LoRexxar
9 exploits
Active since Apr 2019
GetSimpleCMS <= 3.3.15 - Cross-Site Scripting via redirect_url Parameter
CVSS 6.1
GetSimpleCMS <= 3.3.15 - Cross-Site Scripting via Timezone Parameter
CVSS 6.1
GetSimpleCMS <= 3.3.15 - Cross-Site Scripting via Setup Parameters
CVSS 6.1
GetSimpleCMS <=3.3.15 - Open Redirect
CVSS 6.1
WebPort <= 1.19.1 - Stored Cross-Site Scripting via Connection Name Parameter
CVSS 5.4
WebPort <= 1.19.1 - Path Traversal in System Settings Tags
CVSS 5.3
WebPort <= 1.19.1 - SQL Injection via New Connection Parameter
CVSS 9.8
web_port < 1.19.1 - Stored Cross-Site Scripting via Description Parameter
CVSS 5.4
Gitea < 1.7.6 and 1.8.x < 1.8-RC3 - Remote Code Execution via Mirror Repository URL Mishandling
CVSS 8.8