Vulnerabilities > Jayesh
DATE | CVE | VULNERABILITY TITLE | RISK |
---|---|---|---|
2024-08-12 | CVE-2024-40478 | Cross-site Scripting vulnerability in Jayesh Online Exam System 1.0 A Stored Cross Site Scripting (XSS) vulnerability was found in "/admin/afeedback.php" in Kashipara Online Exam System v1.0, which allows remote attackers to execute arbitrary code via "rname" and "email" parameter fields | 5.4 |
2024-08-12 | CVE-2024-40480 | Unspecified vulnerability in Jayesh Online Exam System 1.0 A Broken Access Control vulnerability was found in /admin/update.php and /admin/dashboard.php in Kashipara Online Exam System v1.0, which allows remote unauthenticated attackers to view administrator dashboard and delete valid user accounts via the direct URL access. | 9.8 |