Vulnerabilities > Pearson
DATE | CVE | VULNERABILITY TITLE | RISK |
---|---|---|---|
2021-01-04 | CVE-2020-36154 | Incorrect Permission Assignment for Critical Resource vulnerability in Pearson VUE Testing System 2.3.1911 The Application Wrapper in Pearson VUE VTS Installer 2.3.1911 has Full Control permissions for Everyone in the "%SYSTEMDRIVE%\Pearson VUE" directory, which allows local users to obtain administrative privileges via a Trojan horse application. | 7.8 |
2020-01-08 | CVE-2014-1454 | Cross-site Scripting vulnerability in Pearson Esis Enterprise Student Information System Pearson eSIS (Enterprise Student Information System) message board has stored XSS due to improper validation of user input | 4.8 |