Show filters
167 Total Results
Displaying 131-140 of 167
Sort by:
Attacker Value
Unknown

CVE-2022-34580

Disclosure Date: July 28, 2022 (last updated February 24, 2025)
Advanced School Management System v1.0 was discovered to contain a cross-site scripting (XSS) vulnerability via the address parameter at ip/school/index.php.
Attacker Value
Unknown

CVE-2022-34594

Disclosure Date: July 27, 2022 (last updated February 24, 2025)
Advanced School Management System v1.0 was discovered to contain a cross-site scripting (XSS) vulnerability via the component ip/school/moudel/update_subject.php. This vulnerability allows attackers to execute arbitrary web scripts or HTML via a crafted payload injected into the Edit Subject text field.
Attacker Value
Unknown

CVE-2022-34588

Disclosure Date: July 20, 2022 (last updated February 24, 2025)
itsourcecode Advanced School Management System v1.0 is vulnerable to SQL Injection via the grade parameter at /school/view/timetable_insert_form.php.
Attacker Value
Unknown

CVE-2022-34586

Disclosure Date: July 20, 2022 (last updated February 24, 2025)
itsourcecode Advanced School Management System v1.0 is vulnerable to SQL Injection via the grade parameter at /school/view/student_grade_wise.php.
Attacker Value
Unknown

CVE-2021-46824

Disclosure Date: June 23, 2022 (last updated February 23, 2025)
Cross Site Scripting (XSS) vulnerability in sourcecodester School File Management System 1.0 via the Lastname parameter to the Update Account form in student_profile.php.
Attacker Value
Unknown

CVE-2021-29055

Disclosure Date: June 23, 2022 (last updated February 23, 2025)
Cross Site Scripting (XSS) vulnerability in sourcecodester School File Management System 1.0 via the Firtstname parameter to the Update Account form in student_profile.php.
Attacker Value
Unknown

CVE-2022-32372

Disclosure Date: June 15, 2022 (last updated February 23, 2025)
itsourcecode Advanced School Management System v1.0 is vulnerable to SQL Injection via /school/model/get_subject.php?id=.
Attacker Value
Unknown

CVE-2022-32371

Disclosure Date: June 15, 2022 (last updated February 23, 2025)
itsourcecode Advanced School Management System v1.0 is vulnerable to SQL Injection via /school/model/get_teacher.php?id=.
Attacker Value
Unknown

CVE-2022-32370

Disclosure Date: June 15, 2022 (last updated February 23, 2025)
itsourcecode Advanced School Management System v1.0 is vulnerable to SQL Injection via /school/model/get_classroom.php?id=.
Attacker Value
Unknown

CVE-2022-32374

Disclosure Date: June 15, 2022 (last updated February 23, 2025)
itsourcecode Advanced School Management System v1.0 is vulnerable to SQL Injection via /school/model/get_subject_routing.php?id=.