Ch35h1r3c47

2 exploits Active since Nov 2022
CVE-2026-23723 NOMISEC HIGH WORKING POC
WeGIA <3.6.2 - SQL Injection
WeGIA is a web manager for charitable institutions. Prior to 3.6.2, an authenticated SQL Injection vulnerability was identified in the Atendido_ocorrenciaControle endpoint via the id_memorando parameter. This flaw allows for full database exfiltration, exposure of sensitive PII, and potential arbitrary file reads in misconfigured environments. This vulnerability is fixed in 3.6.2.
3 stars
CVSS 7.2
CVE-2022-44136 NOMISEC CRITICAL WORKING POC
Zenario CMS <9.3.57186 - RCE
Zenario CMS 9.3.57186 is vulnerable to Remote Code Excution (RCE).
1 stars
CVSS 9.8