Mateo Hanžek
10 exploits
Active since Nov 2021
GLPI Barcode Plugin 2.0-2.6.0 - Path Traversal via front/send.php
CVSS 9.1
OpenCATS 0.9.6 - Reflected Cross-Site Scripting via joborderID Parameter
CVSS 6.1
OpenCATS 0.9.6 - Reflected Cross-Site Scripting via entriesPerPage Parameter
CVSS 6.1
OpenCATS 0.9.6 - Reflected Cross-Site Scripting via Callback Component
CVSS 6.1
OpenCATS 0.9.6 - Reflected Cross-Site Scripting via indexFile Component
CVSS 6.1
OpenCATS 0.9.6 - Reflected Cross-Site Scripting via Check Email Function
CVSS 6.1
OpenCATS 0.9.6 - Remote Code Execution via getDataGridPager AJAX Deserialization
CVSS 9.8
OpenCATS 0.9.6 - SQL Injection via Tag Update tag_id Variable
CVSS 6.5
OpenCATS 0.9.6 - SQL Injection via entriesPerPage Variable
CVSS 6.5
OpenCATS 0.9.6 - SQL Injection via Import viewerrors importID Parameter
CVSS 6.5