jixin zhang
9 exploits
Active since Apr 2024
semcms 4.8 - SQL Injection via Banner.php lgid Parameter
CVSS 6.5
SEMCMS 4.8 - SQL Injection via Banner.php ID Parameter
CVSS 7.5
beescms 4.0 - Remote Code Execution via Arbitrary File Write in admin_template.php
CVSS 9.8
SEMCMS 4.8 - Unauthenticated Arbitrary File Upload via upload.php
CVSS 9.8
BOSSCMS 3.10 - Stored Cross-Site Scripting via Header and Footer Code Fields
CVSS 7.1
Code-Projects Simple School Management System 1.0 - Remote Code Execution via Avatar Upload
CVSS 6.3
SeaCMS 12.9 - Arbitrary File Deletion via admin_template.php
CVSS 9.1
emlog pro2.3 - Cross-Site Request Forgery via twitter.php
CVSS 6.5
Sourcecodester Online Medicine Ordering System 1.0 - Info Disclosure
CVSS 9.1