g3ck0dr1v3r

2 exploits Active since Jan 2021
CVE-2021-30044 EXPLOITDB MEDIUM python WORKING POC
Remote Clinic 2.0 - Stored Cross-Site Scripting via Staff Registration First or Last Name Field
Cross Site Scripting (XSS) in Remote Clinic v2.0 via the First Name or Last Name field on staff/register.php.
CVSS 5.4
CVE-2021-3318 EXPLOITDB MEDIUM python WORKING POC
dzzoffice < 2.02.1 - Cross-Site Scripting via editorid Parameter
attach/ajax.php in DzzOffice through 2.02.1 allows XSS via the editorid parameter.
CVSS 6.1