Yllxx03
19 exploits
Active since Oct 2024
python_food 1.0 - Unauthenticated Sensitive Information Exposure via User Info API
CVSS 7.5
yshopmall V1.0 - Arbitrary File Upload and Remote Code Execution via JSP File Parsing
CVSS 9.8
python_book V1.0 - Arbitrary File Upload via User Avatar Upload Function
CVSS 9.8
python_book 1.0 - Incorrect Authorization via ID Parameter
CVSS 7.5
java_shop 1.0 - Unauthenticated Incorrect Access Control via ID Parameter
CVSS 6.5
java_shop 1.0 - Unrestricted Upload of File with Dangerous Type via Avatar Function
CVSS 4.3
lilishop <= 4.2.4 - Incorrect Access Control via Coupon Collection Packet Replay
CVSS 7.5
emlog pro <=2.3.18 - Stored Cross-Site Scripting in Published Articles
CVSS 5.4
sparkshop < 1.1.6 - Unauthenticated Arbitrary Product Quantity Modification
CVSS 7.5
dingfanzu_cms V1.0 - Cross-Site Request Forgery via doAdminAction.php addPro Parameter
CVSS 6.1
python_food 1.0 - Unauthenticated Sensitive Information Exposure via User Info API
CVSS 7.5
yshopmall V1.0 - Arbitrary File Upload and Remote Code Execution via JSP File Parsing
CVSS 9.8
python_book V1.0 - Arbitrary File Upload via User Avatar Upload Function
CVSS 9.8
python_book 1.0 - Incorrect Authorization via ID Parameter
CVSS 7.5
java_shop 1.0 - Unauthenticated Incorrect Access Control via ID Parameter
CVSS 6.5
java_shop 1.0 - Unrestricted Upload of File with Dangerous Type via Avatar Function
CVSS 4.3
crmeb <= 5.4.0 - Incorrect Access Control via Coupon Collection Packet Replay
CVSS 7.5
lilishop <= 4.2.4 - Incorrect Access Control via Coupon Collection Packet Replay
CVSS 7.5
emlog pro <=2.3.18 - Stored Cross-Site Scripting in Published Articles
CVSS 5.4