Show filters
33 Total Results
Displaying 31-33 of 33
Sort by:
Attacker Value
Unknown

CVE-2020-25409

Disclosure Date: May 24, 2021 (last updated November 28, 2024)
Projectsworlds College Management System Php 1.0 is vulnerable to SQL injection issues over multiple parameters.
Attacker Value
Unknown

CVE-2020-25408

Disclosure Date: May 24, 2021 (last updated November 28, 2024)
A Cross-Site Request Forgery (CSRF) vulnerability exists in ProjectWorlds College Management System Php 1.0 that allows a remote attacker to modify, delete, or make a new entry of the student, faculty, teacher, subject, scores, location, and article data.
Attacker Value
Unknown

CVE-2020-26051

Disclosure Date: February 08, 2021 (last updated February 22, 2025)
College Management System Php 1.0 suffers from SQL injection vulnerabilities in the index.php page from POST parameters 'unametxt' and 'pwdtxt', which are not filtered before passing a SQL query.