reewardius
6 exploits
Active since Jul 2022
Bitrix24 through 25.100.300 - Remote Code Execution
CVSS 6.3
1C-Bitrix through 25.100.500 - Remote Code Execution
CVSS 9.8
Control Web Panel /admin/index.php Unauthenticated RCE
CVSS 7.3
osTicket audit_log < 2022-04-21 - Stored Cross-Site Scripting in auditlogs.tmpl.php
CVSS 6.1
osTicket-plugins audit_log < 2022-04-21 - SQL Injection via order Parameter in getOrder Function
CVSS 9.8
osTicket-plugins - Storage-FS < 2022-05-19 - Stored Cross-Site Scripting via SVG File Upload
CVSS 5.4