Schools Alert Management Script
schools_alert_management_script
Vendor: Schools Alert Management Script Project • 7 CVEs
CVEs (7)
CVE VENDORS PRODUCTS UPDATED PUBLISHED CVSS |
|---|
1Schools Alert Management Script Project 1Schools Alert Management Script Nov 21, 2024 Jun 8, 2018 N/A· v4 9.8 CRITICAL· v3 7.5 HIGH· v2 Multiple SQL Injections exist in PHP Scripts Mall Schools Alert Management Script via crafted POST data in contact_us.php, faq.php, about.php, photo_gallery.php, privacy.php, and so on. |
1Schools Alert Management Script Project 1Schools Alert Management Script Nov 21, 2024 Jun 8, 2018 N/A· v4 7.5 HIGH· v3 5.0 MEDIUM· v2 Arbitrary File Read exists in PHP Scripts Mall Schools Alert Management Script via the f parameter in img.php, aka absolute path traversal. |
1Schools Alert Management Script Project 1Schools Alert Management Script Nov 21, 2024 Jun 8, 2018 N/A· v4 7.5 HIGH· v3 6.4 MEDIUM· v2 Arbitrary File Deletion exists in PHP Scripts Mall Schools Alert Management Script via the img parameter in delete_img.php by using directory traversal. |
1Schools Alert Management Script Project 1Schools Alert Management Script Nov 21, 2024 Jun 8, 2018 N/A· v4 9.8 CRITICAL· v3 7.5 HIGH· v2 SQL Injection exists in PHP Scripts Mall Schools Alert Management Script via the q Parameter in get_sec.php. |
1Schools Alert Management Script Project 1Schools Alert Management Script Nov 21, 2024 Jun 8, 2018 N/A· v4 9.8 CRITICAL· v3 7.5 HIGH· v2 Arbitrary File Upload and Remote Code Execution exist in PHP Scripts Mall Schools Alert Management Script via $_FILE in /webmasterst/general.php, as demonstrated by a .php file with the image/jpeg content type. |
1Schools Alert Management Script Project 1Schools Alert Management Script Jun 17, 2026 Feb 23, 2018 N/A· v4 9.8 CRITICAL· v3 7.5 HIGH· v2 SQL Injection exists in PHP Scripts Mall Schools Alert Management Script 2.0.2 via the Login Parameter. |
1Schools Alert Management Script Project 1Schools Alert Management Script Jun 17, 2026 Feb 12, 2018 N/A· v4 8.8 HIGH· v3 6.5 MEDIUM· v2 Arbitrary File Upload and Remote Code Execution exist in PHP Scripts Mall Schools Alert Management Script 2.0.2 via a profile picture. |