← Back

Chartered Accountant \

chartered_accountant_\

6 CVEs • 1 product

Products (1)

Click to collapse
Toggle

CVEs (6)

CVE
VENDORS
PRODUCTS
UPDATED
PUBLISHED
CVSS
1Chartered Accountant \
1 Auditor Website Project
Jun 17, 2026
Jun 6, 2019
N/A· v4
5.4 MEDIUM· v3
3.5 LOW· v2
PHP Scripts Mall Chartered Accountant : Auditor Website 2.0.1 has Stored XSS in the Profile Update page via the My Name field.
1Chartered Accountant \
1 Auditor Website Project
Nov 21, 2024
Mar 21, 2019
N/A· v4
6.5 MEDIUM· v3
4.0 MEDIUM· v2
PHP Scripts Mall Chartered Accountant : Auditor Website 2.0.1 has directory traversal via a direct request for a listing of an image directory such as an assets/ directory.
1Chartered Accountant \
1 Auditor Website Project
Nov 21, 2024
Mar 21, 2019
N/A· v4
6.5 MEDIUM· v3
4.0 MEDIUM· v2
PHP Scripts Mall Chartered Accountant : Auditor Website 2.0.1 allows remote attackers to cause a denial of service (unrecoverable blank profile) via crafted JavaScript code in the First Name and Last Name field.
1Chartered Accountant \
1 Auditor Website Project
Nov 21, 2024
Mar 21, 2019
N/A· v4
5.4 MEDIUM· v3
3.5 LOW· v2
PHP Scripts Mall Chartered Accountant : Auditor Website 2.0.1 has HTML injection via the First Name field.
1Chartered Accountant \
1 Auditor Website Project
Nov 21, 2024
Aug 10, 2018
N/A· v4
8.8 HIGH· v3
6.8 MEDIUM· v2
PHP Scripts Mall Chartered Accountant : Auditor Website 2.0.1 has CSRF via client/auditor/updprofile.php.
1Chartered Accountant \
1 Auditor Website Project
Nov 21, 2024
Jul 9, 2018
N/A· v4
6.1 MEDIUM· v3
4.3 MEDIUM· v2
PHP Scripts Mall Auditor Website 2.0.1 has XSS via the lastname or firstname parameter.