afine-com
14 exploits
Active since Mar 2022
CKEditor4 < 4.24.0-lts - Cross-Site Scripting via Preview Feature
elFinder < 2.1.62 - Path Traversal via LocalVolumeDriver Connector
Swagger UI < 4.1.3 - Server-Side Request Forgery via OpenAPI Definition URL
Amasty Blog Pro < 2.10.5 - Stored Cross-Site Scripting via Short Content and Full Content Fields
Amasty Blog Pro < 2.10.5 - Cross-Site Scripting via Preview Functionality
Amasty Blog 2.10.3 - Cross-Site Scripting via Leave Comment Functionality
Amasty Blog Pro 2.10.3-2.10.4 - Stored Cross-Site Scripting via Duplicate Post Function
AdmirorFrames < 5.0 - Cross-Site Scripting via afGdStream.php Image Data
CVSS 6.1
AdmirorFrames <5.0 - Info Disclosure
CVSS 7.5
AdmirorFrames < 5.0 - Server-Side Request Forgery via afGdStream.php
CVSS 7.5
IBM i Access Client Solutions 1.1.2 through 1.1.4 and 1.1.4.3 through 1.1.9.3 - Information Disclosure
CVSS 7.4
html2pdf < 5.2.8 - Cross-Site Scripting via forms.php
CVSS 6.1
IBM i Access Client Solutions <1.1.2, 1.1.4.3-1.1.9.3 - Info Disclo...
CVSS 6.2
IBM i Access Client Solutions 1.1.2-1.1.4 and 1.1.4.3-1.1.9.3 - Remote Code Execution via Improper Authority Checks
CVSS 7.4