Dominik Schilling
10 exploits
Active since May 2016
WordPress < 4.3.1 - Authenticated Access Bypass via XMLRPC Post Editing
CVSS 4.3
WordPress < 4.7.1 - Cross-Site Scripting via Plugin Name or Version Header
CVSS 6.1
WordPress < 4.7.1 - Cross-Site Scripting via Theme Directory Name
CVSS 6.1
WordPress < 4.7.1 - Exposure of Sensitive Information via Press This Taxonomy Assignment
CVSS 5.3
WordPress < 4.7.2 - SQL Injection via Crafted Post Type Name
CVSS 9.8
WordPress < 4.7.3 - Authenticated Cross-Site Scripting via YouTube URL Embeds
CVSS 5.4
WordPress < 4.7.5 - Cross-Site Scripting in Customizer
CVSS 6.1
WordPress < 4.9.5 - Open Redirect via Login Page HTTPS Redirection
CVSS 6.1
WordPress < 4.9.5 - Open Redirect via Localhost URL Validation
CVSS 6.1
WordPress < 4.9.5 - Cross-Site Scripting via Generator Tag
CVSS 6.1