Kislay Kumar

6 exploits Active since Jan 2021
CVE-2020-36954 EXPLOITDB MEDIUM text WRITEUP
Xeroneit Library Management System 3.1 - XSS
Xeroneit Library Management System 3.1 contains a stored cross-site scripting vulnerability in the Book Category feature that allows administrators to inject malicious scripts. Attackers can insert a payload in the Category Name field to execute arbitrary JavaScript code when the page is loaded.
CVSS 6.4
CVE-2020-36011 EXPLOITDB MEDIUM text WRITEUP
Qdocs Smart Hospital - XSS
A cross-site scripting (XSS) issue in Add Patient Form in QDOCS Smart Hospital Management System 3.1 allows a remote attacker to inject arbitrary code via the Name, Guardian Name, Email, Address, Remarks, or Any Known Allergies field.
CVSS 4.8
CVE-2020-35263 EXPLOITDB CRITICAL text WRITEUP
Egavilanmedia User Registration And L... - SQL Injection
EgavilanMedia User Registration & Login System 1.0 is affected by SQL injection to the admin panel, which may allow arbitrary code execution.
CVSS 9.8
EIP-2026-111635 EXPLOITDB text WORKING POC
Queue Management System 4.0.0 - _Add User_ Stored XSS
EIP-2026-109623 EXPLOITDB text WRITEUP
Multi Branch School Management System 3.5 - _Create Branch_ Stored XSS
EIP-2026-109111 EXPLOITDB text WRITEUP
Library Management System 3.0 - _Add Category_ Stored XSS