bus_pass_management_system vulnerabilities
CVEs whose affected-version data names the bus_pass_management_system package. Each record lists the affected and patched versions; check a specific version with the dependency checker or POST /api/sbom.
2 CVEsRSS
CVE-2022-35156Critical· 9.8Bus Pass Management System 1.0 was discovered to contain a SQL Injection vulnerability via the searchdata parameter at /buspassms/download-pass.php..
Bus Pass Management System 1.0 was discovered to contain a SQL Injection vulnerability via the searchdata parameter at /buspassms/download-pass.php..
▾ Midnightphpgurukul · bus_pass_management_systemEPSS 1.2%via NVD
CVE-2022-35155Medium· 6.1PoCBus Pass Management System v1.0 was discovered to contain a reflected cross-site scripting (XSS) vulnerability via the searchdata parameter.
Bus Pass Management System v1.0 was discovered to contain a reflected cross-site scripting (XSS) vulnerability via the searchdata parameter.
▾ Twilightphpgurukul · bus_pass_management_systemEPSS 2.2%via NVD