Mayank Deshmukh
19 exploits
Active since Apr 2019
Casdoor < 1.13.1 - SQL Injection via Query API Parameters
Keycloak < 13.0.0 - Server-Side Request Forgery via OIDC request_uri Parameter
Casdoor < 1.13.1 - SQL Injection via Query API Parameters
Casdoor < 1.13.1 - SQL Injection via Query API Parameters
Tiki < 21.11 - Reflected Cross-Site Scripting via tiki-admin_system.php zipPath Parameter
CVSS 5.4
Tiki < 27.1 - Cross-Site Scripting via tiki-editpage.php Page Parameter
CVSS 5.4
CutePHP CuteNews 2.1.2 - Code Injection
CVSS 8.8
Eclipse Jetty 9.4.37-9.4.42, 10.0.1-10.0.5, 11.0.1-11.0.5 - Directory Traversal & Security Bypass via Encoded URI
CVSS 5.3
Tiki < 27.1 - Cross-Site Scripting via tiki-editpage.php Page Parameter
CVSS 5.4
Tiki < 21.11 - Reflected Cross-Site Scripting via tiki-admin_system.php zipPath Parameter
CVSS 5.4
Eclipse Jetty - Information Disclosure
CVSS 5.3
CWP login.php Unauthenticated RCE
CVSS 9.8
Bludit 3.9.2 - Authentication Bruteforce Mitigation Bypass via X-Forwarded-For Header
CVSS 9.8
Atlassian Jira Server/Data Center Path Traversal via /WEB-INF/web.xml
CVSS 5.3
Casdoor < 1.13.1 - SQL Injection via Query API Parameters
CVSS 7.5
Eclipse Jetty - Information Disclosure
CVSS 5.3
Keycloak < 13.0.0 - Server-Side Request Forgery via OIDC request_uri Parameter
CVSS 5.3
Eclipse Jetty 9.4.37-9.4.42, 10.0.1-10.0.5, 11.0.1-11.0.5 - Directory Traversal & Security Bypass via Encoded URI
CVSS 5.3
Atlassian Confluence Server <7.4.10, >7.5.0-7.12.2 - Info Disclosure
CVSS 5.3