Vendor
Draco1725
Products
3
CVEs
3
Across products
3
Status
Private
Products
3- 1 CVE
- 1 CVE
- 1 CVE
Recent CVEs
3| CVE | Vendor / Product | Sev | Risk | CVSS | EPSS | KEV | Published | Description |
|---|---|---|---|---|---|---|---|---|
| CVE-2022-42237 | Cri | 0.64 | 9.8 | 0.01 | Oct 17, 2022 | A SQL Injection issue in Merchandise Online Store v.1.0 allows an attacker to log in to the admin account. | ||
| CVE-2022-42992 | Med | 0.35 | 5.4 | 0.00 | Oct 27, 2022 | Multiple stored cross-site scripting (XSS) vulnerabilities in Train Scheduler App v1.0 allow attackers to execute arbitrary web scripts or HTML via a crafted payload injected into the Train Code, Train Name, and Destination text fields. | ||
| CVE-2022-42235 | Med | 0.35 | 5.4 | 0.00 | Oct 11, 2022 | A Stored XSS issue in Student Clearance System v.1.0 allows the injection of arbitrary JavaScript in the Student registration form. |
- risk 0.64cvss 9.8epss 0.01
A SQL Injection issue in Merchandise Online Store v.1.0 allows an attacker to log in to the admin account.
- risk 0.35cvss 5.4epss 0.00
Multiple stored cross-site scripting (XSS) vulnerabilities in Train Scheduler App v1.0 allow attackers to execute arbitrary web scripts or HTML via a crafted payload injected into the Train Code, Train Name, and Destination text fields.
- risk 0.35cvss 5.4epss 0.00
A Stored XSS issue in Student Clearance System v.1.0 allows the injection of arbitrary JavaScript in the Student registration form.