Ashiyane Digital Security Team
78 exploits
Active since Jun 2005
Nodcms Cross Site Request Forgery via admin endpoints
CVSS 4.3
IObit Advanced SystemCare 10.0.2 Unquoted Service Path Privilege Escalation
CVSS 7.8
Redaxo CMS 5.2 Cross-Site Request Forgery via users endpoint
CVSS 5.3
Snews CMS 1.7 Unrestricted File Upload via snews_files
CVSS 9.8
Snews CMS 1.7 Cross-Site Request Forgery via changeup
CVSS 5.3
NO-IP DUC 4.1.1 - Unquoted Service Path Privilege Escalation
EasyPHP Devserver 16.1.1 - Insecure File Permissions Privilege Escalation
Ziteman CMS - Login Page SQL Injection
WordPress Plugin Zingiri Web Shop - 'path' Arbitrary File Upload
WordPress Theme Antioch - 'download.php' Arbitrary File Download
WordPress Plugin Tagged Albums - 'id' SQL Injection
Spider Video Player 2.1 - SQL Injection via Theme Parameter
Spiffy XSPF Player plugin 0.1 - SQL Injection via playlist_id Parameter
WordPress Plugin Zarzadzonie Kontem - 'ajaxfilemanager.php' Script Arbitrary File Upload
WordPress Theme Urban City - 'download.php' Arbitrary File Download
WordPress Theme Madebymilk - 'id' SQL Injection
WordPress Theme Epic - 'download.php' Arbitrary File Download
WordPress Theme Nest - 'codigo' SQL Injection
WordPress Theme Authentic - 'download.php' Arbitrary File Download
WordPress Plugin wpSS - 'ss_handler.php' SQL Injection
WordPress Theme Dailyedition-mouss - 'id' SQL Injection
WordPress Theme Toolbox - 'mls' SQL Injection
FormCraft < 1.3.7 - SQL Injection via id Parameter
WordPress Plugin FLV Player - 'id' SQL Injection
WordPress Plugin Ads Box - 'count' SQL Injection