Ishan Saha

2 exploits Active since Oct 2021
CVE-2021-43484 EXPLOITDB CRITICAL python WORKING POC
Simple Client Management System 1.0 - RCE
A Remote Code Execution (RCE) vulnerability exists in Simple Client Management System 1.0 in create.php due to the failure to validate the extension of the file being sent in a request.
CVSS 9.8
CVE-2021-37221 EXPLOITDB HIGH text WORKING POC
Customer Relationship Management System - Unrestricted File Upload
A file upload vulnerability exists in Sourcecodester Customer Relationship Management System 1.0 via the account update option & customer create option, which could let a remote malicious user upload an arbitrary php file. .
CVSS 8.8