Thinkland Security Team
25 exploits
Active since Apr 2021
PHPGurukul Beauty Parlour Mgmt <1.0 - SQL Injection
CVSS 6.5
GeoDirectory Business Directory <2.1.1.3 - XSS
CVSS 5.4
PHPGurukul Beauty Parlour Mgt v1.0 - XSS
CVSS 4.8
Hospital Management System <4.0 - SQL Injection
CVSS 8.8
Hospital Management System <4.0 - XSS
CVSS 5.4
Simple Job Board <= 2.9.4 - Authenticated Stored Cross-Site Scripting in Privacy Policy Label
CVSS 5.5
JobBoardWP <= 1.0.7 - Authenticated Stored Cross-Site Scripting in Metabox Parameters
CVSS 5.5
Job Board Vanila < 1.0 - Authenticated Stored Cross-Site Scripting via psjb_exp_in and psjb_curr_in Parameters
CVSS 5.5
WpGenius Job Listing <= 1.0.2 - Authenticated Stored Cross-Site Scripting via Admin Options Parameters
CVSS 5.5
Job Manager <= 0.7.25 - Authenticated Stored Cross-Site Scripting via admin-jobs.php Parameters
CVSS 5.5
job-portal <= 0.0.1 - Authenticated Stored Cross-Site Scripting via jobs_function.php Parameters
CVSS 5.5
MyBB Cross-Poster < 1.0 - Authenticated Stored Cross-Site Scripting via MyBBXPSettings.php Parameters
CVSS 5.5
Notification < 7.2.4 - Stored Cross-Site Scripting via Settings Parameters
CVSS 4.8
MPL-Publisher <= 1.30.2 - Authenticated Stored Cross-Site Scripting via PublisherController Parameters
CVSS 5.5
kjm_admin_notices <= 2.0.1 - Authenticated Stored Cross-Site Scripting via Admin Parameters
CVSS 5.5
HAL WordPress Plugin <= 2.1.1 - Authenticated Stored Cross-Site Scripting via wp-hal.php Parameters
CVSS 5.5
Google Maps Easy < 1.9.33 - Authenticated Stored Cross-Site Scripting via Marker Group Parameters
CVSS 4.8
LearnPress <= 4.1.3.1 - Authenticated Stored Cross-Site Scripting via Custom Profile Parameter
CVSS 5.5
Author Bio Box < 3.3.1 - Authenticated Stored Cross-Site Scripting via Admin Parameters
CVSS 5.5
Easy Digital Downloads <= 2.11.2 - Reflected Cross-Site Scripting via Start and End Date Parameters
CVSS 4.8
Indeed Job Importer <= 1.0.5 - Authenticated Stored Cross-Site Scripting via indeed-job-importer.php Parameters
CVSS 5.5
Content Staging < 2.0.1 - Authenticated Stored Cross-Site Scripting via Settings Template Parameters
CVSS 5.5
Leaky Paywall <= 4.16.5 - Authenticated Stored Cross-Site Scripting via class.php
CVSS 5.5
PHPGurukul Beauty Parlour Mgmt <1.0 - SQL Injection
CVSS 6.5
Wordpress Plugin Catch Themes Demo Import RCE
CVSS 7.2