Online Admission System Project ≫ Online Admission System
6 Schwachstellen gefunden.
CVE-2024-51060
- EPSS 0.09%
- Veröffentlicht 31.10.2024 19:15:13
- Zuletzt bearbeitet 06.05.2025 20:15:26
Projectworlds Online Admission System v1 is vulnerable to SQL Injection in index.php via the 'a_id' parameter.
CVE-2024-0783
- EPSS 2.97%
- Veröffentlicht 22.01.2024 18:15:20
- Zuletzt bearbeitet 21.11.2024 08:47:21
A vulnerability was found in Project Worlds Online Admission System 1.0 and classified as critical. This issue affects some unknown processing of the file documents.php. The manipulation leads to unrestricted upload. The attack may be initiated remot...
CVE-2022-2767
- EPSS 0.21%
- Veröffentlicht 11.08.2022 10:15:08
- Zuletzt bearbeitet 21.11.2024 07:01:40
A vulnerability classified as problematic has been found in SourceCodester Online Admission System. This affects an unknown part of the file /index.php. The manipulation of the argument student_add leads to cross site scripting. It is possible to ini...
CVE-2022-2644
- EPSS 0.26%
- Veröffentlicht 04.08.2022 09:15:08
- Zuletzt bearbeitet 21.11.2024 07:01:25
A vulnerability was found in SourceCodester Online Admission System and classified as critical. This issue affects some unknown processing of the component GET Parameter Handler. The manipulation of the argument eid leads to sql injection. The exploi...
CVE-2022-2646
- EPSS 0.32%
- Veröffentlicht 04.08.2022 09:15:08
- Zuletzt bearbeitet 21.11.2024 07:01:26
A vulnerability, which was classified as problematic, was found in SourceCodester Online Admission System. Affected is an unknown function of the file index.php. The manipulation of the argument eid with the input 8</h3><script>alert(1)</script> lead...
CVE-2022-2643
- EPSS 0.23%
- Veröffentlicht 04.08.2022 09:15:07
- Zuletzt bearbeitet 21.11.2024 07:01:25
A vulnerability has been found in SourceCodester Online Admission System and classified as critical. This vulnerability affects unknown code of the component POST Parameter Handler. The manipulation of the argument shift leads to sql injection. The a...