YU-HSIANG HUANG
15 exploits
Active since Dec 2018
OpenSSL 1.0.2-1.0.2zc, 1.1.1-1.1.1m, 3.0.0-3.0.1 - Denial of Service via BN_mod_sqrt Infinite Loop
TestLink 1.9.20 - SQL Injection via execNavigator.php
CVSS 7.2
TestLink 1.9.20 - Stored Cross-Site Scripting via inventoryView.php
CVSS 5.4
TestLink 1.9.20 - Broken Access Control in Attachment Download Endpoint
CVSS 7.2
TestLink 1.9.20 - Cross-Site Request Forgery via planView.php
CVSS 8.8
php-proxy < 5.1.0 - Cross-Site Scripting via URL Field in index.php
CVSS 6.1
webERP 4.15 - Unauthenticated Arbitrary File Write via TemplateName Directory Traversal
CVSS 4.9
MyWebSQL 3.7 - Cross-Site Request Forgery via Database Deletion URI
CVSS 5.7
MyWebSQL 3.7 - Remote Code Execution via Backup Database Function
CVSS 9.8
DbNinja 3.2.7 - Session Fixation via data.php sessid Parameter
CVSS 9.6
DbNinja 3.2.7 - Cross-Site Scripting via Task Parameter
CVSS 6.1
TestLink 1.9.20 - SQL Injection via execNavigator.php
CVSS 7.2
TestLink 1.9.20 - Stored Cross-Site Scripting via inventoryView.php
CVSS 5.4
TestLink 1.9.20 - Broken Access Control in Attachment Download Endpoint
CVSS 7.2
TestLink 1.9.20 - Cross-Site Request Forgery via planView.php
CVSS 8.8