G37SYS73M

3 exploits Active since Nov 2022
CVE-2023-27742 NOMISEC CRITICAL WRITEUP
Idurar - SQL Injection
IDURAR ERP/CRM v1 was discovered to contain a SQL injection vulnerability via the component /api/login.
CVSS 9.8
CVE-2022-36193 NOMISEC CRITICAL SUSPICIOUS
School Management System 1.0 - SQL Injection
SQL injection in School Management System 1.0 allows remote attackers to modify or delete data, causing persistent changes to the application's content or behavior by using malicious SQL queries.
CVSS 9.8
CVE-2022-46087 NOMISEC MEDIUM WRITEUP
CloudSchool v3.0.1 - XSS
CloudSchool v3.0.1 is vulnerable to Cross Site Scripting (XSS). A normal user can steal session cookies of the admin users through notification received by the admin user.
CVSS 5.4