Toll Tax Management System
by Oretnom23
CVEs (5)
| CVE | Vendor / Product | Sev | Risk | CVSS | EPSS | KEV | Published | Description |
|---|---|---|---|---|---|---|---|---|
| CVE-2022-30053 | Cri | 0.64 | 9.8 | 0.01 | May 17, 2022 | In Toll Tax Management System 1.0, the id parameter appears to be vulnerable to SQL injection attacks. | ||
| CVE-2023-44047 | Hig | 0.47 | 7.2 | 0.01 | Sep 27, 2023 | Sourcecodester Toll Tax Management System v1 is vulnerable to SQL Injection. | ||
| CVE-2023-36158 | Med | 0.40 | 6.1 | 0.01 | Aug 4, 2023 | Cross Site Scripting (XSS) vulnerability in sourcecodester Toll Tax Management System 1.0 allows remote attackers to run arbitrary code via the First Name and Last Name fields on the My Account page. | ||
| CVE-2024-51032 | Med | 0.35 | 5.4 | 0.00 | Nov 8, 2024 | A Cross-site Scripting (XSS) vulnerability in manage_recipient.php of Sourcecodester Toll Tax Management System 1.0 allows remote authenticated users to inject arbitrary web scripts via the "owner" input field. | ||
| CVE-2022-30837 | Med | 0.35 | 5.4 | 0.01 | May 24, 2022 | Toll-tax-management-system v1.0 is vulnerable to Cross Site Scripting (XSS) via /ttms/classes/Master.php?f=save_recipient, vehicle_name. |
- risk 0.64cvss 9.8epss 0.01
In Toll Tax Management System 1.0, the id parameter appears to be vulnerable to SQL injection attacks.
- risk 0.47cvss 7.2epss 0.01
Sourcecodester Toll Tax Management System v1 is vulnerable to SQL Injection.
- risk 0.40cvss 6.1epss 0.01
Cross Site Scripting (XSS) vulnerability in sourcecodester Toll Tax Management System 1.0 allows remote attackers to run arbitrary code via the First Name and Last Name fields on the My Account page.
- risk 0.35cvss 5.4epss 0.00
A Cross-site Scripting (XSS) vulnerability in manage_recipient.php of Sourcecodester Toll Tax Management System 1.0 allows remote authenticated users to inject arbitrary web scripts via the "owner" input field.
- risk 0.35cvss 5.4epss 0.01
Toll-tax-management-system v1.0 is vulnerable to Cross Site Scripting (XSS) via /ttms/classes/Master.php?f=save_recipient, vehicle_name.