Vulnerabilities (CVE)

Join the Common Vulnerabilities and Exposures (CVE) community and start to get notified about new vulnerabilities.

Filtered by vendor Online Learning System Project Subscribe
Filtered by product Online Learning System
Total 2 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2021-40596 1 Online Learning System Project 1 Online Learning System 2022-01-28 7.5 HIGH 9.8 CRITICAL
SQL injection vulnerability in Login.php in sourcecodester Online Learning System v2 by oretnom23, allows attackers to execute arbitrary SQL commands via the faculty_id parameter.
CVE-2021-42580 1 Online Learning System Project 1 Online Learning System 2021-11-26 7.5 HIGH 9.8 CRITICAL
Sourcecodester Online Learning System 2.0 is vunlerable to sql injection authentication bypass in admin login file (/admin/login.php) and authenticated file upload in (Master.php) file , we can craft these two vunlerablities to get unauthenticated remote command execution.