0xDeku
10 exploits
Active since Nov 2021
Sourcecodester Online Event Booking and Reservation System - Stored Cross-Site Scripting via Holiday Reason Parameter
Sourcecodester Online Event Booking and Reservation System - SQL Injection in Event Management Views
Engineers Online Portal - Unrestricted File Upload via Teacher Avatar Change
Engineers Online Portal - SQL Injection via Announcements Student ID Parameter
Sourcecodester Engineers Online Portal - Auth Bypass
Engineers Online Portal - SQL Injection via id Parameter in my_classmates.php
Sourcecodester Online Event Booking and Reservation System - HTML Injection via msg Parameter
Sourcecodester Engineers Online Portal - SQL Injection via Quiz Question ID Parameter
CVSS 8.8
Engineers Online Portal - Stored Cross-Site Scripting via Quiz Title and Description Parameters
CVSS 5.4
Engineers Online Portal - SQL Injection via Login Form
CVSS 9.8