Vulnerabilities
Vulnerable Software
Advanced School Management System v1.0 was discovered to contain a cross-site scripting (XSS) vulnerability via the address parameter at ip/school/index.php.
CVSS Score
4.8
EPSS Score
0.001
Published
2022-07-28
Advanced School Management System v1.0 was discovered to contain a cross-site scripting (XSS) vulnerability via the component ip/school/moudel/update_subject.php. This vulnerability allows attackers to execute arbitrary web scripts or HTML via a crafted payload injected into the Edit Subject text field.
CVSS Score
4.8
EPSS Score
0.001
Published
2022-07-27
itsourcecode Advanced School Management System v1.0 is vulnerable to SQL Injection via the grade parameter at /school/view/student_grade_wise.php.
CVSS Score
8.8
EPSS Score
0.001
Published
2022-07-20
itsourcecode Advanced School Management System v1.0 is vulnerable to SQL Injection via the grade parameter at /school/view/timetable_insert_form.php.
CVSS Score
8.8
EPSS Score
0.001
Published
2022-07-20
itsourcecode Advanced School Management System v1.0 is vulnerable to SQL Injection via /school/model/get_classroom.php?id=.
CVSS Score
7.2
EPSS Score
0.003
Published
2022-06-15
itsourcecode Advanced School Management System v1.0 is vulnerable to SQL Injection via /school/model/get_teacher.php?id=.
CVSS Score
7.2
EPSS Score
0.003
Published
2022-06-15
itsourcecode Advanced School Management System v1.0 is vulnerable to SQL Injection via /school/model/get_subject.php?id=.
CVSS Score
7.2
EPSS Score
0.003
Published
2022-06-15
itsourcecode Advanced School Management System v1.0 is vulnerable to SQL Injection via /school/model/get_grade.php?id=.
CVSS Score
7.2
EPSS Score
0.003
Published
2022-06-15
itsourcecode Advanced School Management System v1.0 is vulnerable to SQL Injection via /school/model/get_exam.php?id=.
CVSS Score
7.2
EPSS Score
0.003
Published
2022-06-15
itsourcecode Advanced School Management System v1.0 is vulnerable to SQL Injection via /school/model/get_subject_routing.php?id=.
CVSS Score
7.2
EPSS Score
0.003
Published
2022-06-15


Contact Us

Shodan ® - All rights reserved