Classapps maintains a focused product portfolio centered on SelectSurvey.net, a web-based survey and data-collection platform deployed across educational and organizational settings. The durable signal in its vulnerability disclosures clusters around application-layer input handling and access control, with recurring weakness classes including SQL injection and authorization bypass through user-controlled keys that are typical of web applications handling sensitive survey data.
The number and severity of CVEs published that impact products developed by Classapps over time
Signals from CVEs in this vendor scope (3 CVEs).
3 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2014-6030MEDIUM Multiple SQL injection vulnerabilities in ClassApps SelectSurvey.NET before 4.125.002 allow (1) remote attackers to execute arbitrary SQL commands via the SurveyID parameter to sur | Nov 6, 2014 | 6.5 | 32 | NO | YES |
CVE-2021-41609CRITICAL SQL injection in the ID parameter of the UploadedImageDisplay.aspx endpoint of SelectSurvey.NET before 5.052.000 allows a remote, unauthenticated attacker to retrieve data from the | Jan 28, 2022 | 9.8 | 29 | NO | NO |
CVE-2021-41608HIGH A file disclosure vulnerability in the UploadedImageDisplay.aspx endpoint of SelectSurvey.NET before 5.052.000 allows a remote, unauthenticated attacker to retrieve survey user sub | Jan 28, 2022 | 7.5 | 24 | NO | NO |
Signals from CVEs in this vendor scope (3 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Classapps.
Media articles that mention a CVE ID that affects a product developed by Classapps — matched by CVE ID, not by vendor name.