Mustafa ALTINKAYNAK

4 exploits Active since Jun 2014
CVE-2014-3975 EXPLOITDB text WORKING POC
AuraCMS 3.0 - Path Traversal
Absolute path traversal vulnerability in filemanager.php in AuraCMS 3.0 allows remote attackers to list a directory via a full pathname in the viewdir parameter.
CVE-2014-3962 EXPLOITDB text WRITEUP
Videos Tube 1.0 - SQL Injection
Multiple SQL injection vulnerabilities in Videos Tube 1.0 allow remote attackers to execute arbitrary SQL commands via the url parameter to (1) videocat.php or (2) single.php.
CVE-2014-3974 EXPLOITDB text WORKING POC
AuraCMS <3.0 - XSS
Cross-site scripting (XSS) vulnerability in filemanager.php in AuraCMS 3.0 and earlier allows remote attackers to inject arbitrary web script or HTML via the viewdir parameter.
CVE-2014-4162 EXPLOITDB text WORKING POC
Zyxel P-660HW-T1 v3 - CSRF
Multiple cross-site request forgery (CSRF) vulnerabilities in the Zyxel P-660HW-T1 (v3) wireless router allow remote attackers to hijack the authentication of administrators for requests that change the (1) wifi password or (2) SSID via a request to Forms/WLAN_General_1.