CVE-2022-42201
Published Oct 20, 2022Simple Exam Reviewer Management System v1.0 is vulnerable to Insecure file upload.
Vendor/product archive
5 CVEs tagged to simple_exam_reviewer_management_system_project / simple_exam_reviewer_management_system — 0 Critical, 3 High, 2 Medium, 0 Low, 0 Unrated.
Simple Exam Reviewer Management System v1.0 is vulnerable to Insecure file upload.
Simple Exam Reviewer Management System v1.0 is vulnerable to Stored Cross Site Scripting (XSS) via the Exam List.
Simple Exam Reviewer Management System v1.0 is vulnerable to Cross Site Request Forgery (CSRF) via the Exam List.
In Simple Exam Reviewer Management System v1.0 the User List function suffers from insecure file upload.
In Simple Exam Reviewer Management System v1.0 the User List function has improper access control that allows low privileged users to modify user permissions to higher privileges.