Blakduk
12 exploits
Active since Jan 2023
Reprise License Manager < 17.0 - Server-Side Request Forgery via License Activation actserver Parameter
CVSS 6.5
Reprise License Manager < 17.0 - HTTP Header Injection via Password Parameter in View License Result
CVSS 6.5
Reprise License Manager < 16.0 - Path Traversal and Arbitrary File Write via Diagnostics Function
CVSS 8.1
mojoportal 2.7.0.0 - Reflected Cross-Site Scripting via FileDialog.aspx Parameters
CVSS 6.1
mojoportal v2.7 - Authenticated XML External Entity Injection
CVSS 8.8
ChurchCRM < 4.5.3 - SQL Injection via EID Parameter at GetText.php
CVSS 7.2
ChurchCRM < 4.5.3 - SQL Injection via Event Attendance Reports Event Parameter
CVSS 7.2
ChurchCRM < 4.5.3 - Remote Code Execution via CSV Import
CVSS 4.8
mojoportal 2.7.0.0 - Stored Cross-Site Scripting via Company Info Settings txtCompanyName Parameter
CVSS 5.4
mojoportal 2.7.0.0 - Unauthenticated User Registration Bypass
CVSS 5.3
Mojoportal <2.7.0.0 - Info Disclosure
CVSS 4.3
ChurchCRM < 4.5.3 - Stored Cross-Site Scripting via Family Registration Endpoint
CVSS 5.4