Online Internship Management System 1.0 – ’email’ SQL injection Auth Bypass
Online Internship Management System 1.0 – ’email’ SQL injection Auth Bypass
BlackCat CMS 1.3.6 – ‘Display name’ Cross Site Scripting (XSS)
http://www.huaitoei.go.th/nkri.txt notified by Xyp3r2667
Tasks 9.7.3 – Insecure Permissions
Teachers Record Management System 1.0 – ‘searchteacher’ SQL Injection
TestLink 1.9.20 – Unrestricted File Upload (Authenticated)
http://www.phayumoph.go.th/nkri.txt notified by Xyp3r2667
http://bkpw.go.th/nkri.txt notified by Xyp3r2667
https://maeteep-ngao.go.th/nkri.txt notified by Xyp3r2667
PDFCOMPLETE Corporate Edition version 4.1.45 suffers from an unquoted service path vulnerability.