Web Based Quiz System v1.0 transmits user passwords in plaintext during the authentication process, allowing attackers to obtain users' passwords via a bruteforce attack.
References
Link | Resource |
---|---|
https://shimo.im/docs/5xkGMZx0ZeUmpx3X | Exploit Mitigation Third Party Advisory |
https://shimo.im/docs/5xkGMZx0ZeUmpx3X | Exploit Mitigation Third Party Advisory |
Configurations
Configuration 1 (hide)
|
History
No history.
Information
Published : 2022-11-25 16:15
Updated : 2024-11-21 07:27
NVD link : CVE-2022-44411
Mitre link : CVE-2022-44411
CVE.ORG link : CVE-2022-44411
JSON object : View
Products Affected
web_based_quiz_system_project
- web_based_quiz_system
CWE
CWE-319
Cleartext Transmission of Sensitive Information