VYPR

School Task Manager

by Sourcecodester

CVEs (5)

  • CVE-2024-24142CriFeb 13, 2024
    risk 0.64cvss 9.8epss 0.01

    Sourcecodester School Task Manager 1.0 allows SQL Injection via the 'subject' parameter.

  • CVE-2024-24141CriJan 29, 2024
    risk 0.64cvss 9.8epss 0.01

    Sourcecodester School Task Manager App 1.0 allows SQL Injection via the 'task' parameter.

  • CVE-2024-26517CriMay 14, 2024
    risk 0.59cvss 9.1epss 0.01

    SQL Injection vulnerability in School Task Manager v.1.0 allows a remote attacker to obtain sensitive information via a crafted payload to the delete-task.php component.

  • CVE-2024-28277MedMay 14, 2024
    risk 0.40cvss 6.1epss 0.00

    In Sourcecodester School Task Manager v1.0, a vulnerability was identified within the subject_name= parameter, enabling Stored Cross-Site Scripting (XSS) attacks. This vulnerability allows attackers to manipulate the subject's name, potentially leading to the execution of…

  • CVE-2024-28276MedMay 14, 2024
    risk 0.40cvss 6.1epss 0.00

    Sourcecodester School Task Manager 1.0 is vulnerable to Cross Site Scripting (XSS) via add-task.php?task_name=.