Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

prasunsen — Vulnerabilities & Security Advisories 21

Browse all 21 CVE security advisories affecting prasunsen. AI-powered Chinese analysis, POCs, and references for each vulnerability.

Prasunsen is a software vendor primarily known for developing system administration and utility tools, often targeting Windows environments for tasks such as disk management, file recovery, and system optimization. Security audits have identified twenty-one Common Vulnerabilities and Exposures (CVEs) associated with its products, indicating a persistent history of security flaws. The most prevalent vulnerability classes include remote code execution (RCE), cross-site scripting (XSS), and privilege escalation, which frequently stem from inadequate input validation and improper access controls. These defects allow attackers to execute arbitrary commands, steal session data, or gain elevated system permissions. While no single catastrophic incident has defined the brand’s public history, the cumulative nature of these vulnerabilities suggests a pattern of insufficient secure coding practices. Users are advised to apply patches promptly and restrict administrative privileges to mitigate the risk of exploitation inherent in these widely used utility applications.

CVE IDTitleCVSSSeverityPublished
CVE-2026-1838 Hostel <= 1.1.6 - Reflected Cross-Site Scripting via 'shortcode_id' Parameter — HostelCWE-79 6.1 Medium2026-04-18
CVE-2025-11238 Watu Quiz <= 3.4.4 - Unauthenticated Stored Cross-Site Scripting via HTTP Referer — Watu QuizCWE-79 7.2 High2025-10-25
CVE-2025-10493 Chained Quiz <= 1.3.5 - Unauthenticated Insecure Direct Object Reference via Cookie — Chained QuizCWE-639 5.3 Medium2025-09-18
CVE-2024-4314 hostel <= 1.1.5.3 - Cross-Site Request Forgery — HostelCWE-352 4.3 Medium2024-05-09
CVE-2024-0873 Watu Quiz <= 3.4.1 - Authenticated (Contributor+) Stored Cross-Site Scripting — Watu QuizCWE-79 6.4 Medium2024-04-09
CVE-2024-0872 Watu Quiz <= 3.4.1 - Sensitive Information Disclosure — Watu QuizCWE-639 4.3 Medium2024-04-09
CVE-2023-4602 Namaste! LMS <= 2.6.1.1 - Reflected Cross-Site Scripting — Namaste! LMSCWE-79 6.1 Medium2023-11-15
CVE-2023-0968 Watu Quiz <= 3.3.9 - Reflected Cross-Site Scripting — Watu QuizCWE-79 6.1 Medium2023-03-03
CVE-2022-4216 Chained Quiz <= 1.3.2.2 - Authenticated (Admin+) Stored Cross-Site Scripting via Facebook App ID — Chained QuizCWE-79 5.5 Medium2022-12-02
CVE-2022-4217 Chained Quiz <= 1.3.2.2 - Authenticated (Admin+) Stored Cross-Site Scripting via Mailchimp API Key — Chained QuizCWE-79 5.5 Medium2022-12-02
CVE-2022-4212 Chained Quiz <= 1.3.2 - Reflected Cross-Site Scripting via ipf — Chained QuizCWE-79 6.1 Medium2022-12-02
CVE-2022-4211 Chained Quiz <= 1.3.2 - Reflected Cross-Site Scripting via emailf — Chained QuizCWE-79 6.1 Medium2022-12-02
CVE-2022-4210 Chained Quiz <= 1.3.2 - Reflected Cross-Site Scripting via dnf — Chained QuizCWE-79 6.1 Medium2022-12-02
CVE-2022-4209 Chained Quiz <= 1.3.2 - Reflected Cross-Site Scripting via pointsf — Chained QuizCWE-79 6.1 Medium2022-12-02
CVE-2022-4208 Chained Quiz <= 1.3.2 - Reflected Cross-Site Scripting via datef — Chained QuizCWE-79 6.1 Medium2022-12-02
CVE-2022-4213 Chained Quiz <= 1.3.2.2 - Reflected Cross-Site Scripting via dn — Chained QuizCWE-79 6.1 Medium2022-12-02
CVE-2022-4214 Chained Quiz <= 1.3.2.3 - Reflected Cross-Site Scripting via ip — Chained QuizCWE-79 6.1 Medium2022-12-02
CVE-2022-4215 Chained Quiz <= 1.3.2.3 - Reflected Cross-Site Scripting via date — Chained QuizCWE-79 6.1 Medium2022-12-02
CVE-2022-4220 Chained Quiz <= 1.3.2.4 - Cross-Site Request Forgery to Question Deletion — Chained QuizCWE-352 5.4 Medium2022-12-02
CVE-2022-4219 Chained Quiz <= 1.3.2.4 - Cross-Site Request Forgery to Submitted Response Deletion — Chained QuizCWE-352 5.4 Medium2022-12-02
CVE-2022-4218 Chained Quiz <= 1.3.2.4 - Cross-Site Request Forgery to Arbitrary Quiz Deletion and Copying — Chained QuizCWE-352 5.4 Medium2022-12-02

This page lists every published CVE security advisory associated with prasunsen. Each entry links to a detailed page with CVSS scoring, CWE classification, affected products and references. AI-generated Chinese analysis is provided for fast triage.