Alon Leviev (0xDeku)
20 exploits
Active since Nov 2021
Sourcecodester Online Event Booking and Reservation System - SQL Injection in Event Management Views
Sourcecodester Online Event Booking and Reservation System - Stored Cross-Site Scripting via Holiday Reason Parameter
Engineers Online Portal - SQL Injection via Announcements Student ID Parameter
Engineers Online Portal - Unrestricted File Upload via Teacher Avatar Change
Engineers Online Portal - SQL Injection via id Parameter in my_classmates.php
Sourcecodester Online Event Booking and Reservation System - HTML Injection via msg Parameter
Sourcecodester Engineers Online Portal - Auth Bypass
Engineers Online Portal - SQL Injection via Login Form
CVSS 9.8
Engineers Online Portal - Stored Cross-Site Scripting via Quiz Title and Description Parameters
CVSS 5.4
Sourcecodester Engineers Online Portal - SQL Injection via Quiz Question ID Parameter
CVSS 8.8
Sourcecodester Engineers Online Portal - Auth Bypass
CVSS 7.5
Sourcecodester Online Event Booking and Reservation System - Stored Cross-Site Scripting via Holiday Reason Parameter
CVSS 5.4
Sourcecodester Online Event Booking and Reservation System - HTML Injection via msg Parameter
CVSS 4.3
Engineers Online Portal - Stored Cross-Site Scripting via Quiz Title and Description Parameters
CVSS 5.4
Engineers Online Portal - SQL Injection via Login Form
CVSS 9.8
Sourcecodester Engineers Online Portal - SQL Injection via Quiz Question ID Parameter
CVSS 8.8
Sourcecodester Online Event Booking and Reservation System - SQL Injection in Event Management Views
CVSS 9.8
Engineers Online Portal - SQL Injection via id Parameter in my_classmates.php
CVSS 9.8
Engineers Online Portal - Unrestricted File Upload via Teacher Avatar Change
CVSS 9.8
Engineers Online Portal - SQL Injection via Announcements Student ID Parameter
CVSS 9.8