
CVE-2024-57175
Stored XSS proof-of-concept for PHPGURUKUL Online Birth Certificate System v1.0, demonstrating authenticated JavaScript injection via profile name…

Stored XSS proof-of-concept for PHPGURUKUL Online Birth Certificate System v1.0, demonstrating authenticated JavaScript injection via profile name…

Reflected XSS exploit for Online Exam Mastering System 1.0 with PoC payloads, impact analysis, and mitigation guidance for security testing and…

CVE-2025-25965 is a newly discovered CSRF vulnerability in the Phpgurukul Online Banquet Booking System v1.2, allowing remote attackers to change a…

Remote Code Exection (RCE) vulnerability exists in Sourcecodester Online Food Ordering System 2.0 via a maliciously crafted PHP file that bypasses…

PoC Exploit for CVE-2025-7753 — Time-Based SQL Injection in Online Appointment Booking System 1.0 via the username parameter. Exploit written in C…

Proof-of-concept exploit for CVE-2024-55099, demonstrating SQL injection in the Online Nurse Hiring System v1.0 via unsanitized username parameter,…

Sql injection in itsourcecode Online Tour and Travel Management System 1.0.

Exploit blind SQL Injection in (Online Learning Management System)

Exploit SQL injection in projectworlds Online Admissions System v1.0

Potential malicious code execution via CHM hijacking (CVE-2019-9896)

WooCommerce Designer Pro <= 1.9.28 - Unauthenticated Arbitrary File Read

PoC and Writeup for CVE-2023-46404.

Proof-of-concept exploit for CVE-2023-4542, a remote code execution vulnerability in D-Link DAR-8000-10, demonstrating SQL injection to write a…

CVE-2026-5513: Bookly <= 27.2 Stored XSS via Cookie (Unauthenticated)


Proof-of-concept exploit for unauthenticated SQL injection in online-shopping-system via the proId parameter, enabling data extraction from MySQL…


Docker-based XSS exploit for CVE-2020-7934 targeting Liferay portal. Demonstrates stored cross-site scripting via user profile fields to steal admin…