VendorsCollege Management System Projectcollege_management_systemall versions
Vulnerabilities

College Management System Project College Management System

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

9CVEs
CVE-2020-26051
College Management System Php 1.0 suffers from SQL injection vulnerabilities in the index.php page from POST parameters 'unametxt' and 'pwdtxt', which are not filtered before passing a SQL query.
Published 2021-02-08 · Modified
9.8EPSS 0.024
CVE-2020-25409
Projectsworlds College Management System Php 1.0 is vulnerable to SQL injection issues over multiple parameters.
Published 2021-05-24 · Modified
9.8EPSS 0.016
CVE-2024-7681
code-projects College Management System Login Page login.php sql injection
Published 2024-08-11 · Analyzed
9.8EPSS 0.007
CVE-2022-39180
College Management System v1.0 - SQL Injection (SQLi)
Published 2022-11-17 · Modified
9.8EPSS 0.006
CVE-2022-28079
College Management System v1.0 was discovered to contain a SQL injection vulnerability via the course_code parameter.
Published 2022-05-05 · Modified
8.81 PoCEPSS 0.285
CVE-2022-32420
College Management System v1.0 was discovered to contain a remote code execution (RCE) vulnerability via /College/admin/teacher.php. This vulnerability is exploited via a crafted PHP file.
Published 2022-07-01 · Modified
8.8EPSS 0.201
CVE-2022-39179
College Management System v1.0 - Authenticated remote code execution
Published 2022-11-17 · Modified
7.2EPSS 0.011
CVE-2022-30404
College Management System v1.0 is vulnerable to SQL Injection via /College_Management_System/admin/display-teacher.php?teacher_id=.
Published 2022-05-13 · Modified
7.2EPSS 0.008
CVE-2020-25408
A Cross-Site Request Forgery (CSRF) vulnerability exists in ProjectWorlds College Management System Php 1.0 that allows a remote attacker to modify, delete, or make a new entry of the student, faculty, teacher, subject, scores, location, and article data.
Published 2021-05-24 · Modified
6.5EPSS 0.008