jayesh records
18 published records for vendor jayesh.
Researcher profile
- Entered KEV
- 0 · 0%
- Weaponized
- 0 · 0%
- Pre-auth RCE
- 3
- With a fix record
- 0%
- Median publish → KEV
- No record has entered KEV
Recurring classes
- CWE-79 Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')8
- CWE-284 Improper Access Control4
- CWE-89 Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')2
- CWE-863 Incorrect Authorization1
- CWE-434 Unrestricted Upload of File with Dangerous Type1
- CWE-352 Cross-Site Request Forgery (CSRF)1
The weakness classes this vendor ships most often: where to look.
CWEAll records
18 records| Action | CVE | Vulnerability | Severity | KEV | EPSS | Published |
|---|---|---|---|---|---|---|
39Monitor | CVE-2024-40480No exploit | A Broken Access Control vulnerability was found in /admin/update.php and /admin/dashboard.php in Kashipara Online Exam System v1.0, which aljayesh · online exam system · CWE-284 | Critical9.8 | — | 0.5% | Aug 12, 2024 |
36Monitor | CVE-2024-42773No exploit | An Incorrect Access Control vulnerability was found in /admin/edit_room_controller.php in Kashipara Hotel Management System v1.0, which allojayesh · hotel management system · CWE-863 | Critical9.1 | — | 0.5% | Aug 22, 2024 |
36Monitor | CVE-2024-42775No exploit | An Incorrect Access Control vulnerability was found in /admin/add_room_controller.php in Kashipara Hotel Management System v1.0, which allowjayesh · hotel management system · CWE-284 | Critical9.1 | — | 0.5% | Aug 22, 2024 |
36Monitor | CVE-2025-51567No exploit | A SQL Injection was found in the /exam/user/profile.php page of kashipara Online Exam System V1.0, which allows remote attackers to execute jayesh · online exam system · CWE-89 | Critical9.1 | — | 0.4% | Jan 12, 2026 |
32Monitor | CVE-2024-40479No exploit | A SQL injection vulnerability in "/admin/quizquestion.php" in Kashipara Online Exam System v1.0 allows remote attackers to execute arbitraryjayesh · online exam system · CWE-89 | High8.1 | — | 0.8% | Aug 12, 2024 |
30Monitor | CVE-2024-42772No exploit | An Incorrect Access Control vulnerability was found in /admin/rooms.php in Kashipara Hotel Management System v1.0, which allows an unauthentjayesh · hotel management system · CWE-284 | High7.5 | — | 0.5% | Aug 22, 2024 |
30Monitor | CVE-2024-42774No exploit | An Incorrect Access Control vulnerability was found in /admin/delete_room.php in Kashipara Hotel Management System v1.0, which allows an unajayesh · hotel management system · CWE-269 | High7.5 | — | 0.4% | Aug 22, 2024 |
28Monitor | CVE-2024-42767No exploit | Kashipara Hotel Management System v1.0 is vulnerable to Unrestricted File Upload RCE via /admin/add_room_controller.php.jayesh · hotel management system · CWE-434 | High7.2 | — | 0.6% | Aug 22, 2024 |
28Monitor | CVE-2024-42776No exploit | Kashipara Hotel Management System v1.0 is vulnerable to Incorrect Access Control via /admin/users.php.jayesh · hotel management system · CWE-284 | High7.2 | — | 0.5% | Aug 22, 2024 |
27Monitor | CVE-2024-42768No exploit | A Cross-Site Request Forgery (CSRF) vulnerability was found in Kashipara Hotel Management System v1.0 via /admin/delete_room.php.jayesh · hotel management system · CWE-352 | Medium6.8 | — | 0.2% | Aug 22, 2024 |
24Monitor | CVE-2024-42769No exploit | A Reflected Cross Site Scripting (XSS) vulnerability was found in "/core/signup_user.php " of Kashipara Hotel Management System v1.0, which jayesh · hotel management system · CWE-79 | Medium6.1 | — | 0.5% | Aug 22, 2024 |
21Monitor | CVE-2024-40478No exploit | A Stored Cross Site Scripting (XSS) vulnerability was found in "/admin/afeedback.php" in Kashipara Online Exam System v1.0, which allows remjayesh · online exam system · CWE-79 | Medium5.4 | — | 0.6% | Aug 12, 2024 |
21Monitor | CVE-2023-49271No exploit | Hotel Management v1.0 - Multiple Reflected Cross-Site Scripting (XSS)jayesh · hotel management system · CWE-79 | Medium5.4 | — | 0.4% | Dec 20, 2023 |
21Monitor | CVE-2023-49270No exploit | Hotel Management v1.0 - Multiple Reflected Cross-Site Scripting (XSS)jayesh · hotel management system · CWE-79 | Medium5.4 | — | 0.4% | Dec 20, 2023 |
21Monitor | CVE-2023-49272No exploit | Hotel Management v1.0 - Multiple Reflected Cross-Site Scripting (XSS)jayesh · hotel management system · CWE-79 | Medium5.4 | — | 0.4% | Dec 20, 2023 |
21Monitor | CVE-2023-49269No exploit | Hotel Management v1.0 - Multiple Reflected Cross-Site Scripting (XSS)jayesh · hotel management system · CWE-79 | Medium5.4 | — | 0.4% | Dec 20, 2023 |
