Online Examination System Project

    Dashboard / Vendors

    Products: 1
    Vulnerabilities: 7
    Known Exploited: 0
    1
    Critical Level Threats
    0
    High Level Threats
    6
    Medium Level Threats
    0
    Low Level Threats

    Vulnerabilities

    100806040200
    JanFebMarAprMayJunJulAugSepOctNovDec
    Critical Level Threats
    High Level Threats
    Medium Level Threats
    Low Level Threats

    Products Security index

    Actions
    Items Per Page

    Vulnerabilities

    CVE-2023-45111

    Online Examination System v1.0 - Multiple Unauthenticated SQL Injections (SQLi)

    Last Modified: Nov 21, 2024
    Published: Nov 02, 2023

    CVE-2023-36256

    The Online Examination System Project 1.0 version is vulnerable to Cross-Site Request Forgery (CSRF) attacks. An attacker can craft a malicious link that, when clicked by an admin user, will delete a user account from the database without the admin's consent. The email of the user to be deleted is passed as a parameter in the URL, which can be manipulated by the attacker. This could result in a loss of data.

    Last Modified: Nov 21, 2024
    Published: Jul 07, 2023

    CVE-2020-26006

    Project Worlds Online Examination System 1.0 is affected by Cross Site Scripting (XSS) via account.php.

    Last Modified: Nov 21, 2024
    Published: May 24, 2021

    CVE-2020-25411

    Projectworlds Online Examination System 1.0 is vulnerable to CSRF, which allows a remote attacker to delete the existing user.

    Last Modified: Nov 21, 2024
    Published: May 24, 2021

    CVE-2020-29259

    Cross-site scripting (XSS) vulnerability in Online Examination System 1.0 via the subject or feedback parameter to feedback.php.

    Last Modified: Nov 21, 2024
    Published: Dec 09, 2020
    Items Per Page