Vulnerabilities > Kabir M Alhasan > Student Management System

DATE CVE VULNERABILITY TITLE RISK
2024-05-17 CVE-2024-5047 Unspecified vulnerability in Kabir-M-Alhasan Student Management System 1.0
A vulnerability classified as critical has been found in SourceCodester Student Management System 1.0.
network
low complexity
kabir-m-alhasan
critical
9.8
2023-05-31 CVE-2023-3007 Weak Password Recovery Mechanism for Forgotten Password vulnerability in Kabir-M-Alhasan Student Management System 1.0
A vulnerability was found in ningzichun Student Management System 1.0.
network
low complexity
kabir-m-alhasan CWE-640
critical
9.8
2023-05-31 CVE-2023-3008 SQL Injection vulnerability in Kabir-M-Alhasan Student Management System 1.0
A vulnerability classified as critical has been found in ningzichun Student Management System 1.0.
network
low complexity
kabir-m-alhasan CWE-89
critical
9.8
2022-07-28 CVE-2021-33371 Cross-site Scripting vulnerability in Kabir-M-Alhasan Student Management System 1.0
A stored cross-site scripting (XSS) vulnerability in /nav_bar_action.php of Student Management System v1.0 allows attackers to execute arbitrary web scripts or HTML via a crafted payload injected into the Chat box.
network
low complexity
kabir-m-alhasan CWE-79
5.4
2020-08-20 CVE-2020-23935 SQL Injection vulnerability in Kabir-M-Alhasan Student Management System 1.0
Kabir Alhasan Student Management System 1.0 is vulnerable to Authentication Bypass via "Username: admin'# && Password: (Write Something)".
network
low complexity
kabir-m-alhasan CWE-89
critical
9.8