François SORIN

3 exploits Active since Aug 2003
CVE-2003-0481 EXPLOITDB text WRITEUP
TUTOS 1.1 - XSS
Multiple cross-site scripting (XSS) vulnerabilities in TUTOS 1.1 allow remote attackers to insert arbitrary web script, as demonstrated using the msg parameter to file_select.php.
CVE-2003-0482 EXPLOITDB text WRITEUP
TUTOS 1.1 - RCE
TUTOS 1.1 allows remote attackers to execute arbitrary code by uploading the code using file_new.php, then directly accessing the uploaded code via a request to the repository containing the code.
EIP-2026-112815 EXPLOITDB text SUSPICIOUS
Tutos 1.1.20031017 - 'note_overview.php?id' SQL Injection