Filtered by vendor Arox Subscriptions
Filtered by product School Erp Pro Subscriptions
Total 2 CVE
CVE Vendors Products Updated CVSS v3.1
CVE-2022-32119 1 Arox 1 School Erp Pro 2024-08-03 8.8 High
Arox School ERP Pro v1.0 was discovered to contain multiple arbitrary file upload vulnerabilities via the Add Photo function at photogalleries.inc.php and the import staff excel function at 1finance_master.inc.php.
CVE-2022-32118 1 Arox 1 School Erp Pro 2024-08-03 6.1 Medium
Arox School ERP Pro v1.0 was discovered to contain a cross-site scripting (XSS) vulnerability via the dispatchcategory parameter in backoffice.inc.php.