menghaining

2 exploits Active since Mar 2024
CVE-2024-29401 WRITEUP CRITICAL WRITEUP
xzs-mysql 3.8 - Insufficient Session Expiration
xzs-mysql 3.8 is vulnerable to Insufficient Session Expiration, which allows attackers to use the session of a deleted admin to do anything.
CVSS 9.8
CVE-2024-31759 WRITEUP HIGH WRITEUP
PublicCMS <4.0.202302.e - Privilege Escalation
An issue in sanluan PublicCMS v.4.0.202302.e allows an attacker to escalate privileges via the change password function.
CVSS 8.8