sahiloj
18 exploits
Active since May 2023
Issabel PBX 4.0.0-6 - Cross-Site Request Forgery via New User Creation
Microworld Technologies eScan <14.0.1400.2281 - XSS
Issabel PBX 4.0.0-6 - Sensitive Information Exposure via Modules Directory
MicroWorld eScan Management Console <14.0.1400.2281 - SQL Injection
lunary < 1.9.25 - Stored Cross-Site Scripting via NEXT_PUBLIC_CUSTOM_SCRIPT Environment Variable
Issabel PBX 4.0.0-6 - Stored Cross-Site Scripting via Virtual Fax Name and Caller ID Name Parameters
Issabel PBX 4 - Stored Cross-Site Scripting via Billing Rates Name or Prefix Fields
Issabel PBX 4.0.0-6 - Stored Cross-Site Scripting via Group and Description Parameters
Issabel PBX 4.0.0-6 - Cross-Site Request Forgery via Delete User Function
Issabel PBX 4.0.0-6 - Cross-Site Request Forgery via User Grouplist Deletion
Issabel PBX 4.0.0-6 - Cross-Site Request Forgery via Delete Virtual Fax Function
Microworld Technologies eScan mgmt console 14.0.1400.2281 - XSS
eScan Management Console 14.0.1400.2281 - Cleartext Transmission of Sensitive Information via GetUserCurrentPwd Function
eScan Management Console 14.0.1400.2281 - Cross-Site Scripting via Dtltyp and ListName Parameters
eScan Management Console 14.0.1400.2281 - Cross-Site Scripting via GrpPath Parameter
eScan Management Console 14.0.1400.2281 - Stored Cross-Site Scripting via Description Parameter
Microworld Technologies eScan <14.0.1400.2281 - XSS
eScan Management Console 14.0.1400.2281 - Cross-Site Scripting via delete_file Parameter