fuzzlove
9 exploits
Active since May 2019
FUDForum 3.0.9 - Stored Cross-Site Scripting and Remote Code Execution via User-Agent Header
elabftw 1.8.5 - Authenticated Arbitrary File Upload via EntityController
Cisco ASA 9.6-9.6.4.42 & FTD 6.2.3-6.2.3.16 Unauthenticated Path Traversal
ATutor 2.2.1-2.2.4 - Path Traversal and Arbitrary File Upload via Language Import ZIP Archive
ATutor <= 2.2.4 - Authenticated Arbitrary File Upload via Backup ZIP Archive
iPadOS < 17.7.1 - Arbitrary File Write via Symlink Handling
rpc.py < 0.6.0 - Unauthenticated Remote Code Execution via Pickle Deserialization
SOPlanning 1.52.00 - Authenticated SQL Injection via projets.php statut[] Parameter
CVSS 6.3
SOPlanning 1.52.00 - Cross-Site Scripting via groupe_id Parameter
CVSS 5.4