CVEs (8)
CVE VENDORS PRODUCTS UPDATED PUBLISHED CVSS |
|---|
1Simplejobscript 1Simplejobscript Jun 17, 2026 Mar 4, 2026 5.1 MEDIUM· v4 6.1 MEDIUM· v3 N/A· v2 Simple Job Script contains a cross-site scripting vulnerability that allows unauthenticated attackers to inject malicious scripts by manipulating the job_type_value parameter in the jobs endpoint. Attackers can craft req...Show more |
1Simplejobscript 1Simplejobscript Jun 17, 2026 Mar 4, 2026 8.8 HIGH· v4 8.2 HIGH· v3 N/A· v2 Simple Job Script contains an SQL injection vulnerability that allows attackers to manipulate database queries by injecting malicious SQL code through the app_id parameter. Attackers can send POST requests to delete_appl...Show more |
1Simplejobscript 1Simplejobscript Jun 17, 2026 Mar 4, 2026 8.8 HIGH· v4 8.2 HIGH· v3 N/A· v2 Simple Job Script contains an SQL injection vulnerability that allows unauthenticated attackers to manipulate database queries by injecting SQL code through the employerid parameter. Attackers can send POST requests to t...Show more |
1Simplejobscript 1Simplejobscript Jun 17, 2026 Mar 4, 2026 8.8 HIGH· v4 9.8 CRITICAL· v3 N/A· v2 Simple Job Script contains an SQL injection vulnerability that allows unauthenticated attackers to manipulate database queries by injecting SQL code through the job_id parameter. Attackers can send POST requests to get_j...Show more |
1Simplejobscript 1Simplejobscript Jun 17, 2026 Mar 4, 2026 8.8 HIGH· v4 8.2 HIGH· v3 N/A· v2 Simple Job Script contains an SQL injection vulnerability that allows unauthenticated attackers to manipulate database queries by injecting SQL code through the landing_location parameter. Attackers can send POST request...Show more |
1Simplejobscript 1Simplejobscript Jun 17, 2026 Feb 7, 2020 N/A· v4 9.8 CRITICAL· v3 7.5 HIGH· v2 An issue was discovered in Simplejobscript.com SJS through 1.66. There is an unauthenticated SQL injection via the job applications search function. The vulnerable parameter is job_id. The function is getJobApplicationsB...Show more |
1Simplejobscript 1Simplejobscript Jun 17, 2026 Jan 31, 2020 N/A· v4 9.8 CRITICAL· v3 7.5 HIGH· v2 controllers/page_apply.php in Simplejobscript.com SJS through 1.66 is prone to unauthenticated Remote Code Execution by uploading a PHP script as a resume. |
1Simplejobscript 1Simplejobscript Jun 17, 2026 Jan 21, 2020 N/A· v4 9.8 CRITICAL· v3 7.5 HIGH· v2 An issue was discovered in Simplejobscript.com SJS before 1.65. There is unauthenticated SQL injection via the search engine. The parameter is landing_location. The function is countSearchedJobs(). The file is _lib/class...Show more |