abhiunix/Bus-Pass-Management-System-v1.0-CVEs

abhiunix/Bus-Pass-Management-System-v1.0-CVEs

Releases0

CVE History

CVEPublishedCVSS v3CVSS v2
7.5 HIGH5 MEDIUM

In Bus Pass Management System v1.0, Directory Listing/Browsing is enabled on the web server which allows an attacker to view the sensitive files of the application, for example: Any file which contains sensitive information of the user or server.

5.4 MEDIUM3.5 LOW

In Bus Pass Management System v1.0, parameters 'pagedes' and `About Us` are affected with a Stored Cross-site scripting vulnerability.