All 8 CVE vulnerabilities found in PHPEMS, with AI-generated Chinese analysis, references, and POCs.
Vendor: n/a
| CVE ID | Title | CVSS | Severity | Published |
|---|---|---|---|---|
| CVE-2026-6573 | PHPEMS Instant Exam Creation exams.master.php temppage server-side request forgery CWE-918 | 6.3 | Medium | 2026-04-19 |
| CVE-2026-3946 | PHPEMS index.php cross site scripting CWE-79 | 3.5 | Low | 2026-03-11 |
| CVE-2025-15405 | PHPEMS cross-site request forgery CWE-352 | 4.3 | Medium | 2026-01-01 |
| CVE-2025-15244 | PHPEMS Purchase Request race condition CWE-362 | 3.7 | Low | 2025-12-30 |
| CVE-2025-15242 | PHPEMS Coupon race condition CWE-362 | 3.1 | Low | 2025-12-30 |
| CVE-2024-1353 | PHPEMS index.api.php index deserialization CWE-502 | 6.3 | Medium | 2024-02-09 |
| CVE-2023-6654 | PHPEMS Session Data session.cls.php deserialization CWE-502 | 6.3 | Medium | 2023-12-10 |
| CVE-2023-6472 | PHPEMS Content Section api.cls.php cross site scripting CWE-79 | 2.4 | Low | 2023-12-02 |
All 8 known CVE vulnerabilities affecting PHPEMS with full Chinese analysis, references, and POCs where available.