Ihsan Sencan

964 exploits Active since Sep 2017
EIP-2026-107048 EXPLOITDB text WRITEUP
FAQ Script 3.1.3 - 'category_id' SQL Injection
EIP-2026-107045 EXPLOITDB text WORKING POC
Fantastic Blog CMS 1.0 - 'id' SQL Injection
CVE-2017-15987 EXPLOITDB CRITICAL text WORKING POC
Fake Magazine Cover Script - SQL Injection
Fake Magazine Cover Script allows SQL Injection via the rate.php value parameter or the content.php id parameter.
CVSS 9.8
CVE-2017-17615 EXPLOITDB HIGH text WORKING POC
Facebook Clone Script - SQL Injection
Facebook Clone Script 1.0 has SQL Injection via the friend-profile.php id parameter.
CVSS 8.8
EIP-2026-107025 EXPLOITDB text WORKING POC
Facebook And Google Reviews System For Businesses 1.1 - SQL Injection
EIP-2026-107024 EXPLOITDB text WORKING POC
Facebook And Google Reviews System For Businesses 1.1 - Remote Code Execution
EIP-2026-107006 EXPLOITDB text WORKING POC
EzBan 5.3 - 'id' SQL Injection
EIP-2026-106959 EXPLOITDB text WORKING POC
Expense Management 1.0 - Arbitrary File Upload
EIP-2026-106955 EXPLOITDB text WORKING POC
EXAMPLO - SQL Injection
CVE-2018-6576 EXPLOITDB CRITICAL text WRITEUP
Ezcode Event Manager - SQL Injection
SQL Injection exists in Event Manager 1.0 via the event.php id parameter or the page.php slug parameter.
CVSS 9.8
EIP-2026-106933 EXPLOITDB text WORKING POC
Event Locations 1.0.1 - 'id' SQL Injection
CVE-2017-17616 EXPLOITDB CRITICAL text WORKING POC
Event Calendar Category Script - SQL Injection
Event Search Script 1.0 has SQL Injection via the /event-list city parameter.
CVSS 9.8
EIP-2026-106929 EXPLOITDB text WORKING POC
Event Calendar 3.7.4 - 'id' SQL Injection
EIP-2026-106907 EXPLOITDB text WORKING POC
Escort Marketplace 1.0 - SQL Injection
EIP-2026-106894 EXPLOITDB text WRITEUP
Envato Clone Script - SQL Injection
EIP-2026-106892 EXPLOITDB text WRITEUP
Entrepreneur Matrimonial Script - Authentication Bypass
CVE-2017-17596 EXPLOITDB CRITICAL text WORKING POC
Entrepreneur Job Portal Script - SQL Injection
Entrepreneur Job Portal Script 2.0.6 has SQL Injection via the jobsearch_all.php rid1 parameter.
CVSS 9.8
CVE-2017-17648 EXPLOITDB CRITICAL text WORKING POC
Entrepreneur Dating Script - SQL Injection
Entrepreneur Dating Script 2.0.1 has SQL Injection via the search_result.php marital, gender, country, or profileid parameter.
CVSS 9.8
EIP-2026-106889 EXPLOITDB text WRITEUP
Entrepreneur Bus Booking Script 3.03 - 'hid_Busid' SQL Injection
CVE-2017-17604 EXPLOITDB CRITICAL text WORKING POC
Entrepreneur Bus Booking Script - SQL Injection
Entrepreneur Bus Booking Script 3.0.4 has SQL Injection via the booker_details.php sourcebus parameter.
CVSS 9.8
EIP-2026-106888 EXPLOITDB text WORKING POC
Entrepreneur B2B Script 2.0.4 - 'id' SQL Injection
EIP-2026-106885 EXPLOITDB text WORKING POC
Enterprise Edition Payment Processor Script 3.7 - SQL Injection
EIP-2026-106875 EXPLOITDB text WORKING POC
eNdonesia Portal 8.7 - 'artid' SQL Injection
EIP-2026-106822 EXPLOITDB text WORKING POC
Electricks eCommerce 1.0 - 'prodid' SQL Injection
EIP-2026-106775 EXPLOITDB text WRITEUP
Education Website Script - Authentication Bypass