Show filters
78 Total Results
Displaying 31-40 of 78
Sort by:
Attacker Value
Unknown
CVE-2023-1474
Disclosure Date: March 17, 2023 (last updated October 08, 2023)
A vulnerability classified as critical was found in SourceCodester Automatic Question Paper Generator System 1.0. This vulnerability affects unknown code of the file users/question_papers/manage_question_paper.php of the component GET Parameter Handler. The manipulation of the argument id leads to sql injection. The attack can be initiated remotely. The exploit has been disclosed to the public and may be used. The identifier of this vulnerability is VDB-223336.
0
Attacker Value
Unknown
CVE-2023-1441
Disclosure Date: March 17, 2023 (last updated October 08, 2023)
A vulnerability has been found in SourceCodester Automatic Question Paper Generator System 1.0 and classified as critical. Affected by this vulnerability is an unknown functionality of the file admin/courses/view_course.php of the component GET Parameter Handler. The manipulation of the argument id leads to sql injection. The attack can be launched remotely. The exploit has been disclosed to the public and may be used. The identifier VDB-223285 was assigned to this vulnerability.
0
Attacker Value
Unknown
CVE-2023-1440
Disclosure Date: March 17, 2023 (last updated October 08, 2023)
A vulnerability, which was classified as critical, was found in SourceCodester Automatic Question Paper Generator System 1.0. Affected is an unknown function of the file users/user/manage_user.php of the component GET Parameter Handler. The manipulation of the argument id leads to sql injection. It is possible to launch the attack remotely. The exploit has been disclosed to the public and may be used. The identifier of this vulnerability is VDB-223284.
0
Attacker Value
Unknown
CVE-2022-44213
Disclosure Date: December 09, 2022 (last updated October 08, 2023)
ZKTeco Xiamen Information Technology ZKBio ECO ADMS <=3.1-164 is vulnerable to Cross Site Scripting (XSS).
0
Attacker Value
Unknown
CVE-2022-34881
Disclosure Date: December 06, 2022 (last updated November 08, 2023)
Generation of Error Message Containing Sensitive Information vulnerability in Hitachi JP1/Automatic Operation allows local users to gain sensitive information.
This issue affects JP1/Automatic Operation: from 10-00 through 10-54-03, from 11-00 before 11-51-09, from 12-00 before 12-60-01.
0
Attacker Value
Unknown
CVE-2022-3419
Disclosure Date: October 31, 2022 (last updated December 22, 2024)
The Automatic User Roles Switcher WordPress plugin before 1.1.2 does not have authorisation and proper CSRF checks, allowing any authenticated users like subscriber to add any role to themselves, such as administrator
0
Attacker Value
Unknown
CVE-2021-25119
Disclosure Date: May 16, 2022 (last updated February 23, 2025)
The AGIL WordPress plugin through 1.0 accepts all zip files and automatically extracts the zip file without validating the extracted file type. Allowing high privilege users such as admin to upload an arbitrary file like PHP, leading to RCE
0
Attacker Value
Unknown
CVE-2022-26631
Disclosure Date: April 18, 2022 (last updated February 23, 2025)
Automatic Question Paper Generator v1.0 contains a Time-Based Blind SQL injection vulnerability via the id GET parameter.
0
Attacker Value
Unknown
CVE-2022-1076
Disclosure Date: March 29, 2022 (last updated February 23, 2025)
A vulnerability was found in Automatic Question Paper Generator System 1.0. It has been classified as problematic. This affects the file /aqpg/users/login.php of the component My Account Page. The manipulation of the argument First Name/Middle Name/Last Name leads to cross site scripting. It is possible to initiate the attack remotely.
0
Attacker Value
Unknown
CVE-2022-1073
Disclosure Date: March 29, 2022 (last updated February 23, 2025)
A vulnerability was found in Automatic Question Paper Generator 1.0. It has been declared as critical. An attack leads to privilege escalation. The attack can be launched remotely.
0