Steffen Rösemann
20 exploits
Active since Dec 2004
phpBugTracker 0.9.1 - SQL Injection
phpBugTracker < 1.6.0 - Authenticated Cross-Site Request Forgery via Multiple Parameters
CVSS 8.0
phpBugTracker < 1.6.0 - Cross-Site Request Forgery
CVSS 8.8
Phpbugtracker < 1.6.0 - XSS
CVSS 4.8
ferretCMS 1.0.4-alpha - Authenticated Remote Code Execution via Unrestricted File Upload
ferretCMS 1.0.4-alpha - SQL Injection
ferretCMS 1.0.4-alpha - Cross-Site Scripting via Action Parameter or Username
Absolut Engine 1.73 - Authenticated Cross-Site Scripting via Title Parameter
Saurus CMS 4.7.0 - Cross-Site Scripting via Search Parameter
ZeusCart 4 - Authenticated SQL Injection via Admin Backend Parameters
ZeusCart 4 - Cross-Site Scripting via schltr or brand Parameter
ZeusCart < 4.0 - Cross-Site Scripting via Search Parameter
ZeusCart 4 - Exposure of Sensitive Information via phpinfo Function
Sefrengo < 1.6.0 - Authenticated SQL Injection via idcat or idclient Parameter
Piwigo 2.7.3 - Multiple Vulnerabilities
Pragyan CMS 3.0 - SQL Injection via User Parameter
Phpbugtracker < 1.6.0 - SQL Injection
CVSS 9.8
ferretCMS 1.0.4-alpha - Cross-Site Request Forgery in admin.php
CMS Papoo Light 6.0.0 Rev 4701 - Cross-Site Scripting via Guestbook Author or Account Username
Absolut Engine 1.73 - SQL Injection