BouSalman
5 exploits
Active since Dec 2018
Spotweb 1.4.9 - Time-based SQL Injection via Query String
CVSS 9.8
Fork CMS < 5.9.3 - Arbitrary File Upload via Themes Panel Zip File
CVSS 8.8
Bludit 3.0.0 - Unrestricted Upload of File with Dangerous Type in Pages Editor
CVSS 8.8
Monica 2.19.1 - Stored Cross-Site Scripting via Last Name Field
CVSS 5.4
Spotweb 1.4.9 - 'search' SQL Injection