Vulnerabilities > Engineers Online Portal Project > Engineers Online Portal > High

DATE CVE VULNERABILITY TITLE RISK
2024-01-07 CVE-2024-0260 Insufficient Session Expiration vulnerability in Engineers Online Portal Project Engineers Online Portal 1.0
A vulnerability, which was classified as problematic, was found in SourceCodester Engineers Online Portal 1.0.
network
low complexity
engineers-online-portal-project CWE-613
7.5
2023-09-29 CVE-2023-5283 SQL Injection vulnerability in Engineers Online Portal Project Engineers Online Portal 1.0
A vulnerability was found in SourceCodester Engineers Online Portal 1.0.
network
low complexity
engineers-online-portal-project CWE-89
8.8
2023-09-29 CVE-2023-5284 Unrestricted Upload of File with Dangerous Type vulnerability in Engineers Online Portal Project Engineers Online Portal 1.0
A vulnerability classified as critical has been found in SourceCodester Engineers Online Portal 1.0.
network
low complexity
engineers-online-portal-project CWE-434
8.8
2021-12-20 CVE-2021-43437 Injection vulnerability in Engineers Online Portal Project Engineers Online Portal 1.0
In sourcecodetester Engineers Online Portal as of 10-21-21, an attacker can manipulate the Host header as seen by the web application and cause the application to behave in unexpected ways.
network
low complexity
engineers-online-portal-project CWE-74
8.8
2021-11-05 CVE-2021-42665 SQL Injection vulnerability in Engineers Online Portal Project Engineers Online Portal 1.0
An SQL Injection vulnerability exists in Sourcecodester Engineers Online Portal in PHP via the login form inside of index.php, which can allow an attacker to bypass authentication.
network
low complexity
engineers-online-portal-project CWE-89
7.5
2021-11-05 CVE-2021-42668 SQL Injection vulnerability in Engineers Online Portal Project Engineers Online Portal
A SQL Injection vulnerability exists in Sourcecodester Engineers Online Portal in PHP via the id parameter in the my_classmates.php web page..
network
low complexity
engineers-online-portal-project CWE-89
7.5
2021-11-05 CVE-2021-42670 SQL Injection vulnerability in Engineers Online Portal Project Engineers Online Portal
A SQL injection vulnerability exists in Sourcecodester Engineers Online Portal in PHP via the id parameter to the announcements_student.php web page.
network
low complexity
engineers-online-portal-project CWE-89
7.5