annyshow
6 exploits
Active since Dec 2022
DuxCMS 2.1 - Stored Cross-Site Scripting via Content, Time, or Copyfrom Parameters
DuxCMS 2.1 - Cross-Site Request Forgery
DuxCMS 2.1 - Cross-Site Scripting in Article Handler
DuxCMS 2.1 - Cross-Site Request Forgery via article/admin/content/add
DuxCMS 2.1 - Path Traversal and Arbitrary File Deletion via AdminBackup Endpoint
DuxCMS 2.1 - Unauthenticated Arbitrary PHP File Upload via AdminUpload Endpoint