Techkshetrainfo develops Savsoft Quiz, a web-based assessment platform, with observed vulnerabilities centered on cross-site scripting issues arising from improper input neutralization during page generation. Treat this as a compact vendor profile; live severity, exploitation, and exposure counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Techkshetrainfo over time
Signals from CVEs in this vendor scope (5 CVEs).
5 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2020-24609MEDIUM TechKshetra Info Solutions Pvt. Ltd Savsoft Quiz 5.5 and earlier has XSS which can result in an attacker injecting the XSS payload in the User Registration section and each time th | Aug 25, 2020 | 6.1 | 34 | NO | YES |
CVE-2024-34401MEDIUM Savsoft Quiz 6.0 allows stored XSS via the index.php/quiz/insert_quiz/ quiz_name parameter. | May 3, 2024 | 6.1 | 18 | NO | NO |
CVE-2020-35349MEDIUM Savsoft Quiz 5 is affected by: Cross Site Scripting (XSS) via field_title (aka a title on the custom fields page). | Dec 26, 2020 | 4.8 | 18 | NO | NO |
CVE-2020-27515MEDIUM A Cross Site Scripting (XSS) vulnerability in Savsoft Quiz v5.0 allows remote attackers to inject arbitrary web script or HTML via the Skype ID field. | Dec 26, 2020 | 6.1 | 17 | NO | NO |
CVE-2024-4256MEDIUM A vulnerability was found in Techkshetra Info Solutions Savsoft Quiz 6.0 and classified as problematic. Affected by this issue is some unknown functionality of the file /public/ind | Apr 27, 2024 | 4.8 | 16 | NO | NO |
Signals from CVEs in this vendor scope (5 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Techkshetrainfo.
Media articles that mention a CVE ID that affects a product developed by Techkshetrainfo — matched by CVE ID, not by vendor name.