Sahil Ojha
20 exploits
Active since May 2023
Issabel PBX 4.0.0-6 - Cross-Site Request Forgery via New User Creation
Microworld Technologies eScan <14.0.1400.2281 - XSS
Issabel PBX 4.0.0-6 - Sensitive Information Exposure via Modules Directory
MicroWorld eScan Management Console <14.0.1400.2281 - SQL Injection
Issabel PBX 4.0.0-6 - Cross-Site Request Forgery via Delete Virtual Fax Function
Issabel PBX 4 - Stored Cross-Site Scripting via Billing Rates Name or Prefix Fields
Issabel PBX 4.0.0-6 - Stored Cross-Site Scripting via Virtual Fax Name and Caller ID Name Parameters
Issabel PBX 4.0.0-6 - Stored Cross-Site Scripting via Group and Description Parameters
Issabel PBX 4.0.0-6 - Cross-Site Request Forgery via Delete User Function
Issabel PBX 4.0.0-6 - Cross-Site Request Forgery via User Grouplist Deletion
eScan Management Console 14.0.1400.2281 - Stored Cross-Site Scripting via Description Parameter
eScan Management Console 14.0.1400.2281 - Cleartext Transmission of Sensitive Information via GetUserCurrentPwd Function
Microworld Technologies eScan <14.0.1400.2281 - XSS
Microworld Technologies eScan mgmt console 14.0.1400.2281 - XSS
eScan Management Console 14.0.1400.2281 - Cross-Site Scripting via delete_file Parameter
eScan Management Console 14.0.1400.2281 - Cross-Site Scripting via Dtltyp and ListName Parameters
eScan Management Console 14.0.1400.2281 - Cross-Site Scripting via GrpPath Parameter
MicroWorld eScan Management Console <14.0.1400.2281 - SQL Injection
CVSS 7.2
MicroWorld eScan Management Console <14.0.1400.2281 - SQL Injection
CVSS 7.2
Microworld Technologies eScan <14.0.1400.2281 - XSS
CVSS 9.0