Vulnerabilities > Online Course Registration Project

DATE CVE VULNERABILITY TITLE RISK
2022-01-31 CVE-2020-36064 Use of Hard-coded Credentials vulnerability in Online Course Registration Project Online Course Registration 1.0
Online Course Registration v1.0 was discovered to contain hardcoded credentials in the source code which allows attackers access to the control panel if compromised.
network
low complexity
online-course-registration-project CWE-798
critical
9.8
2020-09-15 CVE-2020-23828 Unrestricted Upload of File with Dangerous Type vulnerability in Online Course Registration Project Online Course Registration 1.0
A File Upload vulnerability in SourceCodester Online Course Registration v1.0 allows remote attackers to achieve Remote Code Execution (RCE) on the hosting webserver by uploading a crafted PHP web-shell that bypasses the image upload filters.
network
low complexity
online-course-registration-project CWE-434
critical
9.8