xzs-mysql >= t3.4.0 is vulnerable to Insecure Permissions. The front end of this open source system is an online examination system. There is an unsafe vulnerability in the functional method of submitting examination papers. An attacker can use burpuite to modify parameters in the packet to destroy real data.
Metrics
Affected Vendors & Products
Fixes
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
References
Link | Providers |
---|---|
https://github.com/mindskip/xzs-mysql/issues/327 |
![]() ![]() |
History
No history.

Status: PUBLISHED
Assigner: mitre
Published:
Updated: 2024-08-04T05:02:10.258Z
Reserved: 2022-01-03T00:00:00
Link: CVE-2021-46086

No data.

Status : Modified
Published: 2022-01-25T16:15:08.967
Modified: 2024-11-21T06:33:37.290
Link: CVE-2021-46086

No data.

No data.