Manuel Garcia Cardenas
9 exploits
Active since Dec 2014
Zoph < 0.9.1 - Authenticated SQL Injection via _action or location_id Parameter
WebsiteBaker 2.8.3 - SQL Injection via page_id Parameter
Zoph < 0.9.1 - Cross-Site Scripting via photographer_id or _crumb Parameter
Wechat Broadcast < 1.2.0 - Path Traversal via Image.php URL Parameter
CVSS 9.8
Localize My Post 1.0 - Path Traversal via AJAX Include File Parameter
CVSS 7.5
WebsiteBaker 2.8.3 - Cross-Site Scripting via QUERY_STRING or section_id Parameter
phpMyAdmin 4.9.0.1 - Cross-Site Request Forgery in Setup Page
CVSS 6.5
Composr CMS 10.0.30 - Persistent Cross-Site Scripting
Kodi < 17.6 - Stored Cross-Site Scripting via Playlist
CVSS 6.1