Gym Management System 1.0 – ‘id’ SQL Injection
# Exploit Title: Gym Management System 1.0 - 'id' SQL Injection
php 相关平台内容索引。Exploit Database / Exploits for Penetration Testers, Researchers, and Ethical Hackers。聚合漏洞利用代码、PoC 与研究资料。
# Exploit Title: Gym Management System 1.0 - 'id' SQL Injection
#Exploit Title: lot reservation management system 1.0 - Stored Cross Site Scripting
#Exploit Title: lot reservation management system 1.0 - Authentication Bypass
#Exploit Title: Point of Sales 1.0 - SQL Injection
# Exploit Title: User Registration & Login and User Management System 2.1 - SQL Injection
# Exploit Title: Car Rental Management System 1.0 - Arbitrary File Upload
# Exploit Title: Stock Management System 1.0 - SQL Injection
# Exploit Title: Online Library Management System 1.0 - Arbitrary File Upload
# Exploit Title: Tiki Wiki CMS Groupware 21.1 - Authentication Bypass
# Exploit Title: Stock Management System 1.0 - Persistent Cross-Site Scripting (Brand Name)
# Exploit Title: Stock Management System 1.0 - Persistent Cross-Site Scripting (Categories Name)
# Exploit Title: Stock Management System 1.0 - Persistent Cross-Site Scripting (Product Name)
# Exploit Title: GOautodial 4.0 - Authenticated Shell Upload
# Exploit Title: School Faculty Scheduling System 1.0 - Authentication Bypass
# Exploit Title: School Faculty Scheduling System 1.0 - Stored Cross Site Scripting
# Exploit Title: Hrsale 2.0.0 - Local File Inclusion
# Exploit Title: WordPress Rest Google Maps Plugin SQL Injection
# Title: Mobile Shop System v1.0 - SQLi lead to authentication bypass
# Exploit Title: RiteCMS 2.2.1 - Authenticated Remote Code Execution
# Exploit Title: User Registration & Login and User Management System With admin panel 2.1 - Persistent XSS
# Exploit Title: WordPress Plugin HS Brand Logo Slider 2.1 - 'logoupload' File Upload
# Exploit Title: Ultimate Project Manager CRM PRO 2.0.5 - SQLi Credentials Leakage
# Title: Visitor Management System in PHP 1.0 - Authenticated SQL Injection
# Exploit Title: WP Courses < 2.0.29 - Broken Access Controls leading to
# Exploit Title: Loan Management System 1.0 - Multiple Cross Site Scripting (Stored)
# Exploit Title: Textpattern CMS 4.6.2 - Cross-site Request Forgery
# Exploit Title: Typesetter CMS 5.1 - Arbitrary Code Execution
# Exploit Title: PHPGurukul hostel-management-system 2.1 allows XSS via
# Exploit Title: Online Job Portal 1.0 Cross Site Scripting (Stored)
# Exploit Title: Online Discussion Forum Site 1.0 - XSS in Messaging System
# Exploit Title: Online Student's Management System 1.0 - Remote Code Execution (Authenticated)
# Exploit Title: Nagios XI 5.7.3 - 'SNMP Trap Interface' Authenticated SQL Injection
# Exploit Title: Nagios XI 5.7.3 - 'Manage Users' Authenticated SQL Injection
# Exploit Title: Nagios XI 5.7.3 - 'Contact Templates' Persistent Cross-Site Scripting
#Exploit Title: Tourism Management System 1.0 - Arbitrary File Upload
# Exploit Title: CS-Cart authenticated RCE
# Exploit Title: CS-Cart unauthenticated LFI
# Title: Seat Reservation System 1.0 - Unauthenticated SQL Injection
# Exploit Title: Hotel Management System 1.0 - Remote Code Execution (Authenticated)
# Exploit Title: Seat Reservation System 1.0 - Unauthenticated Remote Code Execution
# Exploit Title: Restaurant Reservation System 1.0 - 'date' SQL Injection (Authenticated)
# Exploit Title: Company Visitor Management System (CVMS) 1.0 - Authentication Bypass
#Exploit Title: Alumni Management System 1.0 - Authentication Bypass
#Exploit Title: Employee Management System 1.0 - Authentication Bypass
#Exploit Title: Employee Management System 1.0 - Stored Cross Site Scripting
# Exploit Title: Zoo Management System 1.0 - Authentication Bypass
# Exploit Title: Simple Grocery Store Sales And Inventory System 1.0 - Authentication Bypass
# Exploit Title: rConfig 3.9.5 - Remote Code Execution (Unauthenticated)
# Exploit Title: Vehicle Parking Management System 1.0 - Authentication Bypass
# Exploit Title: berliCRM 1.0.24 - 'src_record' SQL Injection