Gary Allan
18 exploits
Active since Dec 2018
phpipam < 1.5.2 - SQL Injection
CVSS 7.2
phpipam 1.6 - Cross-Site Scripting via Import Load Data
CVSS 6.1
phpipam 1.6 - Cross-Site Scripting via Import Load Data
CVSS 6.1
phpipam 1.3.2 - SQL Injection via NAT Item Add Submit
CVSS 9.8
phpipam < 1.3.2 - Stored Cross-Site Scripting via Theme Parameter in User Settings
CVSS 5.4
phpipam < 1.3.2 - Cross-Site Scripting in subnet-scan-telnet.php
CVSS 6.1
phpipam < 1.4.6 - Incorrect Authorization
CVSS 6.5
phpipam < 1.4.6 - Improper Authorization
CVSS 6.5
phpipam < 1.4.6 - Incorrect Privilege Assignment
CVSS 6.5
phpipam < 1.4.7 - Stored Cross-Site Scripting via Spreadsheet File Upload in Import Data Feature
CVSS 4.8
phpipam < 1.5.0 - Cross-Site Scripting in Import Preview Handler
CVSS 2.4
phpipam < 1.5.1 - Reflected Cross-Site Scripting
CVSS 6.1
phpipam < 1.5.1 - Reflected Cross-Site Scripting
CVSS 6.1
phpipam < 1.5.1 - Missing Authorization
CVSS 5.3
phpipam < 1.5.2 - Stored Cross-Site Scripting
CVSS 4.8
phpipam < 1.5.2 - LDAP Injection via dname Parameter
CVSS 7.5
phpipam < 1.7.0 - Unauthenticated Brute Force Attack via X-Forwarded-For Header
CVSS 5.9
phpipam < 1.7.0 - Cleartext Transmission of Sensitive Information via Cookie Secure Attribute
CVSS 7.5