Andrey Stoykov
17 exploits
Active since Jun 2024
MyBB Forums 1.8.26 - Authenticated Stored Cross-Site Scripting via Forum Announcement Title
CVSS 5.4
MyBB Forums 1.8.26 - Authenticated Stored Cross-Site Scripting via Forum Title Field
CVSS 5.4
myBB 1.8.26 - Authenticated Stored Cross-Site Scripting in Template Title Field
CVSS 5.4
4images 1.9 - Authenticated Remote Code Execution via Template Editing and Categories Endpoint
CVSS 7.2
ATutor 2.2.4 - Authenticated SQL Injection via Admin User Deletion ID Parameter
CVSS 7.1
Cyberoam Authentication Client <2.1.2.7 - RCE
CVSS 9.8
Streamripper 2.6 - 'Song Pattern' Buffer Overflow
Streamripper 2.6 - 'Song Pattern' Buffer Overflow
XAMPP 8.2.4 - Unquoted Path
Feng Office 3.11.1.2 - SQL Injection via Workspaces Component
CVSS 6.3
Faculty Evaluation System v1.0 - SQL Injection
CMS Made Simple 2.2.15 - RCE (Authenticated)
BoltWire 6.03 - Local File Inclusion
Availability Booking Calendar v1.0 - Multiple Cross-site scripting (XSS)
4images 1.8 - 'limitnumber' SQL Injection (Authenticated)
Shoplazza 1.1 - Stored Cross-Site Scripting (XSS)
BlogEngine 3.3.8 - 'Content' Stored XSS