CVE-2024-43772
- EPSS 0.46%
- Veröffentlicht 02.09.2024 05:15:17
- Zuletzt bearbeitet 04.09.2024 12:11:13
SQL Injection in download student learning course function of Easytest Online Test Platform ver.24E01 and earlier allow remote attackers to execute arbitrary SQL commands via the uid parameter.
CVE-2024-43773
- EPSS 0.46%
- Veröffentlicht 02.09.2024 05:15:17
- Zuletzt bearbeitet 04.09.2024 12:26:08
SQL Injection in download class learning course function of Easytest Online Test Platform ver.24E01 and earlier allow remote attackers to execute arbitrary SQL commands via the cstr parameter.
CVE-2024-43774
- EPSS 0.46%
- Veröffentlicht 02.09.2024 05:15:17
- Zuletzt bearbeitet 04.09.2024 12:26:42
SQL Injection in download personal learning course function of Easytest Online Test Platform ver.24E01 and earlier allow remote authenticated users to execute arbitrary SQL commands via the uid parameter.
CVE-2024-43775
- EPSS 0.46%
- Veröffentlicht 02.09.2024 05:15:17
- Zuletzt bearbeitet 04.09.2024 12:27:22
SQL Injection in search course titles function of Easytest Online Test Platform ver.24E01 and earlier allow remote authenticated users to execute arbitrary SQL commands via the search parameter.
CVE-2024-43776
- EPSS 0.46%
- Veröffentlicht 02.09.2024 05:15:17
- Zuletzt bearbeitet 04.09.2024 12:27:40
SQL Injection in mock exam function of Easytest Online Test Platform ver.24E01 and earlier allow remote authenticated users to execute arbitrary SQL commands via the qlevel parameter.
CVE-2024-7871
- EPSS 0.46%
- Veröffentlicht 02.09.2024 05:15:17
- Zuletzt bearbeitet 23.01.2026 19:49:37
SQL Injection in online dictionary function of Easytest Online Test Platform ver.24E01 and earlier allow remote authenticated users to execute arbitrary SQL commands via the word parameter.