NewsLister – Authenticated Persistent Cross-Site Scripting
>> TAG: #0day
NewsLister – Authenticated Persistent Cross-Site Scripting
Online News Portal System 1.0 – ‘Title’ Stored Cross Site Scripting
Local Service Search Engine Management System 1.0 – SQLi Authentication Bypass
WonderCMS 3.1.3 – ‘Menu’ Persistent Cross-Site Scripting
Under Construction Page with CPanel 1.0 – SQL injection
IDT PC Audio 1.0.6433.0 – ‘STacSV’ Unquoted Service Path
Pharmacy Store Management System 1.0 – ‘id’ SQL Injection
aSc TimeTables 2021.6.2 – Denial of Service (PoC)
Artworks Gallery 1.0 – Arbitrary File Upload RCE (Authenticated) via Edit Profile
Expense Management System – ‘description’ Stored Cross Site Scripting