SunCSR (Sun* Cyber Security Research)
8 exploits
Active since May 2020
Orchard Core RC1 - Stored Cross-Site Scripting via Blog Post MarkdownBodyPart.Source Parameter
CVSS 6.4
Symphony CMS 3.0.0 - Stored Cross-Site Scripting via Event Publish Article Body Field
CVSS 5.4
idangero chop_slider - Blind SQL Injection via id GET Parameter
CVSS 9.8
WonderCMS 3.1.3 - 'uploadFile' Stored Cross-Site Scripting
WordPress Plugin Form Maker 5.4.1 - 's' SQL Injection (Authenticated)
Responsive FileManager 9.13.4 - 'path' Path Traversal
php-fusion 9.03.50 - Cross-Site Scripting via FAQ or Shoutbox Admin Panel go Parameter
CVSS 5.4
LeptonCMS 4.5.0 - Stored Cross-Site Scripting via Event Handler Injection
CVSS 6.1