Revenue Collection System ProjectCVEs & Vulnerabilities
3 CVEs affecting Revenue Collection System Project products, tracked from the National Vulnerability Database, with CVSS/EPSS scores and exploitation status.
3 CVEs→ All vendors
Most Affected Products
revenue collection system 3
CVE-2022-46968MEDIUM
A stored cross-site scripting (XSS) vulnerability in /index.php?page=help of Revenue Collection System v1.0 allows attackers to execute arbitrary web scripts or HTML via a crafted payload injected into sent messages.
28 Jan 2023
5.4
CVSS
CVE-2022-46967CRITICAL
An access control issue in Revenue Collection System v1.0 allows unauthenticated attackers to view the contents of /admin/DBbackup/ directory.
27 Jan 2023
9.8
CVSS
CVE-2022-46966CRITICAL
Revenue Collection System v1.0 was discovered to contain a SQL injection vulnerability at step1.php.
27 Jan 2023
9.8
CVSS
← PrevPage 1 / 1Next →