Thorsten Rinne
100 exploits
Active since Apr 2017
phpmyfaq < 3.1.8 - Unrestricted Upload of File with Dangerous Type
CVSS 9.8
phpmyfaq < 3.1.18 - DOM-based Cross-Site Scripting
CVSS 6.1
phpmyfaq < 3.1.18 - Stored Cross-Site Scripting
CVSS 5.4
phpmyfaq < 3.1.18 - Stored Cross-Site Scripting
CVSS 5.4
phpmyfaq < 3.1.18 - DOM-based Cross-Site Scripting
CVSS 6.1
phpmyfaq < 3.2.2 - Cross-Site Scripting
CVSS 6.1
phpmyfaq < 3.2.1 - Stored Cross-Site Scripting
CVSS 4.8
phpmyfaq < 3.2.2 - Insufficient Session Expiration
CVSS 9.8
thorsten/phpmyfaq <3.2.1 - Info Disclosure
CVSS 5.7
phpmyfaq < 3.2.2 - Stored Cross-Site Scripting
CVSS 5.4
phpmyfaq < 3.1.17 - Stored Cross-Site Scripting
CVSS 5.4
phpmyfaq < 3.1.17 - Stored Cross-Site Scripting
CVSS 5.4
phpMyFAQ < 3.2.5 - Improper Access Control via User Removal Request Spoofing
CVSS 5.7
phpMyFAQ < 3.2.5 - Unauthenticated Email Spam via FAQ Sharing Functionality
CVSS 6.5
phpmyfaq 3.2.5 - Authenticated SQL Injection via News Author Email Field
CVSS 8.8
phpMyFAQ >=3.2.5 <3.2.6 - Stored Cross-Site Scripting via Email Field
CVSS 5.5
phpmyfaq >=3.2.5 <3.2.6 - Unrestricted Upload of File with Dangerous Type via Category Image Upload
CVSS 7.2
phpmyfaq 3.2.5 - Stored Cross-Site Scripting via News Parameter
CVSS 4.3
phpMyFAQ >=3.2.5 <3.2.6 - Authenticated SQL Injection via Email Address Parameter
CVSS 8.8
phpmyfaq 3.2.5 - Unauthenticated Stored Cross-Site Scripting via ContentLink Parameter
CVSS 4.7
phpMyFAQ 3.2.5 - Authenticated Path Traversal via Attachment Upload
CVSS 3.8
phpMyFAQ < 4.0.0 - Sensitive Information Exposure via Database Connection Error
CVSS 8.6
phpMyFAQ < 4.0.13 - Improper Access Control via Duplicate Email Registration
CVSS 8.1
phpMyFAQ 4.0.14-4.0.15 - Stored Cross-Site Scripting via User Display Name
CVSS 5.4
phpMyFAQ < 4.0.16 - Unauthenticated Sensitive Information Exposure via Backup API
CVSS 7.5