Milad karimi
36 exploits
Active since Apr 2022
Wordpress Plugin PicUploader 1.0 - Remote File Upload
Membership For WooCommerce <2.1.7 - Unauthenticated RCE
CVSS 9.8
WordPress < 6.2 - Unauthenticated Directory Traversal via wp_lang Parameter
CVSS 5.4
Virtual Airlines Manager 2.6.2 - 'multiple' SQL Injection
Tatsu Wordpress Plugin RCE
CVSS 8.1
WordPress LiteSpeed Cache - Unauthenticated Privilege Escalation to Admin
CVSS 9.8
Joomla! Component com_newsfeeds 1.0 - 'feedid' SQL Injection
Drupal 10.3.0-10.3.5 - Full Path Disclosure via Missing hash_salt File
CVSS 5.3
WonderCMS Remote Code Execution
CVSS 6.1
Firefox < 126 and ESR < 115.11 - Arbitrary JavaScript Execution in PDF.js via Missing Type Check
CVSS 8.8
OpenSSH - DoS
CVSS 8.1