Bozhidar Slaveykov
42 exploits
Active since Jan 2022
microweber/microweber <1.3 - Info Disclosure
CVSS 7.5
microweber/microweber <1.3 - Code Injection
CVSS 9.8
microweber/microweber <1.3 - Info Disclosure
CVSS 8.8
microweber < 1.2.11 - Unrestricted Upload of File with Dangerous Type
CVSS 4.8
microweber < 1.2.11 and < 1.2.12 - Integer Overflow or Wraparound
CVSS 7.5
microweber < 1.2.12 - Remote Code Execution via Backup/Restore Feature
CVSS 6.7
microweber < 1.2.12 - Stored Cross-Site Scripting via File Upload Filter Bypass
CVSS 4.8
microweber < 1.2.12 - Stored Cross-Site Scripting
CVSS 5.4
microweber < 1.2.11 - Cross-Site Scripting in Dynamic Text Module
CVSS 6.1
microweber < 1.2.12 - Stored Cross-Site Scripting via File Upload Filter Bypass
CVSS 4.8
microweber < 1.2.11 - Stored Cross-Site Scripting in Shop Settings
CVSS 5.4
microweber < 1.2.12 - Denial of Service via Post Title Input Field
CVSS 5.5
microweber < 1.2.12 - Stored Cross-Site Scripting via Unrestricted XML File Upload
CVSS 5.4
microweber < 1.2.12 - Denial of Service via Large Input in First & Last Name Field
CVSS 5.5
microweber < 1.2.12 - Integer Overflow via Long Password
CVSS 7.5
Microweber < 2.0.3 - Stored Cross-Site Scripting via Profile Picture Upload
CVSS 5.4
microweber < 2.0.0 - Improper Access Control
CVSS 4.3