Vulnerabilities > Projectworlds > Online Examination System > Critical

DATE CVE VULNERABILITY TITLE RISK
2024-08-15 CVE-2024-42843 SQL Injection vulnerability in Projectworlds Online Examination System 1.0
Projectworlds Online Examination System v1.0 is vulnerable to SQL Injection via the subject parameter in feed.php.
network
low complexity
projectworlds CWE-89
critical
9.8
2022-01-21 CVE-2021-46307 SQL Injection vulnerability in Projectworlds Online Examination System 1.0
An SQL Injection vulnerability exists in Projectworlds Online Examination System 1.0 via the eid parameter in account.php.
network
low complexity
projectworlds CWE-89
critical
10.0