Vulnerabilities > Faculty Evaluation System Project > High

DATE CVE VULNERABILITY TITLE RISK
2023-06-06 CVE-2023-33569 Unrestricted Upload of File with Dangerous Type vulnerability in Faculty Evaluation System Project Faculty Evaluation System 1.0
Sourcecodester Faculty Evaluation System v1.0 is vulnerable to arbitrary code execution via ip/eval/ajax.php?action=update_user.
7.2
2023-05-26 CVE-2023-33439 SQL Injection vulnerability in Faculty Evaluation System Project Faculty Evaluation System 1.0
Sourcecodester Faculty Evaluation System v1.0 is vulnerable to SQL Injection via /eval/admin/manage_task.php?id=.
network
low complexity
faculty-evaluation-system-project CWE-89
7.2
2023-05-26 CVE-2023-33440 Unspecified vulnerability in Faculty Evaluation System Project Faculty Evaluation System 1.0
Sourcecodester Faculty Evaluation System v1.0 is vulnerable to arbitrary code execution via /eval/ajax.php?action=save_user.
network
low complexity
faculty-evaluation-system-project
7.2
2023-05-15 CVE-2023-31842 SQL Injection vulnerability in Faculty Evaluation System Project Faculty Evaluation System 1.0
Sourcecodester Faculty Evaluation System v1.0 is vulnerable to SQL Injection via /eval/index.php?page=edit_faculty&id=.
network
low complexity
faculty-evaluation-system-project CWE-89
7.2
2023-05-15 CVE-2023-31843 SQL Injection vulnerability in Faculty Evaluation System Project Faculty Evaluation System 1.0
Sourcecodester Faculty Evaluation System v1.0 is vulnerable to SQL Injection via /eval/admin/view_faculty.php?id=.
network
low complexity
faculty-evaluation-system-project CWE-89
7.2
2023-05-15 CVE-2023-31844 SQL Injection vulnerability in Faculty Evaluation System Project Faculty Evaluation System 1.0
Sourcecodester Faculty Evaluation System v1.0 is vulnerable to SQL Injection via /eval/admin/manage_subject.php?id=.
network
low complexity
faculty-evaluation-system-project CWE-89
7.2
2023-05-15 CVE-2023-31845 SQL Injection vulnerability in Faculty Evaluation System Project Faculty Evaluation System 1.0
Sourcecodester Faculty Evaluation System v1.0 is vulnerable to SQL Injection via /eval/admin/manage_class.php?id=.
network
low complexity
faculty-evaluation-system-project CWE-89
7.2