CVEs (9)
CVE VENDORS PRODUCTS UPDATED PUBLISHED CVSS |
|---|
1Code Projects 1Simple School Management System Apr 4, 2025 Apr 25, 2024 N/A· v4 6.3 MEDIUM· v3 N/A· v2 File Upload vulnerability in the function for employees to upload avatars in Code-Projects Simple School Management System v1.0 allows attackers to run arbitrary code via upload of crafted file. |
1Code Projects 1Simple School Management System Jun 20, 2025 Feb 9, 2024 N/A· v4 8.8 HIGH· v3 N/A· v2 Code-projects Simple School Managment System 1.0 allows SQL Injection via the 'id' parameter at "School/delete.php?id=5." |
1Code Projects 1Simple School Management System Nov 21, 2024 Feb 9, 2024 N/A· v4 8.8 HIGH· v3 N/A· v2 Code-projects Simple School Managment System 1.0 allows Authentication Bypass via the username and password parameters at School/teacher_login.php. |
1Code Projects 1Simple School Management System Jun 20, 2025 Feb 9, 2024 N/A· v4 8.8 HIGH· v3 N/A· v2 Code-projects Simple School Managment System 1.0 allows SQL Injection via the 'id' parameter at "School/sub_delete.php?id=5." |
1Code Projects 1Simple School Management System Jun 17, 2025 Feb 9, 2024 N/A· v4 8.8 HIGH· v3 N/A· v2 Code-projects Simple School Managment System 1.0 allows SQL Injection via the 'pass' parameter at School/teacher_login.php. |
1Code Projects 1Simple School Management System Jun 12, 2025 Feb 9, 2024 N/A· v4 8.8 HIGH· v3 N/A· v2 Code-projects Simple School Managment System 1.0 allows SQL Injection via the 'name' parameter at School/teacher_login.php. |
1Code Projects 1Simple School Management System Nov 21, 2024 Feb 9, 2024 N/A· v4 8.8 HIGH· v3 N/A· v2 Code-projects Simple School Managment System 1.0 allows SQL Injection via the 'aname' parameter at "School/index.php". |
1Code Projects 1Simple School Management System May 15, 2025 Feb 9, 2024 N/A· v4 8.8 HIGH· v3 N/A· v2 Code-projects Simple School Managment System 1.0 allows Authentication Bypass via the username and password parameters at School/index.php. |
1Code Projects 1Simple School Management System May 15, 2025 Feb 9, 2024 N/A· v4 8.8 HIGH· v3 N/A· v2 Code-projects Simple School Managment System 1.0 allows SQL Injection via the 'apass' parameter at "School/index.php." |