VendorsMindSkipxzs-mysqlall versions
Vulnerabilities

MindSkip xzs-Mysql

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

5CVEs
CVE-2024-29401
xzs-mysql 3.8 is vulnerable to Insufficient Session Expiration, which allows attackers to use the session of a deleted admin to do anything.
Published 2024-03-26 · Analyzed
9.8EPSS 0.008
CVE-2021-46086
xzs-mysql >= t3.4.0 is vulnerable to Insecure Permissions. The front end of this open source system is an online examination system. There is an unsafe vulnerability in the functional method of submitting examination papers. An attacker can use burpuite to modify parameters in the packet to destroy real data.
Published 2022-01-25 · Modified
7.5EPSS 0.008
CVE-2025-1083
Mindskip xzs-mysql 学之思开源考试系统 CORS cross-domain policy
Published 2025-02-06 · Analyzed
6.8EPSS 0.003
CVE-2025-1082
Mindskip xzs-mysql 学之思开源考试系统 Exam Edit edit cross site scripting
Published 2025-02-06 · Analyzed
5.4EPSS 0.004
CVE-2025-1084
Mindskip xzs-mysql 学之思开源考试系统 cross-site request forgery
Published 2025-02-06 · Analyzed
5.3EPSS 0.003