The Web Based Quiz System Project maintains a single web-based assessment application with a recurring vulnerability pattern centered on application-layer input-handling and data-transmission issues, including cross-site scripting, SQL injection, and cleartext transmission of sensitive information. Current exploitation activity, severity distribution, and exposure counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Web Based Quiz System Project over time
Signals from CVEs in this vendor scope (5 CVEs).
5 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2022-32991HIGH Web Based Quiz System v1.0 was discovered to contain a SQL injection vulnerability via the eid parameter at welcome.php. | Jun 15, 2022 | 8.8 | 27 | NO | NO |
CVE-2022-44411HIGH Web Based Quiz System v1.0 transmits user passwords in plaintext during the authentication process, allowing attackers to obtain users' passwords via a bruteforce attack. | Nov 25, 2022 | 7.5 | 25 | NO | NO |
CVE-2022-35422CRITICAL Web Based Quiz System v1.0 was discovered to contain a SQL injection vulnerability via the qid parameter at update.php. | Aug 2, 2022 | 9.8 | 24 | NO | NO |
CVE-2021-28007MEDIUM Web Based Quiz System 1.0 is affected by cross-site scripting (XSS) in register.php through the name parameter. | Mar 10, 2021 | 6.1 | 21 | NO | NO |
CVE-2021-28006MEDIUM Web Based Quiz System 1.0 is affected by cross-site scripting (XSS) in admin.php through the options parameter. | Mar 9, 2021 | 6.1 | 20 | NO | NO |
Signals from CVEs in this vendor scope (5 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Web Based Quiz System Project.
Media articles that mention a CVE ID that affects a product developed by Web Based Quiz System Project — matched by CVE ID, not by vendor name.