Filtered by vendor Tecnick Subscriptions
Filtered by product Tcexam Subscriptions
Total 23 CVE
CVE Vendors Products Updated CVSS v3.1
CVE-2020-5747 1 Tecnick 1 Tcexam 2020-05-11 5.4 Medium
Insufficient output sanitization in TCExam 14.2.2 allows a remote, authenticated attacker to conduct persistent cross-site scripting (XSS) attacks by creating a crafted test.
CVE-2020-5750 1 Tecnick 1 Tcexam 2020-05-11 6.1 Medium
Insufficient output sanitization in TCExam 14.2.2 allows a remote, unauthenticated attacker to conduct persistent cross-site scripting (XSS) attacks via the self-registration feature.
CVE-2020-5751 1 Tecnick 1 Tcexam 2020-05-11 5.4 Medium
Insufficient output sanitization in TCExam 14.2.2 allows a remote, authenticated attacker to conduct persistent cross-site scripting (XSS) attacks by creating a crafted operator.