WiFi Name & Password’ Stored Cross Site Scripting
Oracle WebLogic Server 12.2.1.0 – RCE (Unauthenticated)
Collabtive 3.1 – ‘address’ Persistent Cross-Site Scripting
MyBB Timeline Plugin 1.0 – Cross-Site Scripting / CSRF
CASAP Automated Enrollment System 1.0 – ‘First Name’ Stored XSS
CASAP Automated Enrollment System 1.0 – ‘route’ Stored XSS
Library System 1.0 – ‘category’ SQL Injection
http://www.chaisatarn.go.th/Vz.txt notified by VenoRyan
Oracle WebLogic Server version 14.1.1.0 authenticated remote code execution exploit.