Daniel Monzón (stark0de)
12 exploits
Active since Feb 2020
Appointment Booking Calendar < 1.3.35 - Stored Cross-Site Scripting in Calendar Name Input
CVSS 4.8
Vodafone H500s <3.5.10 - Info Disclosure
Lotus Core CMS 1.0.1 - Path Traversal
CVSS 8.8
SEOPanel 4.6.0 - Authenticated Remote Code Execution via Import Website File Upload
CVSS 8.8
Online Course Registration 2.0 - SQL Injection
CVSS 9.8
Search Meter < 2.13.2 - Remote Code Execution via CSV Injection in Search Export
CVSS 9.8
WordPress Plugin Media Library Assistant 2.81 - Local File Inclusion
Appointment Booking Calendar < 1.3.35 - CSV Injection via Booking Form Fields
CVSS 7.8
rConfig 3.9.5 - Remote Code Execution (Unauthenticated)
Online Healthcare Patient Record Management System 1.0 - Authentication Bypass
Open edX Ironwood 2.5 - Unauthenticated Remote Code Execution via Custom Python Evaluated Code
CVSS 8.8
D-Link DSR-250N < 3.17b - Unauthenticated Denial of Service via upgradeStatusReboot.cgi
CVSS 5.5