Vimarsana
Biggest News Aggregation in the World

Page 21 - Software Link News Today : Breaking News, Live Updates & Top Stories | Vimarsana

Stay updated with breaking news from Software Link. Get real-time updates on events, politics, business, and more. Visit us for reliable news and exclusive interviews.

Top News In Software Link Today - Breaking & Trending Today

ChurchCRM 4.5.3 SQL Injection - KizzMyAnthia.com - Vimarsana News

ChurchCRM 4.5.3 SQL Injection - KizzMyAnthia.com

# Exploit Title: ChurchCRM 4.5.3 - Authenticated SQL Injection# Date: 27-04-2023# Exploit Author: Iyaad Luqman K# Software Link: https://github.com/ChurchCRM/CRM/releases# Vendor Homepage: http://churchcrm.io/# Version: 4.5.3# Tested on: Windows, Linux# CVE: CVE-2023-24685ChurchCRM v4.5.3 and below was discovered to contain a SQL injection vulnerability via the Event parameter under the Event Attendance reports module.- After Logging in, go

Online Book Store 1.0 SQL Injection - KizzMyAnthia.com - Vimarsana News

Online Book Store 1.0 SQL Injection - KizzMyAnthia.com

# Exploit Title: Online Book Store 1.0 - (process.php) SQL injection# Google Dork: 4/26/2023# Exploit Author: Or4nG.M4n# Vendor Homepage: https://projectworlds.in/free-projects/php-projects/online-book-store-project-in-php/# Software Link: https://github.com/projectworlds32/online-book-store-project-in-php/archive/master.zip# Version: 1.0* STEPS *1- go to any book and add it to cart2- after that u will redirected to /cart.php3- click on Go To Checkout /checkout.php4- inject your'e injecton code in any

Piwigo 13.6.0 Cross Site Scripting - KizzMyAnthia.com - Vimarsana News

Piwigo 13.6.0 Cross Site Scripting - KizzMyAnthia.com

Exploit Title: Piwigo 13.6.0 - Stored Cross-Site Scripting (XSS)Application: PiwigoVersion: 13.6.0 Bugs: Stored XSSTechnology: PHPVendor URL: https://piwigo.org/Software Link: https://piwigo.org/get-piwigoDate of found: 18.04.2023Author: Mirabbas AğalarovTested on: Linux 2. Technical Details & POC========================================steps: 1.After uploading the image, we write payload: Host: localhostContent-Length: 159Cache-Control: max-age=0sec-ch-ua: "Not?A_Brand";v="8", "Chromium";v="108"sec-ch-ua-mobile: ?0sec-ch-ua-platform: "Linux&quo...

ProjeQtOr Project Management System 10.3.2 Shell Upload - Vimarsana News

ProjeQtOr Project Management System 10.3.2 Shell Upload

Exploit Title: ProjeQtOr Project Management System 10.3.2 -Remote Code Execution (RCE)Application: ProjeQtOr Project Management SystemVersion: 10.3.2Bugs: Remote Code Execution (RCE) (Authenticated) via file uploadTechnology: PHPVendor URL: https://www.projeqtor.orgSoftware Link: https://sourceforge.net/projects/projectorria/files/projeqtorV10.3.2.zip/downloadDate of found: 19.04.2023Author: Mirabbas AğalarovTested on: Linux 2. Technical Details & POC========================================Possible including php file with phar extension while uploading image. Rce is triggered when we

Bang Resto 1.0 SQL Injection - KizzMyAnthia.com - Vimarsana News

Bang Resto 1.0 SQL Injection - KizzMyAnthia.com

# Exploit Title: Bang Resto v1.0 - 'Multiple' SQL Injection# Date: 2023-04-02# Exploit Author: Rahad Chowdhury# Vendor Homepage:https://www.hockeycomputindo.com/2021/05/restaurant-pos-source-code-free.html# Software Link:https://github.com/mesinkasir/bangresto/archive/refs/heads/main.zip# Version: 1.0# Tested on: Windows 10, PHP 7.4.29, Apache 2.4.53# CVE: CVE-2023-29849*Affected Parameters:*btnMenuItemID, itemID, itemPrice, menuID, staffID, itemPrice, itemID[],itemqty[], btnMenuItemID*Steps to Reproduce:*1. First login your staff panel.2. then go to "order" menu and Select...