havysec

2 exploits Active since Aug 2018
CVE-2018-14873 WRITEUP MEDIUM WRITEUP
Rincewind 0.1 - Cross-Site Scripting via p=account Request to index.php
An issue was discovered in Rincewind 0.1. There is a cross-site scripting (XSS) vulnerability involving a p=account request to index.php and another file named commonPages.php.
CVSS 5.4
EIP-2026-106101 EXPLOITDB text WRITEUP
Complain Management System - Hard-Coded Credentials / Blind SQL injection