Vulnerabilities > Razormist > Online Discussion Forum Site

DATE CVE VULNERABILITY TITLE RISK
2023-06-07 CVE-2023-3144 Cross-site Scripting vulnerability in Razormist Online Discussion Forum Site 1.0
A vulnerability classified as problematic was found in SourceCodester Online Discussion Forum Site 1.0.
network
low complexity
razormist CWE-79
5.4
2023-06-07 CVE-2023-3145 SQL Injection vulnerability in Razormist Online Discussion Forum Site 1.0
A vulnerability, which was classified as critical, has been found in SourceCodester Online Discussion Forum Site 1.0.
network
low complexity
razormist CWE-89
8.8
2022-06-16 CVE-2022-31295 Authorization Bypass Through User-Controlled Key vulnerability in Razormist Online Discussion Forum Site 1.0
An issue in the delete_post() function of Online Discussion Forum Site 1 allows unauthenticated attackers to arbitrarily delete posts.
network
low complexity
razormist CWE-639
7.5
2022-06-16 CVE-2022-31294 Cross-Site Request Forgery (CSRF) vulnerability in Razormist Online Discussion Forum Site 1.0
An issue in the save_users() function of Online Discussion Forum Site 1 allows unauthenticated attackers to arbitrarily create or update user accounts.
network
low complexity
razormist CWE-352
6.5
2022-06-16 CVE-2022-31911 SQL Injection vulnerability in Razormist Online Discussion Forum Site 1.0
Online Discussion Forum Site v1.0 is vulnerable to SQL Injection via /odfs/classes/Master.php?f=delete_team.
network
low complexity
razormist CWE-89
7.2
2022-06-16 CVE-2022-31913 Cross-site Scripting vulnerability in Razormist Online Discussion Forum Site 1.0
Online Discussion Forum Site v1.0 is vulnerable to Cross Site Scripting (XSS) via /odfs/classes/Master.php?f=save_category, name.
network
low complexity
razormist CWE-79
4.8