Vulnerabilities > Creativeitem > Academy LMS
DATE | CVE | VULNERABILITY TITLE | RISK |
---|---|---|---|
2023-09-15 | CVE-2023-4974 | SQL Injection vulnerability in Creativeitem Academy LMS 6.2 A vulnerability was found in Academy LMS 6.2. | 9.8 |
2023-09-15 | CVE-2023-4973 | Cross-site Scripting vulnerability in Creativeitem Academy LMS 6.2 A vulnerability was found in Academy LMS 6.2 on Windows. | 6.1 |
2023-08-04 | CVE-2023-38964 | Cross-site Scripting vulnerability in Creativeitem Academy LMS 6.0 Creative Item Academy LMS 6.0 was discovered to contain a cross-site scripting (XSS) vulnerability. | 6.1 |
2023-08-03 | CVE-2023-4119 | Cross-site Scripting vulnerability in Creativeitem Academy LMS 6.0 A vulnerability has been found in Academy LMS 6.0 and classified as problematic. | 6.1 |
2023-07-19 | CVE-2023-3752 | Cross-site Scripting vulnerability in Creativeitem Academy LMS 5.15 A vulnerability was found in Creativeitem Academy LMS 5.15. | 6.1 |
2023-02-03 | CVE-2022-47130 | Cross-Site Request Forgery (CSRF) vulnerability in Creativeitem Academy LMS 4.3 A Cross-Site Request Forgery (CSRF) in Academy LMS before v5.10 allows a discount coupon to be arbitrarily created if an attacker with administrative privileges interacts on the CSRF page. | 4.3 |
2023-02-03 | CVE-2022-47131 | Cross-site Scripting vulnerability in Creativeitem Academy LMS 4.3 A Cross-Site Request Forgery (CSRF) in Academy LMS before v5.10 allows an attacker to arbitrarily create a page. | 4.8 |
2023-02-03 | CVE-2022-47132 | Cross-Site Request Forgery (CSRF) vulnerability in Creativeitem Academy LMS 4.3 A Cross-Site Request Forgery (CSRF) in Academy LMS before v5.10 allows attackers to arbitrarily add Administrator users. | 8.8 |
2022-05-25 | CVE-2022-29380 | Cross-site Scripting vulnerability in Creativeitem Academy LMS 4.3 Academy-LMS v4.3 was discovered to contain a stored cross-site scripting (XSS) vulnerability in the SEO panel. | 3.5 |