Vulnerabilities (CVE)

Join the Common Vulnerabilities and Exposures (CVE) community and start to get notified about new vulnerabilities.

Filtered by vendor College Website Management System Project Subscribe
Filtered by product College Website Management System
Total 2 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2022-1078 1 College Website Management System Project 1 College Website Management System 2022-04-04 7.5 HIGH 9.8 CRITICAL
A vulnerability was found in SourceCodester College Website Management System 1.0. It has been classified as critical. Affected is the file /cwms/admin/?page=articles/view_article/. The manipulation of the argument id with the input ' and (select * from(select(sleep(10)))Avx) and 'abc' = 'abc with an unknown input leads to sql injection. It is possible to launch the attack remotely and without authentication.
CVE-2022-1075 1 College Website Management System Project 1 College Website Management System 2022-04-04 3.5 LOW 5.4 MEDIUM
A vulnerability was found in College Website Management System 1.0 and classified as problematic. Affected by this issue is the file /cwms/classes/Master.php?f=save_contact of the component Contact Handler. The manipulation leads to persistent cross site scripting. The attack may be launched remotely and requires authentication.