31Mar
[webapps] Judging Management System v1.0 – Authentication Bypass
Judging Management System v1.0 – Authentication Bypass
Judging Management System v1.0 – Authentication Bypass
Senayan Library Management System v9.0.0 – SQL Injection
Judging Management System v1.0 – Remote Code Execution (RCE)
CoolerMaster MasterPlus 1.8.5 – ‘MPService’ Unquoted Service Path
rconfig 3.9.7 – Sql Injection (Authenticated)
WooCommerce v7.1.0 – Remote Code Execution(RCE)
EQ Enterprise management system v2.2.0 – SQL Injection
SOUND4 IMPACT/FIRST/PULSE/Eco v2.x – Authorization Bypass (IDOR)
Spitfire CMS 1.0.475 – PHP Object Injection