VendorsCampCodescomplete_web-based_school_management_systemall versions
Vulnerabilities

CampCodes Complete Web-Based School Management System

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

104CVEs
CVE-2024-33409
SQL injection vulnerability in index.php in campcodes Complete Web-Based School Management System 1.0 allows attacker to execute arbitrary SQL commands via the name parameter.
Published 2024-05-06 · Analyzed
9.8EPSS 0.007
CVE-2024-33411
A SQL injection vulnerability in /model/get_admin_profile.php in Campcodes Complete Web-Based School Management System 1.0 allows attacker to execute arbitrary SQL commands via the my_index parameter.
Published 2024-05-06 · Analyzed
9.8EPSS 0.007
CVE-2024-33403
A SQL injection vulnerability in /model/get_events.php in campcodes Complete Web-Based School Management System 1.0 allows attacker to execute arbitrary SQL commands via the event_id parameter.
Published 2024-05-06 · Analyzed
9.8EPSS 0.007
CVE-2024-33408
A SQL injection vulnerability in /model/get_classroom.php in campcodes Complete Web-Based School Management System 1.0 allows attacker to execute arbitrary SQL commands via the id parameter.
Published 2024-05-06 · Analyzed
9.8EPSS 0.007
CVE-2024-33805
A SQL injection vulnerability in /model/get_student.php in campcodes Complete Web-Based School Management System 1.0 allows an attacker to execute arbitrary SQL commands via the id parameter.
Published 2024-05-28 · Analyzed
9.8EPSS 0.005
CVE-2024-33806
A SQL injection vulnerability in /model/get_grade.php in campcodes Complete Web-Based School Management System 1.0 allows an attacker to execute arbitrary SQL commands via the id parameter.
Published 2024-05-28 · Analyzed
9.8EPSS 0.005
CVE-2024-34927
A SQL injection vulnerability in /model/update_classroom.php in Campcodes Complete Web-Based School Management System 1.0 allows an attacker to execute arbitrary SQL commands via the name parameter.
Published 2024-05-23 · Analyzed
9.8EPSS 0.005
CVE-2024-34929
A SQL injection vulnerability in /view/find_friends.php in Campcodes Complete Web-Based School Management System 1.0 allows an attacker to execute arbitrary SQL commands via the my_index parameter.
Published 2024-05-23 · Analyzed
9.8EPSS 0.005
CVE-2024-34932
A SQL injection vulnerability in /model/update_exam.php in Campcodes Complete Web-Based School Management System 1.0 allows an attacker to execute arbitrary SQL commands via the name parameter.
Published 2024-05-23 · Analyzed
9.8EPSS 0.005
CVE-2024-34931
A SQL injection vulnerability in /model/update_subject.php in Campcodes Complete Web-Based School Management System 1.0 allows an attacker to execute arbitrary SQL commands via the name parameter.
Published 2024-05-23 · Analyzed
9.8EPSS 0.005
CVE-2024-33801
A SQL injection vulnerability in /model/get_subject_routing.php in campcodes Complete Web-Based School Management System 1.0 allows an attacker to execute arbitrary SQL commands via the id parameter.
Published 2024-05-28 · Analyzed
9.8EPSS 0.005
CVE-2024-33799
A SQL injection vulnerability in /model/get_teacher.php in campcodes Complete Web-Based School Management System 1.0 allows an attacker to execute arbitrary SQL commands via the id parameter.
Published 2024-05-28 · Analyzed
9.8EPSS 0.005
CVE-2024-33808
A SQL injection vulnerability in /model/get_timetable.php in campcodes Complete Web-Based School Management System 1.0 allows an attacker to execute arbitrary SQL commands via the id parameter.
Published 2024-05-28 · Analyzed
9.8EPSS 0.005
CVE-2024-34935
A SQL injection vulnerability in /view/conversation_history_admin.php in Campcodes Complete Web-Based School Management System 1.0 allows an attacker to execute arbitrary SQL commands via the conversation_id parameter.
Published 2024-05-23 · Analyzed
9.8EPSS 0.005
CVE-2024-33800
A SQL injection vulnerability in /model/get_student1.php in campcodes Complete Web-Based School Management System 1.0 allows an attacker to execute arbitrary SQL commands via the index parameter.
Published 2024-05-28 · Analyzed
9.8EPSS 0.005
CVE-2024-34934
A SQL injection vulnerability in /view/emarks_range_grade_update_form.php in Campcodes Complete Web-Based School Management System 1.0 allows an attacker to execute arbitrary SQL commands via the conversation_id parameter.
Published 2024-05-23 · Analyzed
9.8EPSS 0.005
CVE-2024-5103
Campcodes Complete Web-Based School Management System student_first_payment.php sql injection
