CVE-2023-31934
- EPSS 0.07%
- Veröffentlicht 28.07.2023 14:15:10
- Zuletzt bearbeitet 21.11.2024 08:02:25
Cross Site Scripting vulnerability found in Rail Pass Management System v.1.0 allows a remote attacker to obtain sensitive information via the adminname parameter of admin-profile.php.
CVE-2023-31935
- EPSS 0.07%
- Veröffentlicht 28.07.2023 14:15:10
- Zuletzt bearbeitet 21.11.2024 08:02:25
Cross Site Scripting vulnerability found in Rail Pass Management System v.1.0 allows a remote attacker to obtain sensitive information via the emial parameter of admin-profile.php.
CVE-2023-31936
- EPSS 0.97%
- Veröffentlicht 28.07.2023 14:15:10
- Zuletzt bearbeitet 21.11.2024 08:02:25
Sql injection vulnerability found in Rail Pass Management System v.1.0 allows a remote attacker to execute arbitrary code via the viewid parameter of the view-pass-detail.php file.
CVE-2023-31937
- EPSS 0.9%
- Veröffentlicht 28.07.2023 14:15:10
- Zuletzt bearbeitet 21.11.2024 08:02:25
Sql injection vulnerability found in Rail Pass Management System v.1.0 allows a remote attacker to execute arbitrary code via the editid parameter of the edit-cateogry-detail.php file.
CVE-2023-3275
- EPSS 0.05%
- Veröffentlicht 15.06.2023 13:15:09
- Zuletzt bearbeitet 21.11.2024 08:16:54
A vulnerability classified as critical was found in PHPGurukul Rail Pass Management System 1.0. Affected by this vulnerability is an unknown functionality of the file /view-pass-detail.php of the component POST Request Handler. The manipulation of th...