Vulnerabilities (CVE)

Join the Common Vulnerabilities and Exposures (CVE) community and start to get notified about new vulnerabilities.

Filtered by vendor Ingenious School Management System Project Subscribe
Filtered by product Ingenious School Management System
Total 2 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2017-16561 1 Ingenious School Management System Project 1 Ingenious School Management System 2017-11-29 7.5 HIGH 9.8 CRITICAL
/view/friend_profile.php in Ingenious School Management System 2.3.0 is vulnerable to Boolean-based and Time-based SQL injection in the 'friend_index' parameter of a GET request.
CVE-2017-15957 1 Ingenious School Management System Project 1 Ingenious School Management System 2017-11-17 6.5 MEDIUM 8.8 HIGH
my_profile.php in Ingenious School Management System 2.3.0 allows a student or teacher to upload an arbitrary file.