Abdullah Khawaja

9 exploits Active since Oct 2021
CVE-2021-41646 NOMISEC CRITICAL WORKING POC
Online Reviewer System - Unrestricted File Upload
Remote Code Execution (RCE) vulnerability exists in Sourcecodester Online Reviewer System 1.0 by uploading a maliciously crafted PHP file that bypasses the image upload filters..
1 stars
CVSS 9.8
CVE-2021-41643 NOMISEC CRITICAL WORKING POC
Church Management System - Unrestricted File Upload
Remote Code Execution (RCE) vulnerability exists in Sourcecodester Church Management System 1.0 via the image upload field.
CVSS 9.8
CVE-2021-41644 NOMISEC CRITICAL WORKING POC
Online Food Ordering System - Unrestricted File Upload
Remote Code Exection (RCE) vulnerability exists in Sourcecodester Online Food Ordering System 2.0 via a maliciously crafted PHP file that bypasses the image upload filters.
CVSS 9.8
CVE-2022-48077 WRITEUP HIGH WRITEUP
Genymotion Desktop - Uncontrolled Search Path
Genymotion Desktop v3.3.2 was discovered to contain a DLL hijacking vulnerability that allows attackers to escalate privileges and execute arbitrary code via a crafted DLL.
CVSS 7.8
CVE-2021-41646 EXPLOITDB CRITICAL python WORKING POC
Online Reviewer System - Unrestricted File Upload
Remote Code Execution (RCE) vulnerability exists in Sourcecodester Online Reviewer System 1.0 by uploading a maliciously crafted PHP file that bypasses the image upload filters..
CVSS 9.8
CVE-2021-41645 EXPLOITDB HIGH text WORKING POC
Oretnom23 Budget And Expense Tracker System - Unrestricted File Upload
Remote Code Execution (RCE) vulnerability exists in Sourcecodester Budget and Expense Tracker System 1.0 that allows a remote malicious user to inject arbitrary code via the image upload field. .
CVSS 8.8
CVE-2021-41644 EXPLOITDB CRITICAL python WORKING POC
Online Food Ordering System - Unrestricted File Upload
Remote Code Exection (RCE) vulnerability exists in Sourcecodester Online Food Ordering System 2.0 via a maliciously crafted PHP file that bypasses the image upload filters.
CVSS 9.8
CVE-2021-41643 EXPLOITDB CRITICAL python WORKING POC
Church Management System - Unrestricted File Upload
Remote Code Execution (RCE) vulnerability exists in Sourcecodester Church Management System 1.0 via the image upload field.
CVSS 9.8
EIP-2026-112062 EXPLOITDB text WORKING POC
Simple Attendance System 1.0 - Authenticated bypass