Javier Carabantes

2 exploits Active since Aug 2022
CVE-2024-54820 NOMISEC CRITICAL WORKING POC
XOne Web Monitor <1.0.4.9 - SQL Injection
XOne Web Monitor v02.10.2024.530 framework 1.0.4.9 was discovered to contain a SQL injection vulnerability in the login page. This vulnerability allows attackers to extract all usernames and passwords via a crafted input.
2 stars
CVSS 9.8
CVE-2022-36198 WRITEUP CRITICAL WRITEUP
Bus Pass Management System 1.0 - SQL Injection
Multiple SQL injections detected in Bus Pass Management System 1.0 via buspassms/admin/view-enquiry.php, buspassms/admin/pass-bwdates-reports-details.php, buspassms/admin/changeimage.php, buspassms/admin/search-pass.php, buspassms/admin/edit-category-detail.php, and buspassms/admin/edit-pass-detail.php
CVSS 9.8