VYPR

Web Based Student Clearance System

by Web Based Student Clearance System Project

CVEs (9)

  • CVE-2022-3436MedOct 9, 2022
    risk 0.41cvss 6.3epss 0.01

    A vulnerability classified as critical was found in SourceCodester Web-Based Student Clearance System 1.0. Affected by this vulnerability is an unknown functionality of the file edit-photo.php of the component Photo Handler. The manipulation leads to unrestricted upload. The…

  • CVE-2022-3733MedOct 28, 2022
    risk 0.33cvss 5.0epss 0.01

    A vulnerability was found in SourceCodester Web-Based Student Clearance System. It has been classified as critical. This affects an unknown part of the file Admin/edit-admin.php. The manipulation of the argument id leads to sql injection. It is possible to initiate the attack…

  • CVE-2022-3414MedOct 7, 2022
    risk 0.33cvss 5.0epss 0.01

    A vulnerability was found in SourceCodester Web-Based Student Clearance System. It has been classified as critical. Affected is an unknown function of the file /Admin/login.php of the component POST Parameter Handler. The manipulation of the argument txtusername leads to sql…

  • CVE-2022-45224MedNov 28, 2022
    risk 0.31cvss 4.8epss 0.00

    Web-Based Student Clearance System v1.0 was discovered to contain a cross-site scripting (XSS) vulnerability in Admin/add-admin.php. This vulnerability allows attackers to execute arbitrary web scripts or HTML via a crafted payload injected into the txtfullname parameter.

  • CVE-2022-45223MedNov 28, 2022
    risk 0.31cvss 4.8epss 0.00

    Web-Based Student Clearance System v1.0 was discovered to contain a cross-site scripting (XSS) vulnerability in /Admin/add-student.php. This vulnerability allows attackers to execute arbitrary web scripts or HTML via a crafted payload injected into the txtfullname parameter.

  • CVE-2022-45221MedNov 28, 2022
    risk 0.31cvss 4.8epss 0.00

    Web-Based Student Clearance System v1.0 was discovered to contain a cross-site scripting (XSS) vulnerability in changepassword.php. This vulnerability allows attackers to execute arbitrary web scripts or HTML via a crafted payload injected into the txtnew_password parameter.

  • CVE-2022-43078MedNov 1, 2022
    risk 0.31cvss 4.8epss 0.00

    A cross-site scripting (XSS) vulnerability in /admin/add-fee.php of Web-Based Student Clearance System v1.0 allows attackers to execute arbitrary web scripts or HTML via a crafted payload injected into the cmddept parameter.

  • CVE-2022-43076MedNov 1, 2022
    risk 0.31cvss 4.8epss 0.00

    A cross-site scripting (XSS) vulnerability in /admin/edit-admin.php of Web-Based Student Clearance System v1.0 allows attackers to execute arbitrary web scripts or HTML via a crafted payload injected into the txtemail parameter.

  • CVE-2022-3434LowOct 8, 2022
    risk 0.23cvss 3.5epss 0.01

    A vulnerability was found in SourceCodester Web-Based Student Clearance System. It has been rated as problematic. Affected by this issue is the function prepare of the file /Admin/add-student.php. The manipulation leads to cross site scripting. The attack may be launched…