osTicket 1.14.2 – SSRF
>> AUTHOR: deepcore
osTicket 1.14.2 – SSRF
http://www.raikee.go.th/indonesia.txt notified by Xyp3r2667
Life Insurance Management System 1.0 – ‘client_id’ SQL Injection
Cisco UCS Manager 2.2(1d) – Remote Command Execution
Xwiki CMS 12.10.2 – Cross Site Scripting (XSS)
Inteno IOPSYS 3.16.4 – root filesystem access via sambashare (Authenticated)
Life Insurance Management System 1.0 – File Upload RCE (Authenticated)
http://www.sungmen.go.th/asu.txt notified by Xyp3r2667
http://tambonsantisuk.go.th/asu.txt notified by Xyp3r2667
http://ksm.go.th/asu.txt notified by Xyp3r2667