Ihsan Sencan

985 exploits Active since Sep 2017
EIP-2026-107470 EXPLOITDB text WORKING POC
Gr8 Gallery Script - SQL Injection
EIP-2026-107427 EXPLOITDB text WORKING POC
Global In - SQL Injection
EIP-2026-107426 EXPLOITDB text WORKING POC
Global In - Arbitrary File Upload
EIP-2026-107424 EXPLOITDB text WORKING POC
GLink Word Link Script 1.2.3 - SQL Injection
EIP-2026-107416 EXPLOITDB text WORKING POC
GIU Gallery Image Upload 0.3.1 - 'category' SQL Injection
EIP-2026-107408 EXPLOITDB text WORKING POC
GIF Collection 2.0 - SQL Injection
EIP-2026-107311 EXPLOITDB text WORKING POC
Funny Image and Video Script 2.0.0 - 'id' SQL Injection
EIP-2026-107294 EXPLOITDB text WORKING POC
FTP Made Easy PRO 1.2 - SQL Injection
EIP-2026-107293 EXPLOITDB text WORKING POC
FTP Made Easy PRO 1.2 - Arbitrary File Download
CVE-2017-17577 EXPLOITDB CRITICAL text WORKING POC
FS Trademe Clone 1.0 - SQL Injection via Search Parameter
FS Trademe Clone 1.0 has SQL Injection via the search_item.php search parameter or the general_item_details.php id parameter.
CVSS 9.8
CVE-2017-17589 EXPLOITDB CRITICAL text WORKING POC
FS Thumbtack Clone 1.0 - SQL Injection via Category Parameter
FS Thumbtack Clone 1.0 has SQL Injection via the browse-category.php cat parameter or the browse-scategory.php sc parameter.
CVSS 9.8
CVE-2017-17590 EXPLOITDB CRITICAL text WORKING POC
FS Stackoverflow Clone 1.0 - SQL Injection via Question Keywords Parameter
FS Stackoverflow Clone 1.0 has SQL Injection via the /question keywords parameter.
CVSS 9.8
CVE-2017-17583 EXPLOITDB CRITICAL text WORKING POC
FS Shutterstock Clone 1.0 - SQL Injection via Category Keywords Parameter
FS Shutterstock Clone 1.0 has SQL Injection via the /Category keywords parameter.
CVSS 9.8
CVE-2017-17581 EXPLOITDB CRITICAL text WRITEUP
FS Quibids Clone 1.0 - SQL Injection via itechd.php productid Parameter
FS Quibids Clone 1.0 has SQL Injection via the itechd.php productid parameter.
CVSS 9.8
CVE-2017-17586 EXPLOITDB CRITICAL text WORKING POC
FS Olx Clone 1.0 - SQL Injection via subpage.php scat or message.php pid Parameter
FS Olx Clone 1.0 has SQL Injection via the subpage.php scat parameter or the message.php pid parameter.
CVSS 9.8
CVE-2017-17585 EXPLOITDB CRITICAL text WORKING POC
FS Monster Clone 1.0 - SQL Injection via Employer_Details.php id Parameter
FS Monster Clone 1.0 has SQL Injection via the Employer_Details.php id parameter.
CVSS 9.8
CVE-2017-17584 EXPLOITDB CRITICAL text WORKING POC
FS Makemytrip Clone 1.0 - SQL Injection via fl_orig or fl_dest Parameter
FS Makemytrip Clone 1.0 has SQL Injection via the show-flight-result.php fl_orig or fl_dest parameter.
CVSS 9.8
CVE-2017-17643 EXPLOITDB CRITICAL html WORKING POC
FS Lynda Clone 1.0 - SQL Injection via Keywords Parameter
FS Lynda Clone 1.0 has SQL Injection via the keywords parameter to tutorial/.
CVSS 9.8
CVE-2017-17580 EXPLOITDB CRITICAL text WORKING POC
FS Linkedin Clone 1.0 - SQL Injection via group.php grid parameter
FS Linkedin Clone 1.0 has SQL Injection via the group.php grid parameter, profile.php fid parameter, or company_details.php id parameter.
CVSS 9.8
CVE-2017-17587 EXPLOITDB CRITICAL text WORKING POC
FS Indiamart Clone 1.0 - SQL Injection via catcompany.php token Parameter
FS Indiamart Clone 1.0 has SQL Injection via the catcompany.php token parameter, buyleads-details.php id parameter, or company/index.php c parameter.
CVSS 9.8
CVE-2017-17588 EXPLOITDB CRITICAL text WORKING POC
FS IMDB Clone 1.0 - SQL Injection via movie.php f Parameter
FS IMDB Clone 1.0 has SQL Injection via the movie.php f parameter, tvshow.php s parameter, or show_misc_video.php id parameter.
CVSS 9.8
CVE-2017-17582 EXPLOITDB CRITICAL html WORKING POC
FS Grubhub Clone 1.0 - SQL Injection via Keywords Parameter
FS Grubhub Clone 1.0 has SQL Injection via the /food keywords parameter.
CVSS 9.8
CVE-2017-17575 EXPLOITDB CRITICAL text WORKING POC
FS Groupon Clone 1.0 - SQL Injection via id Parameter
FS Groupon Clone 1.0 has SQL Injection via the item_details.php id parameter or the vendor_details.php id parameter.
CVSS 9.8
CVE-2017-17576 EXPLOITDB CRITICAL text WORKING POC
FS Gigs Script 1.0 - SQL Injection via browse-category.php cat Parameter
FS Gigs Script 1.0 has SQL Injection via the browse-category.php cat parameter, browse-scategory.php sc parameter, or service-provider.php ser parameter.
CVSS 9.8
CVE-2017-17579 EXPLOITDB CRITICAL text WORKING POC
FS Freelancer Clone 1.0 - SQL Injection via Profile Page u Parameter
FS Freelancer Clone 1.0 has SQL Injection via the profile.php u parameter.
CVSS 9.8