Vulnerabilities (CVE)

Filtered by vendor Online Fire Reporting System Project Subscribe
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2022-31906 1 Online Fire Reporting System Project 1 Online Fire Reporting System 2022-06-27 3.5 LOW 4.8 MEDIUM
Online Fire Reporting System v1.0 is vulnerable to Cross Site Scripting (XSS) via /ofrs/classes/Master.php.
CVE-2022-31415 1 Online Fire Reporting System Project 1 Online Fire Reporting System 2022-06-22 4.0 MEDIUM 6.5 MEDIUM
Online Fire Reporting System v1.0 was discovered to contain a SQL injection vulnerability via the GET parameter in /report/list.php.
CVE-2022-31973 1 Online Fire Reporting System Project 1 Online Fire Reporting System 2022-06-10 5.5 MEDIUM 6.5 MEDIUM
Online Fire Reporting System v1.0 is vulnerable to Delete any file via /ofrs/classes/Master.php?f=delete_img.