Natan Maia Morette
17 exploits
Active since Dec 2024
Scada-LTS < 2.7.8.1 - Stored Cross-Site Scripting via pointHierarchySLTS Title Parameter
CVSS 2.4
WeGIA 3.2.0 - Stored Cross-Site Scripting via Gateway Payment Configuration Parameters
CVSS 6.1
WeGIA 3.2.0 - Stored Cross-Site Scripting via id or name Parameter in meio_pagamento.php
CVSS 6.1
WeGIA 3.2.0 - Cross-Site Request Forgery
CVSS 8.8
WeGIA 3.2.0 - Missing Authorization for Password Change
CVSS 7.5
WeGIA < 3.2.0 - SQL Injection via id_funcionario Parameter
CVSS 9.8
WeGIA < 3.2.0 - SQL Injection via query_geracao_auto.php Query Parameter
CVSS 9.8
WeGIA v3.2.0 - SQL Injection via nextPage Parameter
CVSS 9.8
Scada-LTS < 2.7.8.1 - Cross-Site Scripting via Username Parameter in users.shtm
CVSS 3.5
Scada-LTS < 2.7.8.1 - Cross-Site Scripting via Username Parameter in usersProfiles.shtm
CVSS 3.5
Portabilis i-Diario 1.5.0 - Cross-Site Scripting via Anexo Parameter in justificativas-de-falta Endpoint
CVSS 3.5
Portabilis i-Diario 1.5.0 - Cross-Site Scripting via filter[by_description] Parameter
CVSS 3.5
Portabilis i-Educar 2.10 - Cross-Site Scripting via ref_cod_matricula Parameter
CVSS 4.3
Portabilis i-educar < 2.9.0 - Authorization Bypass via /module/Api/Diario Endpoint
CVSS 4.3
Portabilis i-Educar < 2.9.0 - Improper Authorization via Pessoa API Endpoint
CVSS 4.3
Scada-LTS < 2.7.8.1 - Stored Cross-Site Scripting via pointHierarchySLTS Title Parameter
CVSS 2.4
Portabilis i-Educar < 2.10.0 - Cross-Site Scripting via File Parameter in User Data Page
CVSS 3.5