Michal Čihař
74 exploits
Active since Oct 2012
phpMyAdmin <4.0.10.16, <4.4.15.7, <4.6.3 - XSS
CVSS 6.1
phpMyAdmin 4.4.x < 4.4.15.5 and 4.5.x < 4.5.5.1 - Authenticated Cross-Site Scripting
CVSS 5.4
phpMyAdmin <4.0.10.16, <4.4.15.7, <4.6.3 - XSS
CVSS 6.1
phpMyAdmin <4.0.10.13, <4.4.15.3, <4.5.4 - Info Disclosure
CVSS 5.3
phpMyAdmin 4.0.x < 4.0.10.15, 4.4.x < 4.4.15.5, 4.5.x < 4.5.5.1 - Cross-Site Scripting
CVSS 6.1
phpMyAdmin <4.0.10.16, <4.4.15.7, <4.6.3 - XSS
CVSS 6.1
wlc: print_html outputs API data without HTML escaping, enabling stored XSS
CVSS 5.1
phpMyAdmin <4.0.5 - CSRF
phpMyAdmin <4.0.10.13, <4.4.15.3, <4.5.4 - Info Disclosure
CVSS 5.3
phpMyAdmin 4.4.x-4.6.3 - XSS
CVSS 6.1
phpMyAdmin <4.0.10.16, <4.4.15.7, <4.6.3 - Info Disclosure
CVSS 5.3
phpMyAdmin <4.0.10.16, <4.4.15.7, <4.6.3 - XSS
CVSS 6.1
Weblate is Vulnerable to Authenticated SSRF via Project Backup Import bypassing validate_repo_url
CVSS 8.1
phpMyAdmin <4.0.10.13, <4.4.15.3, <4.5.4 - Info Disclosure
CVSS 5.3
phpMyAdmin <4.0.10.13, <4.4.15.3, <4.5.4 - XSS
CVSS 5.4
phpMyAdmin 4.0.x < 4.0.10.15, 4.4.x < 4.4.15.5, 4.5.x < 4.5.5.1 - Cross-Site Scripting
CVSS 6.1
Opensuse < 4.6.1 - Information Disclosure
CVSS 5.3
phpMyAdmin 4.4.x-4.6.3 - XSS
CVSS 6.1
phpMyAdmin <4.0.10.16, <4.4.15.7, <4.6.3 - Info Disclosure
CVSS 5.3
phpMyAdmin <4.0.10.16, <4.4.15.7, <4.6.3 - XSS
CVSS 6.1
Weblate's API Token Not Invalidated on Password Change
CVSS 4.2
Weblate is Vulnerable to Authenticated SSRF via Project Backup Import bypassing validate_repo_url
CVSS 8.1
Weblate: Private Translation Enumeration via Screenshot API
CVSS 4.3
Weblate is vulnerable to XSS via crafted Markdown
CVSS 4.3
phpMyAdmin 3.5.x < 3.5.3 - Cross-Site Scripting via Unencrypted JavaScript Fetch