Vulnerabilities > Arslansoft Education Portal Project

DATE CVE VULNERABILITY TITLE RISK
2023-12-01 CVE-2023-5634 SQL Injection vulnerability in Arslansoft Education Portal Project Arslansoft Education Portal
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in ArslanSoft Education Portal allows SQL Injection.This issue affects Education Portal: before v1.1.
network
low complexity
arslansoft-education-portal-project CWE-89
critical
9.8
2023-12-01 CVE-2023-5635 Unspecified vulnerability in Arslansoft Education Portal Project Arslansoft Education Portal
Improper Protection for Outbound Error Messages and Alert Signals vulnerability in ArslanSoft Education Portal allows Account Footprinting.This issue affects Education Portal: before v1.1.
network
low complexity
arslansoft-education-portal-project
7.5
2023-12-01 CVE-2023-5636 Unrestricted Upload of File with Dangerous Type vulnerability in Arslansoft Education Portal Project Arslansoft Education Portal
Unrestricted Upload of File with Dangerous Type vulnerability in ArslanSoft Education Portal allows Command Injection.This issue affects Education Portal: before v1.1.
network
low complexity
arslansoft-education-portal-project CWE-434
critical
9.8
2023-12-01 CVE-2023-5637 Unrestricted Upload of File with Dangerous Type vulnerability in Arslansoft Education Portal Project Arslansoft Education Portal
Unrestricted Upload of File with Dangerous Type vulnerability in ArslanSoft Education Portal allows Read Sensitive Strings Within an Executable.This issue affects Education Portal: before v1.1.
7.5