> For the complete documentation index, see [llms.txt](https://blog.be-hacktive.com/llms.txt). Markdown versions of documentation pages are available by appending `.md` to page URLs; this page is available as [Markdown](https://blog.be-hacktive.com/eskooly-cve.md).

# Eskooly - CVE

- [ESKOOLY](https://blog.be-hacktive.com/eskooly-cve/eskooly.md)
- [CVE-2024-27709 - SQL Injection in Eskooly Web Product v.3.0](https://blog.be-hacktive.com/eskooly-cve/cve-2024-27709-sql-injection-in-eskooly-web-product-v.3.0.md)
- [ESkooly - Broken Authentication](https://blog.be-hacktive.com/eskooly-cve/eskooly-broken-authentication.md)
- [CVE-2024-27710 - Privilege Escalation via Authentication Mechanism in Eskooly Web Product <= v3.0](https://blog.be-hacktive.com/eskooly-cve/eskooly-broken-authentication/cve-2024-27710-privilege-escalation-via-authentication-mechanism-in-eskooly-web-product-less-than-v3.md)
- [CVE-2024-27711 - User Enumeration via Sign-up Process in Eskooly Web Product <= v3.0](https://blog.be-hacktive.com/eskooly-cve/eskooly-broken-authentication/cve-2024-27711-user-enumeration-via-sign-up-process-in-eskooly-web-product-less-than-v3.0.md)
- [CVE-2024-27712 - User Enumeration via Account Settings in Eskooly Web Product <= v3.0](https://blog.be-hacktive.com/eskooly-cve/eskooly-broken-authentication/cve-2024-27712-user-enumeration-via-account-settings-in-eskooly-web-product-less-than-v3.0.md)
- [CVE-2024-27713 - Protection mechanism Failure in Eskooly Web Product <= v3.0](https://blog.be-hacktive.com/eskooly-cve/cve-2024-27713-protection-mechanism-failure-in-eskooly-web-product-less-than-v3.0.md)
- [CVE-2024-27715 - Inadequate Password Update Verification in Eskooly Web Product <= v3.0](https://blog.be-hacktive.com/eskooly-cve/cve-2024-27715-inadequate-password-update-verification-in-eskooly-web-product-less-than-v3.0.md)
- [CVE-2024-27716 - Cross-site Scripting (XSS) in Eskooly Web Product <= v3.0](https://blog.be-hacktive.com/eskooly-cve/cve-2024-27716-cross-site-scripting-xss-in-eskooly-web-product-less-than-v3.0.md)
- [CVE-2024-27717 - Cross-Site Request Forgery (CSRF) in Eskooly Web Product <= v3.0](https://blog.be-hacktive.com/eskooly-cve/cve-2024-27717-cross-site-request-forgery-csrf-in-eskooly-web-product-less-than-v3.0.md)
