OpenXP-Research
9 exploits
Active since Mar 2022
Qualitor v8.24 - Remote Code Execution via gridValoresPopHidden Parameter
Qualitor 8.24 viewValidacao.php - Server-Side Request Forgery
CVSS 7.5
Qualitor < 8.20 - Remote Code Execution via processVariavel.php gridValoresPopHidden Parameter
CVSS 9.8
Academy LMS < 5.10 - Cross-Site Request Forgery via Page Creation
CVSS 4.8
Academy LMS < 5.10 - Authenticated Cross-Site Request Forgery via Discount Coupon Creation
CVSS 4.3
Academy LMS < 5.10 - Cross-Site Request Forgery to Add Administrator
CVSS 8.8
Academy-LMS 4.3 - Stored Cross-Site Scripting in SEO Panel
CVSS 4.8
All-in-One WP Migration <7.63 - XSS
CVSS 4.7
WebRun 3.6.0.42 - SQL Injection via P_0 Parameter
CVSS 9.8