oufu
9 exploits
Active since Apr 2022
ofcms 1.1.4 - Arbitrary User Information Modification via SysUserController.java user_id Parameter
Ofcms <1.1.4 - Privilege Escalation
OFCMS v1.1.4 - Cross-Site Scripting via /admin/comn/service/update.json
OFCMS 1.1.4 - Stored Cross-Site Scripting via Company Comment Text Box
ofcms 1.14 - Cross-Site Scripting via Title Addition Component
Ofcms <1.1.4 - Privilege Escalation
ofcms 1.1.2 - Remote Code Execution via FileOutputStream in FileUtils
ofcms 1.1.2 - Remote Code Execution via TemplateController Save Method
ofcms 1.1.2 - Cross-Site Scripting via dict_value Parameter