404team
9 exploits
Active since Sep 2017
tianchoy/blog <2017-09-12 - SQL Injection
CVSS 9.8
Fork CMS 5.0.7 - Stored Cross-Site Scripting via Title Parameter
CVSS 5.4
Radiant CMS 1.1.4 - Stored Cross-Site Scripting via Markdown Input in Page Editor
CVSS 5.4
WBCE CMS 1.3.1 - Authenticated Stored Cross-Site Scripting via Modify Page Screen
CVSS 4.8
Dojo Toolkit 1.13 - Cross-Site Scripting via SVG onload Attribute in dijit.Editor
CVSS 6.1
lyadmin 1.0.0-1.1.x - Stored Cross-Site Scripting via WEB_SITE_TITLE Parameter
CVSS 4.8
qcms 3.0 - Cross-Site Scripting via Webname Parameter
CVSS 5.4
QCMS 3.0 - Cross-Site Scripting via Title Parameter
CVSS 5.4
YUNUCMS 1.0.7 - Stored Cross-Site Scripting via News Center Content Title
CVSS 4.8