Product:

Online_examination_system

(Projectworlds)
Repositories

Unknown:

This might be proprietary software.

#Vulnerabilities 13
Date Id Summary Products Score Patch Annotated
2024-08-15 CVE-2024-42843 Projectworlds Online Examination System v1.0 is vulnerable to SQL Injection via the subject parameter in feed.php. Online_examination_system 9.8
2023-12-21 CVE-2023-45116 Online Examination System v1.0 is vulnerable to multiple Authenticated SQL Injection vulnerabilities. The 'demail' parameter of the /update.php resource does not validate the characters received and they are sent unfiltered to the database. Online_examination_system 8.8
2023-12-21 CVE-2023-45117 Online Examination System v1.0 is vulnerable to multiple Authenticated SQL Injection vulnerabilities. The 'eid' parameter of the /update.php?q=rmquiz resource does not validate the characters received and they are sent unfiltered to the database. Online_examination_system 8.8