Vulnerabilities > Sukimalab

DATE CVE VULNERABILITY TITLE RISK
2019-07-05 CVE-2019-5973 Cross-Site Request Forgery (CSRF) vulnerability in Sukimalab Online Lesson Booking
Cross-site request forgery (CSRF) vulnerability in Online Lesson Booking 0.8.6 and earlier allows remote attackers to hijack the authentication of administrators via unspecified vectors.
network
low complexity
sukimalab CWE-352
8.8
2019-07-05 CVE-2019-5972 Cross-site Scripting vulnerability in Sukimalab Online Lesson Booking
Cross-site scripting vulnerability in Online Lesson Booking 0.8.6 and earlier allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.
network
sukimalab CWE-79
4.3
2019-07-05 CVE-2019-5971 Cross-Site Request Forgery (CSRF) vulnerability in Sukimalab Attendance Manager
Cross-site request forgery (CSRF) vulnerability in Attendance Manager 0.5.6 and earlier allows remote attackers to hijack the authentication of administrators via unspecified vectors.
network
sukimalab CWE-352
6.8
2019-07-05 CVE-2019-5970 Cross-site Scripting vulnerability in Sukimalab Attendance Manager
Cross-site scripting vulnerability in Attendance Manager 0.5.6 and earlier allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.
network
sukimalab CWE-79
4.3