19Monitor | CVE-2024-42771No exploit | A Stored Cross Site Scripting (XSS) vulnerability was found in " /admin/edit_room_controller.php" of the Kashipara Hotel Management System vjayesh · hotel management system · CWE-79 | Medium4.8 | — | 0.5% | Aug 22, 2024 |
18Monitor | CVE-2024-42770No exploit | A Stored Cross Site Scripting (XSS) vulnerability was found in "/core/signup_user.php" of Kashipara Hotel Management System v1.0, which allojayesh · hotel management system · CWE-79 | Medium4.7 | — | 0.5% | Aug 22, 2024 |
- CVE-2024-4048039Monitor
A Broken Access Control vulnerability was found in /admin/update.php and /admin/dashboard.php in Kashipara Online Exam System v1.0, which al
CriticalCVSS 9.8No exploitEPSS 1%jayesh · online exam systemAug 12, 2024
- CVE-2024-4277336Monitor
An Incorrect Access Control vulnerability was found in /admin/edit_room_controller.php in Kashipara Hotel Management System v1.0, which allo
CriticalCVSS 9.1No exploitEPSS 0%jayesh · hotel management systemAug 22, 2024
- CVE-2024-4277536Monitor
An Incorrect Access Control vulnerability was found in /admin/add_room_controller.php in Kashipara Hotel Management System v1.0, which allow
CriticalCVSS 9.1No exploitEPSS 0%jayesh · hotel management systemAug 22, 2024
- CVE-2025-5156736Monitor
A SQL Injection was found in the /exam/user/profile.php page of kashipara Online Exam System V1.0, which allows remote attackers to execute
CriticalCVSS 9.1No exploitEPSS 0%jayesh · online exam systemJan 12, 2026
- CVE-2024-4047932Monitor
A SQL injection vulnerability in "/admin/quizquestion.php" in Kashipara Online Exam System v1.0 allows remote attackers to execute arbitrary
HighCVSS 8.1No exploitEPSS 1%jayesh · online exam systemAug 12, 2024
- CVE-2024-4277230Monitor
An Incorrect Access Control vulnerability was found in /admin/rooms.php in Kashipara Hotel Management System v1.0, which allows an unauthent
HighCVSS 7.5No exploitEPSS 0%jayesh · hotel management systemAug 22, 2024
- CVE-2024-4277430Monitor
An Incorrect Access Control vulnerability was found in /admin/delete_room.php in Kashipara Hotel Management System v1.0, which allows an una
HighCVSS 7.5No exploitEPSS 0%jayesh · hotel management systemAug 22, 2024
- CVE-2024-4276728Monitor
Kashipara Hotel Management System v1.0 is vulnerable to Unrestricted File Upload RCE via /admin/add_room_controller.php.
HighCVSS 7.2No exploitEPSS 1%jayesh · hotel management systemAug 22, 2024
- CVE-2024-4277628Monitor
Kashipara Hotel Management System v1.0 is vulnerable to Incorrect Access Control via /admin/users.php.
HighCVSS 7.2No exploitEPSS 1%jayesh · hotel management systemAug 22, 2024
- CVE-2024-4276827Monitor
A Cross-Site Request Forgery (CSRF) vulnerability was found in Kashipara Hotel Management System v1.0 via /admin/delete_room.php.
MediumCVSS 6.8No exploitEPSS 0%jayesh · hotel management systemAug 22, 2024
- CVE-2024-4276924Monitor
A Reflected Cross Site Scripting (XSS) vulnerability was found in "/core/signup_user.php " of Kashipara Hotel Management System v1.0, which
MediumCVSS 6.1No exploitEPSS 0%jayesh · hotel management systemAug 22, 2024
- CVE-2024-4047821Monitor
A Stored Cross Site Scripting (XSS) vulnerability was found in "/admin/afeedback.php" in Kashipara Online Exam System v1.0, which allows rem
MediumCVSS 5.4No exploitEPSS 1%jayesh · online exam systemAug 12, 2024
- CVE-2023-4927121Monitor
Hotel Management v1.0 - Multiple Reflected Cross-Site Scripting (XSS)
MediumCVSS 5.4No exploitEPSS 0%jayesh · hotel management systemDec 20, 2023
- CVE-2023-4927021Monitor
Hotel Management v1.0 - Multiple Reflected Cross-Site Scripting (XSS)
MediumCVSS 5.4No exploitEPSS 0%jayesh · hotel management systemDec 20, 2023
- CVE-2023-4927221Monitor
Hotel Management v1.0 - Multiple Reflected Cross-Site Scripting (XSS)
MediumCVSS 5.4No exploitEPSS 0%jayesh · hotel management systemDec 20, 2023
- CVE-2023-4926921Monitor
Hotel Management v1.0 - Multiple Reflected Cross-Site Scripting (XSS)
MediumCVSS 5.4No exploitEPSS 0%jayesh · hotel management systemDec 20, 2023
- CVE-2024-4277119Monitor
A Stored Cross Site Scripting (XSS) vulnerability was found in " /admin/edit_room_controller.php" of the Kashipara Hotel Management System v
MediumCVSS 4.8No exploitEPSS 0%jayesh · hotel management systemAug 22, 2024
- CVE-2024-4277018Monitor
A Stored Cross Site Scripting (XSS) vulnerability was found in "/core/signup_user.php" of Kashipara Hotel Management System v1.0, which allo
MediumCVSS 4.7No exploitEPSS 1%jayesh · hotel management systemAug 22, 2024