CVE-2022-1073

HIGH

Automatic Question Paper Generator System - Password Reset Weakness

Title source: rule
STIX 2.1

Description

A vulnerability was found in Automatic Question Paper Generator 1.0. It has been declared as critical. An attack leads to privilege escalation. The attack can be launched remotely.

Scores

CVSS v3 7.3
EPSS 0.0035
EPSS Percentile 57.1%
Attack Vector NETWORK
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:L

CISA SSVC

Vulnrichment
Exploitation none
Automatable yes
Technical Impact partial

Details

CWE
CWE-640
Status published
Products (1)
automatic_question_paper_generator_system_project/automatic_question_paper_generator_system 1.0
Published Mar 29, 2022
Tracked Since Feb 18, 2026