Skip to content
Noroxi

web-school records

4 published records for vendor web-school.

Researcher profile

Entered KEV
0 · 0%
Weaponized
0 · 0%
Pre-auth RCE
0
With a fix record
0%
Median publish → KEV
No record has entered KEV

Records by year

  1. 21

Bar: total · dark part: CISA KEV.

Attack profile

All records

4 records
  • Web-School ERP V 5.0 contains a cross-site request forgery (CSRF) vulnerability that allows a remote attacker to create a student_leave_appl

    MediumCVSS 6.5No exploitEPSS 1%

    web-school · enterprise resource planningApr 8, 2021

  • Web-School ERP V 5.0 contains a cross-site request forgery (CSRF) vulnerability that allows a remote attacker to create a voucher payment re

    MediumCVSS 6.5No exploitEPSS 1%

    web-school · enterprise resource planningApr 8, 2021

  • A blind XSS vulnerability exists in Web-School ERP V 5.0 via (Add Events) in event name and description fields.

    MediumCVSS 6.1No exploitEPSS 1%

    web-school · enterprise resource planningApr 8, 2021

  • A stored XSS vulnerability exists in Web-School ERP V 5.0 via (Add Events) in the event name and description fields.

    MediumCVSS 5.4No exploitEPSS 1%

    web-school · enterprise resource planningApr 8, 2021