Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

IDAttend Pty Ltd — Vulnerabilities & Security Advisories 30

Browse all 30 CVE security advisories affecting IDAttend Pty Ltd. AI-powered Chinese analysis, POCs, and references for each vulnerability.

IDAttend Pty Ltd develops attendance management software, primarily serving educational institutions and corporate entities to track user presence via digital credentials. Security audits have identified thirty Common Vulnerabilities and Exposures (CVEs) associated with its platforms, indicating persistent systemic weaknesses. Historically, the most prevalent vulnerability classes include Remote Code Execution (RCE), Cross-Site Scripting (XSS), and broken access control mechanisms that facilitate unauthorized privilege escalation. These flaws often stem from insufficient input validation and inadequate session management within the application’s web interface. While no single catastrophic data breach has been publicly attributed solely to these specific CVEs, the high volume of disclosed issues suggests a pattern of delayed patching or inherent architectural fragility. Organizations relying on IDAttend Pty Ltd solutions must prioritize rigorous vulnerability scanning and immediate remediation of known exploits to mitigate risks of unauthorized system access and data exfiltration.

Top products by IDAttend Pty Ltd: IDWeb
CVE IDTitleCVSSSeverityPublished
CVE-2023-1356 Reflected Cross-site Scripting In IDAttend’s IDWeb Application — IDWebCWE-79 7.5 High2023-10-25
CVE-2023-27262 Unauthenticated SQL Injection In IDAttend’s IDWeb Application — IDWebCWE-89 9.8 Critical2023-10-25
CVE-2023-27260 Unauthenticated SQL Injection In IDAttend’s IDWeb Application — IDWebCWE-89 9.8 Critical2023-10-25
CVE-2023-27261 Missing Authentication In IDAttend’s IDWeb Application — IDWebCWE-306 5.3 Medium2023-10-25
CVE-2023-27377 Missing Authentication In IDAttend’s IDWeb Application — IDWebCWE-306 7.5 High2023-10-25
CVE-2023-27376 Missing Authentication In IDAttend’s IDWeb Application — IDWebCWE-306 7.5 High2023-10-25
CVE-2023-27375 Missing Authentication In IDAttend’s IDWeb Application — IDWebCWE-306 7.5 High2023-10-25
CVE-2023-27259 Missing Authentication In IDAttend’s IDWeb Application — IDWebCWE-306 7.5 High2023-10-25
CVE-2023-27258 Missing Authentication In IDAttend’s IDWeb Application — IDWebCWE-306 7.5 High2023-10-25
CVE-2023-27257 Missing Authentication In IDAttend’s IDWeb Application — IDWebCWE-306 7.5 High2023-10-25
CVE-2023-27256 Missing Authentication In IDAttend’s IDWeb Application — IDWebCWE-306 5.8 Medium2023-10-25
CVE-2023-27255 Unauthenticated SQL Injection In IDAttend’s IDWeb Application — IDWebCWE-89 9.8 Critical2023-10-25
CVE-2023-27254 Unauthenticated SQL Injection In IDAttend’s IDWeb Application — IDWebCWE-89 9.8 Critical2023-10-25
CVE-2023-26584 Unauthenticated SQL Injection In IDAttend’s IDWeb Application — IDWebCWE-89 9.8 Critical2023-10-25
CVE-2023-26583 Unauthenticated SQL Injection In IDAttend’s IDWeb Application — IDWebCWE-89 9.8 Critical2023-10-25
CVE-2023-26582 Unauthenticated SQL Injection In IDAttend’s IDWeb Application — IDWebCWE-89 9.8 Critical2023-10-25
CVE-2023-26581 Unauthenticated SQL Injection In IDAttend’s IDWeb Application — IDWebCWE-89 9.8 Critical2023-10-25
CVE-2023-26580 Missing Authentication In IDAttend’s IDWeb Application — IDWebCWE-306 7.5 High2023-10-25
CVE-2023-26579 Missing Authentication In IDAttend’s IDWeb Application — IDWebCWE-306 5.3 Medium2023-10-25
CVE-2023-26578 Arbitrary File Upload to Web Root In IDAttend’s IDWeb Application — IDWebCWE-22 8.8 High2023-10-25
CVE-2023-26577 Stored Cross-site Scripting In IDAttend’s IDWeb Application — IDWebCWE-79 7.5 High2023-10-25
CVE-2023-26576 Missing Authentication In IDAttend’s IDWeb Application — IDWebCWE-306 7.5 High2023-10-25
CVE-2023-26575 Missing Authentication In IDAttend’s IDWeb Application — IDWebCWE-306 7.5 High2023-10-25
CVE-2023-26574 Missing Authentication In IDAttend’s IDWeb Application — IDWebCWE-306 7.5 High2023-10-25
CVE-2023-26573 Missing Authentication In IDAttend’s IDWeb Application — IDWebCWE-306 8.2 High2023-10-25
CVE-2023-26572 Unauthenticated SQL Injection In IDAttend’s IDWeb Application — IDWebCWE-89 9.8 Critical2023-10-25
CVE-2023-26571 Missing Authentication In IDAttend’s IDWeb Application — IDWebCWE-306 7.5 High2023-10-25
CVE-2023-26570 Missing Authentication In IDAttend’s IDWeb Application — IDWebCWE-306 7.5 High2023-10-25
CVE-2023-26569 Unauthenticated SQL Injection In IDAttend’s IDWeb Application — IDWebCWE-89 9.8 Critical2023-10-25
CVE-2023-26568 Unauthenticated SQL Injection In IDAttend’s IDWeb Application — IDWebCWE-89 9.8 Critical2023-10-25

This page lists every published CVE security advisory associated with IDAttend Pty Ltd. Each entry links to a detailed page with CVSS scoring, CWE classification, affected products and references. AI-generated Chinese analysis is provided for fast triage.