Os4ed

Opensis

82 Schwachstellen gefunden.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
Exploit
  • EPSS 1.4%
  • Veröffentlicht 01.09.2020 14:15:13
  • Zuletzt bearbeitet 21.11.2024 05:35:08

SQL injection vulnerabilities exist in the CheckDuplicateStudent.php page of OS4Ed openSIS 7.3. The bmonth parameter in the page CheckDuplicateStudent.php is vulnerable to SQL injection. An attacker can make an authenticated HTTP request to trigger t...

Exploit
  • EPSS 1.4%
  • Veröffentlicht 01.09.2020 14:15:13
  • Zuletzt bearbeitet 21.11.2024 05:35:08

SQL injection vulnerabilities exist in the CheckDuplicateStudent.php page of OS4Ed openSIS 7.3. The byear parameter in the page CheckDuplicateStudent.php is vulnerable to SQL injection. An attacker can make an authenticated HTTP request to trigger th...

Exploit
  • EPSS 1.4%
  • Veröffentlicht 01.09.2020 14:15:13
  • Zuletzt bearbeitet 21.11.2024 05:35:09

SQL injection vulnerabilities exist in the CheckDuplicateStudent.php page of OS4Ed openSIS 7.3. The ln parameter in the page CheckDuplicateStudent.php is vulnerable to SQL injection. An attacker can make an authenticated HTTP request to trigger this ...

Exploit
  • EPSS 1.4%
  • Veröffentlicht 01.09.2020 14:15:13
  • Zuletzt bearbeitet 21.11.2024 05:35:09

SQL injection vulnerability exists in the CheckDuplicateStudent.php page of OS4Ed openSIS 7.3. The mn parameter in the page CheckDuplicateStudent.php is vulnerable to SQL injection. An attacker can make an authenticated HTTP request to trigger this v...

Exploit
  • EPSS 1.4%
  • Veröffentlicht 01.09.2020 14:15:13
  • Zuletzt bearbeitet 21.11.2024 05:35:09

An exploitable sql injection vulnerability exists in the email parameter functionality of OS4Ed openSIS 7.3. The email parameter in the page EmailCheck.php is vulnerable to SQL injection. An attacker can make an authenticated HTTP request to trigger ...

Exploit
  • EPSS 20.06%
  • Veröffentlicht 24.08.2020 19:15:10
  • Zuletzt bearbeitet 21.11.2024 05:36:04

openSIS Community Edition version 7.3 is vulnerable to SQL injection via the USERNAME parameter of index.php.

Exploit
  • EPSS 67.79%
  • Veröffentlicht 01.07.2020 15:15:13
  • Zuletzt bearbeitet 21.11.2024 05:01:08

openSIS through 7.4 allows Directory Traversal.

Exploit
  • EPSS 52.81%
  • Veröffentlicht 01.07.2020 15:15:13
  • Zuletzt bearbeitet 21.11.2024 05:01:08

openSIS through 7.4 has Incorrect Access Control.

Exploit
  • EPSS 59.03%
  • Veröffentlicht 01.07.2020 15:15:13
  • Zuletzt bearbeitet 21.11.2024 05:01:08

openSIS through 7.4 allows SQL Injection.

  • EPSS 2.37%
  • Veröffentlicht 01.07.2020 15:15:13
  • Zuletzt bearbeitet 21.11.2024 05:01:08

openSIS before 7.4 allows SQL Injection.