Vulnerabilities > Techvill

DATE CVE VULNERABILITY TITLE RISK
2022-09-14 CVE-2022-37137 Cross-site Scripting vulnerability in Techvill Paymoney 3.3
PayMoney 3.3 is vulnerable to Stored Cross-Site Scripting (XSS) during replying the ticket.
network
low complexity
techvill CWE-79
5.4
2022-09-14 CVE-2022-37140 Unrestricted Upload of File with Dangerous Type vulnerability in Techvill Paymoney 3.3
PayMoney 3.3 is vulnerable to Client Side Remote Code Execution (RCE).
network
low complexity
techvill CWE-434
8.0
2022-07-26 CVE-2022-34991 Cross-site Scripting vulnerability in Techvill Paymoney 3.3
Paymoney v3.3 was discovered to contain multiple reflected cross-site scripting (XSS) vulnerabilities via the first_name and last_name parameters.
network
low complexity
techvill CWE-79
5.4