Vulnerabilities > Event Management System Project > High

DATE CVE VULNERABILITY TITLE RISK
2022-09-15 CVE-2022-38323 Unrestricted Upload of File with Dangerous Type vulnerability in Event Management System Project Event Management System 1.0
Event Management System v1.0 was discovered to contain an arbitrary file upload vulnerability via the component /Royal_Event/update_image.php.
network
low complexity
event-management-system-project CWE-434
7.2
2022-05-05 CVE-2022-28080 SQL Injection vulnerability in Event Management System Project Event Management System 1.0
Royal Event Management System v1.0 was discovered to contain a SQL injection vulnerability via the todate parameter.
network
low complexity
event-management-system-project CWE-89
8.8