Vulnerabilities (CVE)

Join the Common Vulnerabilities and Exposures (CVE) community and start to get notified about new vulnerabilities.

Filtered by vendor Student Management System Project Subscribe
Filtered by product Student Management System
Total 3 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2022-2876 1 Student Management System Project 1 Student Management System 2022-08-18 N/A 9.8 CRITICAL
A vulnerability, which was classified as critical, was found in SourceCodester Student Management System. Affected is an unknown function of the file index.php. The manipulation of the argument id leads to sql injection. It is possible to launch the attack remotely. The exploit has been disclosed to the public and may be used. VDB-206634 is the identifier assigned to this vulnerability.
CVE-2021-33371 1 Student Management System Project 1 Student Management System 2022-08-02 N/A 5.4 MEDIUM
A stored cross-site scripting (XSS) vulnerability in /nav_bar_action.php of Student Management System v1.0 allows attackers to execute arbitrary web scripts or HTML via a crafted payload injected into the Chat box.
CVE-2020-23935 1 Student Management System Project 1 Student Management System 2021-12-14 7.5 HIGH 9.8 CRITICAL
Kabir Alhasan Student Management System 1.0 is vulnerable to Authentication Bypass via "Username: admin'# && Password: (Write Something)".