Show filters
6 Total Results
Displaying 1-6 of 6
Sort by:
Attacker Value
Unknown

CVE-2024-7871

Disclosure Date: September 02, 2024 (last updated September 05, 2024)
SQL Injection in online dictionary function of Easytest Online Test Platform ver.24E01 and earlier allow remote authenticated users to execute arbitrary SQL commands via the word parameter.
Attacker Value
Unknown

CVE-2024-43776

Disclosure Date: September 02, 2024 (last updated September 05, 2024)
SQL Injection in mock exam function of Easytest Online Test Platform ver.24E01 and earlier allow remote authenticated users to execute arbitrary SQL commands via the qlevel parameter.
Attacker Value
Unknown

CVE-2024-43775

Disclosure Date: September 02, 2024 (last updated September 05, 2024)
SQL Injection in search course titles function of Easytest Online Test Platform ver.24E01 and earlier allow remote authenticated users to execute arbitrary SQL commands via the search parameter.
Attacker Value
Unknown

CVE-2024-43774

Disclosure Date: September 02, 2024 (last updated September 05, 2024)
SQL Injection in download personal learning course function of Easytest Online Test Platform ver.24E01 and earlier allow remote authenticated users to execute arbitrary SQL commands via the uid parameter.
Attacker Value
Unknown

CVE-2024-43773

Disclosure Date: September 02, 2024 (last updated September 05, 2024)
SQL Injection in download class learning course function of Easytest Online Test Platform ver.24E01 and earlier allow remote attackers to execute arbitrary SQL commands via the cstr parameter.
Attacker Value
Unknown

CVE-2024-43772

Disclosure Date: September 02, 2024 (last updated September 05, 2024)
SQL Injection in download student learning course function of Easytest Online Test Platform ver.24E01 and earlier allow remote attackers to execute arbitrary SQL commands via the uid parameter.