Tim Buckingham
14 exploits
Active since Aug 2013
BigTree CMS < 4.0 - Cross-Site Scripting via Module Parameter
BigTree CMS < 4.2.22 - Stored Cross-Site Scripting via Users Management Page
CVSS 5.4
BigTree CMS 4.2.23 - Stored Cross-Site Scripting in Image Upload Area
CVSS 6.1
BigTree CMS <4.0 RC2 - SQL Injection
BigTree CMS < 4.0 - Cross-Site Request Forgery via User Creation
BigTree CMS < 4.0 - Cross-Site Request Forgery via User Update Endpoint
BigTree CMS <4.2.17 - Code Injection
CVSS 9.8
BigTree CMS < 4.2.17 - Cross-Site Request Forgery via Referer Header Query String
CVSS 8.8
BigTree CMS <4.2.18 - Code Injection
CVSS 9.8
BigTree CMS <= 4.2.18 - Cross-Site Request Forgery via Force Parameter
CVSS 8.8
BigTree CMS <4.2.18 - Info Disclosure
CVSS 6.5
BigTree CMS < 4.2.22 - Remote Code Execution via .htaccess File Upload
CVSS 9.8
BigTree CMS < 4.2.24 - Session Fixation via admin.php
CVSS 5.4
BigTree Events Extension - SQL Injection
CVSS 5.5