📦 Xzs Mysql

by Mindskip

🔍 What is Xzs Mysql?

Description coming soon...

🛡️ Security Overview

Click on a severity to filter vulnerabilities

⚠️ Known Vulnerabilities

CVE-2024-29401

CRITICAL CVSS 9.8 Mar 26, 2024

xzs-mysql 3.8 has insufficient session expiration that allows attackers to reuse deleted admin sessions for unauthorized actions. This affects all deployments using the vulnerable version, potentially...

CVE-2021-46086

HIGH CVSS 7.5 Jan 25, 2022

xzs-mysql online examination system versions t3.4.0 and above have an insecure permissions vulnerability in the exam paper submission function. Attackers can modify parameters in HTTP requests to mani...

CVE-2025-1084

MEDIUM CVSS 4.3 Feb 7, 2025

This vulnerability allows attackers to perform Cross-Site Request Forgery (CSRF) attacks against Mindskip xzs-mysql exam system version 3.9.0. Attackers can trick authenticated users into executing un...