Akash Chathoth

2 exploits Active since Jul 2020
CVE-2021-27330 EXPLOITDB MEDIUM text WORKING POC
Triconsole Datepicker Calendar <3.77 - XSS
Triconsole Datepicker Calendar <3.77 is affected by cross-site scripting (XSS) in calendar_form.php. Attackers can read authentication cookies that are still active, which can be used to perform further attacks such as reading browser history, directory listings, and file contents.
CVSS 6.1
CVE-2020-15500 EXPLOITDB MEDIUM text WORKING POC
Tileservergl < 3.0.0 - XSS
An issue was discovered in server.js in TileServer GL through 3.0.0. The content of the key GET parameter is reflected unsanitized in an HTTP response for the application's main page, causing reflected XSS.
CVSS 6.1