LouisGac
20 exploits
Active since Feb 2018
LimeSurvey < 3.14.4 - Authenticated Remote Code Execution via Malicious ZIP Archive Upload
CVSS 8.8
LimeSurvey Zip Path Traversals
CVSS 9.8
LimeSurvey 3.0.0-beta.3+17110 - CSRF
CVSS 8.8
LimeSurvey < 3.14.4 - Authenticated Remote Code Execution via Malicious ZIP Archive Upload
CVSS 8.8
LimeSurvey <3.14.4 - Path Traversal
CVSS 8.8
LimeSurvey < 3.14.7 - Authenticated Arbitrary File Read via File Upload Question
CVSS 4.9
Limesurvey <3.17.14 - Code Injection
CVSS 8.8
LimeSurvey < 3.17.14 - Clickjacking
CVSS 4.3
Limesurvey <3.17.14 - Info Disclosure
CVSS 5.3
Limesurvey <3.17.14 - Info Disclosure
CVSS 7.5
LimeSurvey < 3.17.14 - Authenticated Stored Cross-Site Scripting via Admin Box Button Titles
CVSS 5.4
Limesurvey <3.17.14 - Info Disclosure
CVSS 5.3
Limesurvey <3.17.14 - Info Disclosure
CVSS 5.3
Limesurvey <3.17.14 - Info Disclosure
CVSS 2.7
LimeSurvey < 3.17.14 - Reflected Cross-Site Scripting via Uploaded File Extensions
CVSS 6.1
Limesurvey <3.17.14 - Info Disclosure
CVSS 2.7
Limesurvey <3.17.14 - Command Injection
CVSS 9.8
Limesurvey <3.17.14 - Info Disclosure
CVSS 7.2
Limesurvey <3.17.14 - Privilege Escalation
CVSS 7.2
LimeSurvey < 3.17.14 - Unauthenticated Cookie Access via Missing HttpOnly Flag
CVSS 7.5