Oretnom23
Oretnom23 School Fees Management System: vulnerabilidades y CVE
Oretnom23 School Fees Management System tiene 7 vulnerabilidades publicadas, 0 de ellas en los últimos 12 meses. 0 son críticas y 0 figuran en el catálogo de explotación activa de CISA.
CVE7
Últimos 12 meses0
Críticas0
Explotadas activamente0
Todas las vulnerabilidades en el catálogo →⭐ Seguir esta tecnología
Últimas vulnerabilidades
| CVE | Severidad | EPSS | Explotación activa | Publicada | Descripción |
|---|---|---|---|---|---|
| CVE-2023-49985 | Media (6.5) | 0.47% | — | 21 mar 2024 | A cross-site scripting (XSS) vulnerability in the component /management/class of School Fees Management System v1.0 allows attackers to execute arbitrary web scripts or HTML via a crafted payload injected into the cname… |
| CVE-2023-49984 | Media (6.1) | 0.48% | — | 21 mar 2024 | A cross-site scripting (XSS) vulnerability in the component /management/settings of School Fees Management System v1.0 allows attackers to execute arbitrary web scripts or HTML via a crafted payload injected into the… |
| CVE-2023-49983 | Media (6.8) | 0.57% | — | 21 mar 2024 | A cross-site scripting (XSS) vulnerability in the component /management/class of School Fees Management System v1.0 allows attackers to execute arbitrary web scripts or HTML via a crafted payload injected into the name… |
| CVE-2023-49982 | Alta (8.8) | 0.84% | — | 21 mar 2024 | Broken access control in the component /admin/management/users of School Fees Management System v1.0 allows attackers to escalate privileges and perform Administrative actions, including adding and deleting user… |
| CVE-2023-49981 | Alta (7.5) | 0.74% | — | 21 mar 2024 | A directory listing vulnerability in School Fees Management System v1.0 allows attackers to list directories and sensitive files within the application without requiring authorization. |
| CVE-2023-49987 | Media (5.4) | 0.43% | — | 7 mar 2024 | A cross-site scripting (XSS) vulnerability in the component /management/term of School Fees Management System v1.0 allows attackers to execute arbitrary web scripts or HTML via a crafted payload injected into the tname… |
| CVE-2023-49986 | Media (4.7) | 0.47% | — | 7 mar 2024 | A cross-site scripting (XSS) vulnerability in the component /admin/parent of School Fees Management System 1.0 allow attackers to execute arbitrary web scripts or HTML via a crafted payload injected into the name… |
Otros productos de Oretnom23
Online Computer AND Laptop Store · 32Computer Laboratory Management System · 30Online Eyewear Shop · 29Human Resource Management System · 29Online Food Ordering System · 29Lost AND Found Information System · 27Clinic's Patient Management System · 27Customer Support System · 19Food Ordering Management System · 17Simple Online Bidding System · 17AC Repair AND Services System · 16Employee AND Visitor Gate Pass Logging System · 15