Ahmet Ümit BAYRAM
106 exploits
Active since Jun 2019
Simple Job Script - SQL Injection
CVSS 8.2
Doditsolutions Homey BNB (Airbnb Clone Script) >=V4 - SQL Injection & Auth Bypass via Admin Panel
CVSS 8.2
Doditsolutions Homey BNB (Airbnb Clone Script) >=V4 - Unauthenticated SQL Injection via 'val' Parameter in getrecord.php
CVSS 8.2
Doditsolutions Homey BNB (Airbnb Clone Script) >=V4 - Unauthenticated SQL Injection via 'pt' Parameter in getcmsdata.php
CVSS 8.2
Doditsolutions Homey BNB (Airbnb Clone Script) >=V4 - Unauthenticated SQL Injection via catid Parameter
CVSS 8.2
Doditsolutions Homey BNB V4 - Unauthenticated SQL Injection via Admin Edit.php ID Parameter
CVSS 8.2
Doditsolutions Homey BNB (Airbnb Clone Script) >=V4 - Unauthenticated SQL Injection via hosting_id Parameter
CVSS 8.2
Web Ofisi Rent a Car v3 - SQL Injection
CVSS 8.2
Web Ofisi Platinum E-Ticaret v5 - SQL Injection
CVSS 7.5
Web Ofisi Platinum E-Ticaret v5 - SQL Injection
CVSS 7.5
Web-ofisi Emlak V2 - Unauthenticated SQL Injection via GET Parameters
CVSS 9.8
Web Ofisi Firma Rehberi v1 - SQL Injection
CVSS 9.8
Web Ofisi Firma v13 - SQL Injection
CVSS 7.5
Web-ofisi Emlak v2 - Unauthenticated SQL Injection via 'ara' GET Parameter
CVSS 9.1
Web Ofisi E-Ticaret v3 - SQL Injection
CVSS 7.5
Chyrp 2.5.2 - Authenticated Stored Cross-Site Scripting via Post Title
CVSS 5.4
PopojiCMS 2.0.1 - Authenticated Remote Code Execution via Metadata Settings
CVSS 7.2
WBCE CMS 1.6.2 - Authenticated Remote Code Execution via Elfinder File Upload
CVSS 8.8
Serendipity 2.5.0 - Authenticated Remote Code Execution via Media Upload
CVSS 7.2
Dotclear 2.29 - Authenticated Remote Code Execution via Media Upload
CVSS 8.8
CMSimple 5.15 - Authenticated Remote Command Execution via Extensions Configuration
CVSS 8.8
appRain CMF 4.0.5 - Authenticated Remote Code Execution via Filemanager Upload
CVSS 8.8
Typora 1.7.4 - OS Command Injection via PDF Export Preferences
CVSS 9.8
BrainyCP 1.0 - Authenticated Remote Code Execution via Crontab Configuration Injection
CVSS 8.8
PHPJabbers Simple CMS 5.0 - Authenticated Stored Cross-Site Scripting via Section Name Parameter
CVSS 5.4