Vulnerabilities > Student Management System Project

DATE CVE VULNERABILITY TITLE RISK
2023-09-21 CVE-2023-41616 Cross-site Scripting vulnerability in Student Management System Project Student Management System 1.0
A reflected cross-site scripting (XSS) vulnerability in the Search Student function of Student Management System v1.2.3 and before allows attackers to execute arbitrary Javascript in the context of a victim user's browser via a crafted payload.
network
low complexity
student-management-system-project CWE-79
4.8
2023-05-31 CVE-2023-3007 Weak Password Recovery Mechanism for Forgotten Password vulnerability in Student Management System Project Student Management System 1.0
A vulnerability was found in ningzichun Student Management System 1.0.
network
low complexity
student-management-system-project CWE-640
critical
9.8
2023-05-31 CVE-2023-3008 SQL Injection vulnerability in Student Management System Project Student Management System 1.0
A vulnerability classified as critical has been found in ningzichun Student Management System 1.0.
network
low complexity
student-management-system-project CWE-89
critical
9.8
2020-08-20 CVE-2020-23935 SQL Injection vulnerability in Student Management System Project Student Management System 1.0
Kabir Alhasan Student Management System 1.0 is vulnerable to Authentication Bypass via "Username: admin'# && Password: (Write Something)".
network
low complexity
student-management-system-project CWE-89
7.5