Vulnerabilities > Judging Management System Project

DATE CVE VULNERABILITY TITLE RISK
2023-03-22 CVE-2023-1556 SQL Injection vulnerability in Judging Management System Project Judging Management System 1.0
A vulnerability was found in SourceCodester Judging Management System 1.0.
network
low complexity
judging-management-system-project CWE-89
critical
9.8
2023-03-03 CVE-2023-24641 SQL Injection vulnerability in Judging Management System Project Judging Management System 1.0
Judging Management System v1.0 was discovered to contain a SQL injection vulnerability via the sid parameter at /php-jms/updateview.php.
network
low complexity
judging-management-system-project CWE-89
critical
9.8
2023-03-03 CVE-2023-24642 SQL Injection vulnerability in Judging Management System Project Judging Management System 1.0
Judging Management System v1.0 was discovered to contain a SQL injection vulnerability via the sid parameter at /php-jms/updateTxtview.php.
network
low complexity
judging-management-system-project CWE-89
critical
9.8
2023-03-03 CVE-2023-24643 SQL Injection vulnerability in Judging Management System Project Judging Management System 1.0
Judging Management System v1.0 was discovered to contain a SQL injection vulnerability via the sid parameter at /php-jms/updateBlankTxtview.php.
network
low complexity
judging-management-system-project CWE-89
critical
9.8
2023-02-23 CVE-2023-24317 Unrestricted Upload of File with Dangerous Type vulnerability in Judging Management System Project Judging Management System 1.0
Judging Management System 1.0 was discovered to contain an arbitrary file upload vulnerability via the component edit_organizer.php.
8.1
2023-01-12 CVE-2022-46622 Cross-site Scripting vulnerability in Judging Management System Project Judging Management System 1.0
A cross-site scripting (XSS) vulnerability in Judging Management System v1.0 allows attackers to execute arbitrary web scripts or HTML via a crafted payload injected into the firstname parameter.
network
low complexity
judging-management-system-project CWE-79
6.1
2023-01-12 CVE-2022-46623 SQL Injection vulnerability in Judging Management System Project Judging Management System 1.0
Judging Management System v1.0.0 was discovered to contain a SQL injection vulnerability via the username parameter.
7.8