VendorsTrain Scheduler App Projecttrain_scheduler_app1.0
Vulnerabilities

Train Scheduler App Project Train Scheduler App 1.0

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

3CVEs
CVE-2022-3774
SourceCodester Train Scheduler App resource injection
Published 2022-10-31 · Modified
9.1EPSS 0.012
CVE-2022-43079
A cross-site scripting (XSS) vulnerability in /admin/add-fee.php of Train Scheduler App v1.0 allows attackers to execute arbitrary web scripts or HTML via a crafted payload injected into the cmddept parameter.
Published 2022-11-01 · Modified
6.1EPSS 0.005
CVE-2022-42992
Multiple stored cross-site scripting (XSS) vulnerabilities in Train Scheduler App v1.0 allow attackers to execute arbitrary web scripts or HTML via a crafted payload injected into the Train Code, Train Name, and Destination text fields.
Published 2022-10-27 · Modified
5.4EPSS 0.005