nu11secur1ty
118 exploits
Active since Dec 2015
Hospital Management System v4.0 - SQL Injection
CVSS 9.8
Fundraising Script 1.0 - SQLi
Ecommerse v1.0 - Cross-Site Scripting (XSS)
Employee Performance Evaluation System v1.0 - File Inclusion and RCE
Drupal 10.1.2 - web-cache-poisoning-External-service-interaction
ChurchCRM v4.5.3-121fcc1 - SQL Injection
Concrete5 CME v9.1.3 - Xpath injection
Computer Laboratory Management System v1.0 - Multiple-SQLi
ClicShopping v3.402 - Cross-Site Scripting (XSS)
ChurchCRM 4.4.5 - SQL Injection via PersonID Parameter
CVSS 7.2
bgERP v22.31 (Orlovets) - Cookie Session vulnerability & Cross-Site Scripting (XSS)
ChiKoi v1.0 - SQL Injection
Canteen-Management v1.0 - XSS-Reflected
Canteen-Management v1.0 - SQL Injection
Bludit 4.0.0-rc-2 - Account takeover
Best Student Result Management System v1.0 - Multiple SQLi
Beauty-salon v1.0 - Remote Code Execution (RCE)
atrocore 1.5.25 User interaction - Unauthenticated File upload - RCE
Bangresto 1.0 - SQL Injection
b2evolution <7.2.2-stable - SQL Injection
CVSS 8.8
Air Cargo Management System v1.0 - SQLi
Equipment Rental Script-1.0 - SQLi
101 News 1.0 - Multiple-SQLi
ImageMagick 7.1.0-49 - Denial of Service via PNG Image Parsing
CVSS 6.5
htmly 2.8.0 - Stored Cross-Site Scripting via Blog Title Tagline or Description
CVSS 5.4