VendorsJudging Management System Projectjudging_management_system1.0
Vulnerabilities

Judging Management System Project Judging Management System 1.0

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

17CVEs
CVE-2023-30246
SQL injection vulnerability found in Judging Management System v.1.0 allows a remote attacker to execute arbitrary code via the contestant_id parameter.
Published 2023-05-12 · Modified
9.8EPSS 0.013
CVE-2023-30245
SQL injection vulnerability found in Judging Management System v.1.0 allows a remote attacker to execute arbitrary code via the crit_id parameter of the edit_criteria.php file.
Published 2023-05-15 · Modified
9.8EPSS 0.013
CVE-2023-24641
Judging Management System v1.0 was discovered to contain a SQL injection vulnerability via the sid parameter at /php-jms/updateview.php.
Published 2023-03-03 · Modified
9.8EPSS 0.008
CVE-2023-24642
Judging Management System v1.0 was discovered to contain a SQL injection vulnerability via the sid parameter at /php-jms/updateTxtview.php.
Published 2023-03-03 · Modified
9.8EPSS 0.008
CVE-2023-24643
Judging Management System v1.0 was discovered to contain a SQL injection vulnerability via the sid parameter at /php-jms/updateBlankTxtview.php.
Published 2023-03-03 · Modified
9.8EPSS 0.008
CVE-2023-30077
Judging Management System v1.0 by oretnom23 was discovered to vulnerable to SQL injection via /php-jms/review_result.php?mainevent_id=, mainevent_id.
Published 2023-05-04 · Modified
9.8EPSS 0.008
CVE-2023-30203
Judging Management System v1.0 was discovered to contain a SQL injection vulnerability via the event_id parameter at /php-jms/result_sheet.php.
Published 2023-05-04 · Modified
9.8EPSS 0.008
CVE-2023-30018
Judging Management System v1.0 is vulnerable to SQL Injection. via /php-jms/review_se_result.php?mainevent_id=.
Published 2023-05-08 · Modified
9.8EPSS 0.008
CVE-2023-30076
Sourcecodester Judging Management System v1.0 is vulnerable to SQL Injection via /php-jms/print_judges.php?print_judges.php=&se_name=&sub_event_id=.
Published 2023-04-20 · Modified
9.8EPSS 0.008
CVE-2023-1556
SourceCodester Judging Management System summary_results.php sql injection
Published 2023-03-22 · Modified
9.8EPSS 0.007
CVE-2023-5589
SourceCodester Judging Management System login.php sql injection
Published 2023-10-15 · Modified
9.8EPSS 0.007
CVE-2023-37682
Judging Management System v1.0 was discovered to contain a SQL injection vulnerability via the id parameter at /php-jms/deductScores.php.
Published 2023-08-08 · Modified
9.8EPSS 0.007
CVE-2023-2108
SourceCodester Judging Management System edit_contestant.php sql injection
Published 2023-04-16 · Modified
9.8EPSS 0.006
CVE-2023-30204
Judging Management System v1.0 was discovered to contain a SQL injection vulnerability via the judge_id parameter at /php-jms/edit_judge.php.
Published 2023-05-03 · Modified
9.8EPSS 0.006
CVE-2023-24317
Judging Management System 1.0 was discovered to contain an arbitrary file upload vulnerability via the component edit_organizer.php.
Published 2023-02-23 · Modified
8.1EPSS 0.014
CVE-2022-46623
Judging Management System v1.0.0 was discovered to contain a SQL injection vulnerability via the username parameter.
Published 2023-01-12 · Modified
7.8EPSS 0.004
CVE-2022-46622
A cross-site scripting (XSS) vulnerability in Judging Management System v1.0 allows attackers to execute arbitrary web scripts or HTML via a crafted payload injected into the firstname parameter.
Published 2023-01-12 · Modified
6.1EPSS 0.005