
CVE-2026-15282
Instant Appointment <= 1.2 — Unauthenticated Arbitrary File Upload to RCE via add_service_front AJAX | CVSS 9.8
educationexploitationpayload-generation+5

Instant Appointment <= 1.2 — Unauthenticated Arbitrary File Upload to RCE via add_service_front AJAX | CVSS 9.8

an attacker to create and export an address book containing a malicious payload in a field. For example, in the “Other” field of the Instant…

instant-appointment - Arbitrary File upload

Remot3d: is a simple tool created for large pentesters as well as just for the pleasure of defacers to exploit a system or server that runs a PHP…