TranDinhTien

3 exploits Active since Jan 2015
CVE-2014-100003 EXPLOITDB text WRITEUP
Yourmembers - SQL Injection
SQL injection vulnerability in includes/ym-download_functions.include.php in the Code Futures YourMembers plugin for WordPress allows remote attackers to execute arbitrary SQL commands via the ym_download_id parameter to the default URI.
EIP-2026-105243 EXPLOITDB text WORKING POC
ArticleFR CMS 3.0.5 - Arbitrary File Upload
CVE-2015-1364 EXPLOITDB text WORKING POC
Free Reprintables ArticleFR <3.0.5 - SQL Injection
SQL injection vulnerability in the getProfile function in system/profile.functions.php in Free Reprintables ArticleFR 3.0.5 allows remote attackers to execute arbitrary SQL commands via the username parameter to register/.