Skip to content

Instantly share code, notes, and snippets.

@Esquirez
Esquirez / Unrestricted File Upload.txt
Last active November 20, 2024 01:49
Unrestricted File Upload on Boat Booking System Web Apps
# Exploit Title: Boat Booking System 1.0 - Unrestricted File Upload
# Date: 19/10/2024
# Exploit Author: Esquire
# Vendor Homepage: https://phpgurukul.com/
# Software Link: https://phpgurukul.com/boat-booking-system-using-php-and-mysql/
# Version: 1.0
# Tested on: Kali Linux
# CVE : CVE-2024-51208
# Description #
@Esquirez
Esquirez / Client_Management_System_1.2_XSS.txt
Last active November 20, 2024 01:49
Cross-Site Scripting (XSS) vulnerabilities in Client Management System Version 1.2
# Exploit Title: Reflected Cross Site Scripting (XSS)
# Date: 19/10/2024
# Exploit Author: Esquire
# Vendor Homepage: https://phpgurukul.com/
# Software Link: https://phpgurukul.com/client-management-system-using-php-mysql/
# Version: 1.2
# Tested on: Kali Linux
# CVE : CVE-2024-51209
# Description #