
CVE-2024-55060
Proof-of-concept exploit for a stored XSS vulnerability in Rafed CMS v1.44, demonstrating injection via the index.php parameter.
exploitationpenetration-testingvulnerability-analysis+2
1

Proof-of-concept exploit for a stored XSS vulnerability in Rafed CMS v1.44, demonstrating injection via the index.php parameter.

I couldn’t find a PoC for CVE-2023-30253, so I developed an effective one

In Dolibarr 17.0.0 with the CMS Website plugin (core) enabled, an authenticated attacker can obtain remote command execution via php code injection…


Exploit of College Website v1.0 CMS - SQL injection