Deha Berkin Bir

2 exploits Active since Jan 2021
CVE-2021-3298 EXPLOITDB MEDIUM text WORKING POC
Collabtive 3.1 - XSS
Collabtive 3.1 allows XSS when an authenticated user enters an XSS payload into the address section of the profile edit page, aka the manageuser.php?action=edit address1 parameter.
CVSS 5.4
CVE-2021-44673 EXPLOITDB HIGH text WORKING POC
Croogo - Unrestricted File Upload
A Remote Code Execution (RCE) vulnerability exists in Croogo 3.0.2via admin/file-manager/attachments, which lets a malicoius user upload a web shell script.
CVSS 8.8