Vehicle Service Management System
by plsanu
CVEs (3)
| CVE | Vendor / Product | Sev | Risk | CVSS | EPSS | KEV | Published | Description |
|---|---|---|---|---|---|---|---|---|
| CVE-2021-46067 | Cri | 0.64 | 9.8 | 0.05 | Jan 6, 2022 | In Vehicle Service Management System 1.0 an attacker can steal the cookies leading to Full Account Takeover. | ||
| CVE-2021-46068 | Med | 0.31 | 4.8 | 0.03 | Jan 6, 2022 | A Stored Cross Site Scripting (XSS) vulnerability exists in Vehicle Service Management System 1.0 via the My Account Section in login panel. | ||
| CVE-2021-46080 | Med | 0.31 | 4.8 | 0.01 | Jan 6, 2022 | A Cross Site Request Forgery (CSRF) vulnerability exists in Vehicle Service Management System 1.0. An successful CSRF attacks leads to Stored Cross Site Scripting Vulnerability. |
- risk 0.64cvss 9.8epss 0.05
In Vehicle Service Management System 1.0 an attacker can steal the cookies leading to Full Account Takeover.
- risk 0.31cvss 4.8epss 0.03
A Stored Cross Site Scripting (XSS) vulnerability exists in Vehicle Service Management System 1.0 via the My Account Section in login panel.
- risk 0.31cvss 4.8epss 0.01
A Cross Site Request Forgery (CSRF) vulnerability exists in Vehicle Service Management System 1.0. An successful CSRF attacks leads to Stored Cross Site Scripting Vulnerability.