Khurshid Alam

8 exploits Active since Feb 2023
CVE-2023-0995 WRITEUP MEDIUM WRITEUP
Business Management System < 2.0.1 - XSS
Cross-site Scripting (XSS) - Stored in GitHub repository unilogies/bumsys prior to v2.0.1.
CVSS 5.4
CVE-2023-1361 WRITEUP MEDIUM WRITEUP
Bumsys < 2.0.2 - SQL Injection
SQL Injection in GitHub repository unilogies/bumsys prior to v2.0.2.
CVSS 6.5
CVE-2023-1362 WRITEUP MEDIUM WRITEUP
unilogies/bumsys <2.0.2 - Info Disclosure
Improper Restriction of Rendered UI Layers or Frames in GitHub repository unilogies/bumsys prior to v2.0.2.
CVSS 6.1
CVE-2023-2551 WRITEUP HIGH WRITEUP
unilogies/bumsys <2.1.1 - RCE
PHP Remote File Inclusion in GitHub repository unilogies/bumsys prior to 2.1.1.
CVSS 8.8
CVE-2023-2552 WRITEUP HIGH WRITEUP
Bumsys < 2.1.1 - CSRF
Cross-Site Request Forgery (CSRF) in GitHub repository unilogies/bumsys prior to 2.1.1.
CVSS 8.8
CVE-2023-2553 WRITEUP MEDIUM WRITEUP
Bumsys < 2.2.0 - XSS
Cross-site Scripting (XSS) - Stored in GitHub repository unilogies/bumsys prior to 2.2.0.
CVSS 5.4
CVE-2023-2554 WRITEUP HIGH WRITEUP
unilogies/bumsys <2.2.0 - Path Traversal
External Control of File Name or Path in GitHub repository unilogies/bumsys prior to 2.2.0.
CVSS 7.2
CVE-2023-2832 WRITEUP HIGH WRITEUP
unilogies/bumsys <2.2.0 - SQL Injection
SQL Injection in GitHub repository unilogies/bumsys prior to 2.2.0.
CVSS 7.2