Published 2024-05-19 · Analyzed
8.8EPSS 0.005
CVE-2024-5105
Campcodes Complete Web-Based School Management System student_payment_details.php sql injection
Published 2024-05-19 · Analyzed
8.8EPSS 0.005
CVE-2024-5104
Campcodes Complete Web-Based School Management System student_grade_wise.php sql injection
Published 2024-05-19 · Analyzed
8.8EPSS 0.005
CVE-2024-5106
Campcodes Complete Web-Based School Management System student_payment_details3.php sql injection
Published 2024-05-19 · Analyzed
8.8EPSS 0.005
CVE-2024-33405
SQL injection vulnerability in add_friends.php in campcodes Complete Web-Based School Management System 1.0 allows attacker to execute arbitrary SQL commands via the friend_index parameter.
Published 2024-05-06 · Analyzed
8.6EPSS 0.005
CVE-2024-34936
A SQL injection vulnerability in /view/event1.php in Campcodes Complete Web-Based School Management System 1.0 allows an attacker to execute arbitrary SQL commands via the month parameter.
Published 2024-05-23 · Analyzed
8.6EPSS 0.004
CVE-2024-33404
A SQL injection vulnerability in /model/add_student_first_payment.php in campcodes Complete Web-Based School Management System 1.0 allows attacker to execute arbitrary SQL commands via the index parameter.
Published 2024-05-06 · Analyzed
8.3EPSS 0.006
CVE-2024-33410
SQL injection vulnerability in /model/delete_range_grade.php in campcodes Complete Web-Based School Management System 1.0 allows attacker to execute arbitrary SQL commands via the id parameter.
Published 2024-05-06 · Analyzed
8.1EPSS 0.006
CVE-2024-33402
A SQL injection vulnerability in /model/approve_petty_cash.php in campcodes Complete Web-Based School Management System 1.0 allows attacker to execute arbitrary SQL commands via the id parameter.
Published 2024-05-28 · Analyzed
8.1EPSS 0.004
CVE-2024-4906
Campcodes Complete Web-Based School Management System show_student1.php sql injection
Published 2024-05-15 · Analyzed
7.5EPSS 0.004
CVE-2024-33406
SQL injection vulnerability in /model/delete_student_grade_subject.php in campcodes Complete Web-Based School Management System 1.0 allows attacker to execute arbitrary SQL commands via the index parameter.
Published 2024-05-06 · Analyzed
7.3EPSS 0.004
CVE-2024-34928
A SQL injection vulnerability in /model/update_subject_routing.php in Campcodes Complete Web-Based School Management System 1.0 allows an attacker to execute arbitrary SQL commands via the grade parameter.
Published 2024-05-23 · Analyzed
7.3EPSS 0.003
CVE-2024-5115
Campcodes Complete Web-Based School Management System teacher_profile.php sql injection
Published 2024-05-20 · Analyzed
6.5EPSS 0.005
CVE-2024-5113
Campcodes Complete Web-Based School Management System student_profile1.php sql injection
Published 2024-05-20 · Analyzed
6.5EPSS 0.005
CVE-2024-5112
Campcodes Complete Web-Based School Management System student_profile.php sql injection
Published 2024-05-20 · Analyzed
6.5EPSS 0.005
CVE-2024-5114
Campcodes Complete Web-Based School Management System teacher_attendance_history1.php sql injection
Published 2024-05-20 · Analyzed
6.5EPSS 0.005
CVE-2024-5111
Campcodes Complete Web-Based School Management System student_payment_invoice1.php sql injection
Published 2024-05-20 · Analyzed
6.5EPSS 0.004
CVE-2024-33802
A SQL injection vulnerability in /model/get_student_subject.php in campcodes Complete Web-Based School Management System 1.0 allows an attacker to execute arbitrary SQL commands via the index parameter.
Published 2024-05-28 · Analyzed
6.5EPSS 0.004
CVE-2024-4907
Campcodes Complete Web-Based School Management System show_student2.php sql injection
Published 2024-05-15 · Analyzed
6.5EPSS 0.004
CVE-2024-4908
Campcodes Complete Web-Based School Management System student_attendance_history1.php sql injection
Published 2024-05-15 · Analyzed
6.5EPSS 0.004
CVE-2024-4909
Campcodes Complete Web-Based School Management System student_due_payment.php sql injection
Published 2024-05-15 · Analyzed
6.5EPSS 0.004
CVE-2024-5110
Campcodes Complete Web-Based School Management System student_payment_invoice.php sql injection
Published 2024-05-20 · Analyzed
6.5EPSS 0.004
CVE-2024-5107
Campcodes Complete Web-Based School Management System student_payment_details2.php sql injection
Published 2024-05-19 · Analyzed
6.5EPSS 0.004
CVE-2024-4911
Campcodes Complete Web-Based School Management System student_exam_mark_update_form.php sql injection
Published 2024-05-15 · Analyzed
6.5EPSS 0.004
1 / 3Next →