Vulnerabilities > WEB Based Quiz System Project

DATE CVE VULNERABILITY TITLE RISK
2022-11-25 CVE-2022-44411 Cleartext Transmission of Sensitive Information vulnerability in web Based Quiz System Project web Based Quiz System 1.0
Web Based Quiz System v1.0 transmits user passwords in plaintext during the authentication process, allowing attackers to obtain users' passwords via a bruteforce attack.
network
low complexity
web-based-quiz-system-project CWE-319
7.5
2022-08-02 CVE-2022-35422 SQL Injection vulnerability in web Based Quiz System Project web Based Quiz System 1.0
Web Based Quiz System v1.0 was discovered to contain a SQL injection vulnerability via the qid parameter at update.php.
network
low complexity
web-based-quiz-system-project CWE-89
critical
9.8
2022-06-15 CVE-2022-32991 SQL Injection vulnerability in web Based Quiz System Project web Based Quiz System 1.0
Web Based Quiz System v1.0 was discovered to contain a SQL injection vulnerability via the eid parameter at welcome.php.
network
low complexity
web-based-quiz-system-project CWE-89
8.8
2021-03-10 CVE-2021-28007 Cross-site Scripting vulnerability in web Based Quiz System Project web Based Quiz System 1.0
Web Based Quiz System 1.0 is affected by cross-site scripting (XSS) in register.php through the name parameter.
network
low complexity
web-based-quiz-system-project CWE-79
6.1
2021-03-09 CVE-2021-28006 Cross-site Scripting vulnerability in web Based Quiz System Project web Based Quiz System 1.0
Web Based Quiz System 1.0 is affected by cross-site scripting (XSS) in admin.php through the options parameter.
network
low complexity
web-based-quiz-system-project CWE-79
6.1