School Club Application System version 1.0 suffers from a local file inclusion vulnerability.
17bd0d3cb7cf42228054c107ccf213c2496968d88f3c3985ba246a2b46d81dc6
CSZCMS version 1.3.0 server-side request forgery exploit that leverages local file inclusion to inject a remote shell.
076778f725ea205cb5e59b34e6f765677401b4867ef7f2cfb8b18d6f76bd956a
Bakery Shop Management System version 1.0 suffers from a local file inclusion vulnerability.
aa065ce0f073bd7be709a575b12e3f9e230202ea50104f0f4965d894f8dfebd5
Bakery Shop Management System version 1.0 suffers from a remote blind SQL injection vulnerability that can lead to code execution and authentication bypass.
08f322f4069bb228ea9b346304966dbd422174d2be0be78bbd0fa2d62bdc7936
SAP Information System version 1.0 suffers from a remote shell upload vulnerability.
8833fc7609ecf79845520e8cbc5614ce2053282c54f6d0c0d143de5843fd47c8
This Metasploit module exploits a stack buffer overflow in ALLMediaServer version 1.6. The vulnerability is caused due to a boundary error within the handling of HTTP request.
ec5996d7542530d1bdb600e24891e2ffa7033a9c24319db14a34043fa0b9fec3
Medical Hub Directory Site version 1.0 suffers from a remote blind SQL injection vulnerability. This research was submitted on the same day Packet Storm received similar findings from Saud Alenazi.
485f05f134b2d3819d19208535bf09e2d66a1a262580141bc9a9964b00e68204
Message System version 1.0 suffers from a remote SQL injection vulnerability that can lead to remote code execution.
f726216137cb25cc61ebd0212e3d991811ebe3e9be1b4d7c85db6f64b5cdf1be
Message System version 1.0 suffers from a persistent cross site scripting vulnerability.
4f43e6605407609b1bcdd1c5a3be22479cef1d68b174b04b20a647976713db71
Medical Hub Directory Site version 1.0 suffers from a remote shell upload vulnerability.
200e45a8e60bd48fae8a91e1a1286756e616a4d42f06d24c5eb5531ecfa01d70
Medical Hub Directory Site version 1.0 suffers from a persistent cross site scripting vulnerability.
6dbf01850ff08bd1a2757bdd19e72d23b225be15ae7664524a980f5ce48138e4
Medical Hub Directory Site version 1.0 suffers from a local file inclusion vulnerability.
cd4822cdfbe0799d9da4d14ad9b06e2c18c4f3f1ea3b9ffdc72ec61ba4ca5ad0
Message System version 1.0 suffers from a remote shell upload vulnerability.
8170a03bb95176827a82f89c1b133b2b0b7a218409494453ee6b43400a78b8a6
Message System version 1.0 suffers from a local file inclusion vulnerability.
d75e21e8a6211018162bbb7942d070f7c8405b2ef826d1256c7f25275857c3f6
Fingerprint Attendance version 1.0 allows for an arbitrary password reset of any user.
349d72455afa61c19576dd3b35d2b351fb9e9242b3dc49747aede103705ebd0b
Fingerprint Attendance version 1.0 suffers from a remote shell upload vulnerability.
452eb3ee24c8a991d97de78ec5746488245a9a38b450e35ee82a4b76c1b19e8f
Fingerprint Attendance version 1.0 suffers from a remote SQL injection vulnerability.
ea4634340bfbd35d88bc8b15ecde35139882faa21acf2cecdd186022fc7b480e
Sports Complex Booking System version 1.0 suffers from a local file inclusion vulnerability.
c37a2040e63761f072da506d3c0fb1c63067a2b28d02b4a6291592e84d8a1f0c
Covid-19 Directory on Vaccination System version 1.0 suffers from multiple remote SQL injection vulnerabilities. This research was submitted on the same day Packet Storm received similar findings from Saud Alenazi.
e48dbf027b0b4419ae063d8e8f6f74a5ea759c8c8d62182c1e548e4c07416b36
PDF Generator Web App using TCPDF version 1.0 suffers from a local file inclusion vulnerability.
5013a3785b03aba3a47fb9ee309921cdea926bb4f4bd39443e99fbbae9e3b795
Pay Slip PDF Generator System version 1.0 suffers from a remote shell upload vulnerability.
b44aaa66447eba055a64d40119f175ee294c92412448c6220d2ae51aa757340f
Pay Slip PDF Generator System version suffers from multiple remote SQL injection vulnerabilities that can lead to remote code execution.
7bd5bbbb9ba9db8761efc44c00e3269f6b2f09ba3a85a539795be92ab25e6498
Event Management System version 1.0 suffers from a remote shell upload vulnerability.
d29d273732819885b424497e3b63f2a9de904b0f6dec9747251cdc6b6074a7af
Microfinance Management System version 1.0 suffers from a remote blind SQL injection vulnerability that can be used to escalate privileges and execute code.
4fe771253957bc9da8bf9d6f354bd85b68d2b3caf66a57e6f2dcca042cc36d78
Sports Complex Booking System version 1.0 suffers from a remote blind SQL injection vulnerability that can be used to escalate privileges and execute code.
a8cb19d10a1f7b7c0a2498ba042893133e48b8c8396e0f136ecbf2cac615ec6e