Gal Goldshtein & Viktor Minin

1 exploit Active since Apr 2017
CVE-2016-4337 EXPLOITDB CRITICAL text WORKING POC
Ktools.net Photostore <4.7.5 - SQL Injection
SQL injection vulnerability in the mgr.login.php file in Ktools.net Photostore before 4.7.5 allows remote attackers to execute arbitrary SQL commands via the email parameter in a recover_login action.
CVSS 9.8