nu11secur1ty
118 exploits
Active since Dec 2015
Microsoft 365 Apps and Office Long Term Servicing Channel - Use-After-Free
CVSS 8.4
zstore 6.6.0 - Cross-Site Scripting (XSS)
WordPress Plugin Visual Slide Box Builder 3.2.9 - SQLi
Vaidya-Mitra 1.0 - Multiple SQLi
SLIMSV 9.5.2 - Cross-Site Scripting (XSS)
Statamic 4.7.0 - File-Inclusion
SEO Panel 4.8.0 - SQL Injection via order_col Parameter
CVSS 7.2
Remote Clinic 2.0 - Stored Cross-Site Scripting via Staff Registration First or Last Name Field
CVSS 5.4
rukovoditel 3.2.1 - Cross-Site Scripting (XSS)
SCRMS 2023-05-27 1.0 - Multiple SQL Injection
Senayan Library Management System v9.5.0 - SQL Injection
Serendipity 2.4.0 - File Inclusion RCE
Shuttle-Booking-Software v1.0 - Multiple-SQLi
pimCore v5.4.18-skeleton - Sensitive Cookie with Improper SameSite Attribute
Purchase Order Management-1.0 - Local File Inclusion
Piwigo < 11.4.0 - SQL Injection via Language Parameter
CVSS 7.2
PHP Shopping Cart 4.2 - Multiple-SQLi
Online ID Generator 1.0 - Remote Code Execution (RCE)
Online-Pizza-Ordering -1.0 - Remote Code Execution (RCE)
Online Thesis Archiving System v1.0 - Multiple-SQLi
Lavalite v9.0.0 - XSRF-TOKEN cookie File path traversal
Limo Booking Software v1.0 - CORS
KodExplorer v4.51.03 - Pwned-Admin File-Inclusion - Remote Code Execution (RCE)
HMS v1.0 - SQL Injection via patientlogin.php
CVSS 9.8
Human Resource Management System v1.0 - Multiple SQLi