Rafal Lykowski
7 exploits
Active since May 2021
Cubecart 6.4.2 - Session Fixation via Session Cookie Injection
CVSS 5.4
icehrm 29.0.0.OS - Stored Cross-Site Scripting via Malicious File Upload
CVSS 5.4
Icehrm - Cross-Site Request Forgery
CVSS 8.8
icehrm 29.0.0.OS - Cross-Site Scripting via /app/ Endpoint Parameters
CVSS 6.1
Ice Hrm 29.0.0 - Info Disclosure
CVSS 6.1
ICE Hrm 29.0.0.OS - 'Account Takeover' Cross-Site Request Forgery (CSRF)
ICE Hrm 29.0.0.OS - 'xml upload' Stored Cross-Site Scripting (XSS)