Findings
In the listbox below, you will see the 4 findings for this scan request.
(Vulnerability) Unnamed ThreatID 400005
PHP shell function 'shell_exec' is used. There is no sign of a vulnerability.
app.php:18(Message) Scan Request Complete
Finished scanning, we have 3 findings.
SQL Queries
(Interesting) SQL query and a user controlled variable are concaternated. That does not sound good but is no direct indication of a vulnerability as the variable could be filtered or checked.
app.php:8(Research) Os Network Web Upload Php
Uploaded files are handled with 'move_uploaded_file'. Could be a interesting start for research.
app.php:22