Search Results (113 CVEs found)

CVE Vendors Products Updated CVSS v3.1
CVE-2026-2090 2 Janobe, Sourcecodester 2 Online Class Record System, Online Class Record System 2026-02-23 7.3 High
A vulnerability was determined in SourceCodester Online Class Record System 1.0. This issue affects some unknown processing of the file /admin/message/search.php. Executing a manipulation of the argument term can lead to sql injection. The attack can be executed remotely. The exploit has been publicly disclosed and may be utilized.
CVE-2026-2089 2 Janobe, Sourcecodester 2 Online Class Record System, Online Class Record System 2026-02-23 7.3 High
A vulnerability was found in SourceCodester Online Class Record System 1.0. This vulnerability affects unknown code of the file /admin/subject/controller.php. Performing a manipulation of the argument ID results in sql injection. Remote exploitation of the attack is possible. The exploit has been made public and could be used.
CVE-2026-2087 2 Janobe, Sourcecodester 2 Online Class Record System, Online Class Record System 2026-02-23 7.3 High
A flaw has been found in SourceCodester Online Class Record System 1.0. Affected by this issue is some unknown functionality of the file /admin/login.php. This manipulation of the argument user_email causes sql injection. The attack may be initiated remotely. The exploit has been published and may be used.
CVE-2026-1154 2 Janobe, Sourcecodester 2 E-learning System, Responsive E-learning System 2026-02-23 4.3 Medium
A flaw has been found in SourceCodester E-Learning System 1.0. This impacts an unknown function of the file /admin/modules/lesson/index.php of the component Lesson Module Handler. Executing a manipulation of the argument Title/Description can lead to basic cross site scripting. The attack can be executed remotely. The exploit has been published and may be used.
CVE-2021-25780 1 Janobe 1 Baby Care System 2025-11-18 7.2 High
An arbitrary file upload vulnerability has been identified in posts.php in Baby Care System 1.0. The vulnerability could be exploited by an remote attacker to upload content to the server, including PHP files, which could result in command execution and obtaining a shell.
CVE-2025-12292 2 Janobe, Sourcecodester 2 Point Of Sales, Point Of Sales 2025-11-03 7.3 High
A vulnerability was determined in SourceCodester Point of Sales 1.0. This vulnerability affects unknown code of the file /index.php. This manipulation of the argument Username causes sql injection. It is possible to initiate the attack remotely. The exploit has been publicly disclosed and may be utilized.
CVE-2025-12294 2 Janobe, Sourcecodester 2 Point Of Sales, Point Of Sales 2025-11-03 4.7 Medium
A security flaw has been discovered in SourceCodester Point of Sales 1.0. Impacted is an unknown function of the file /delete_category.php. Performing manipulation of the argument ID results in sql injection. The attack can be initiated remotely. The exploit has been released to the public and may be exploited.
CVE-2025-12293 2 Janobe, Sourcecodester 2 Point Of Sales, Point Of Sales 2025-11-03 7.3 High
A vulnerability was identified in SourceCodester Point of Sales 1.0. This issue affects some unknown processing of the file /category.php. Such manipulation of the argument Category leads to sql injection. It is possible to launch the attack remotely. The exploit is publicly available and might be used.
CVE-2025-10483 2 Janobe, Sourcecodester 2 Online Student File Management System, Online Student File Management System 2025-09-22 6.3 Medium
A flaw has been found in SourceCodester Online Student File Management System 1.0. Affected by this vulnerability is an unknown functionality of the file /admin/save_user.php. This manipulation of the argument firstname causes sql injection. The attack is possible to be carried out remotely. The exploit has been published and may be used. Other parameters might be affected as well.
CVE-2025-10482 2 Janobe, Sourcecodester 2 Online Student File Management System, Online Student File Management System 2025-09-22 7.3 High
A vulnerability was detected in SourceCodester Online Student File Management System 1.0. Affected is an unknown function of the file /admin/index.php. The manipulation of the argument Username results in sql injection. The attack can be executed remotely. The exploit is now public and may be used.
CVE-2025-10481 2 Janobe, Sourcecodester 2 Online Student File Management System, Online Student File Management System 2025-09-22 6.3 Medium
A security vulnerability has been detected in SourceCodester Online Student File Management System 1.0. This impacts an unknown function of the file /remove_file.php. The manipulation of the argument ID leads to sql injection. Remote exploitation of the attack is possible. The exploit has been disclosed publicly and may be used.
CVE-2025-10480 2 Janobe, Sourcecodester 2 Online Student File Management System, Online Student File Management System 2025-09-22 6.3 Medium
A weakness has been identified in SourceCodester Online Student File Management System 1.0. This affects an unknown function of the file /save_file.php. Executing manipulation can lead to unrestricted upload. The attack may be launched remotely. The exploit has been made available to the public and could be exploited.
CVE-2025-10602 3 Janobe, Online Exam Form Submission Project, Sourcecodester 3 Online Exam Form Submission, Online Exam Form Submission, Online Exam Form Submission 2025-09-22 6.3 Medium
A vulnerability was found in SourceCodester Online Exam Form Submission 1.0. Affected by this vulnerability is an unknown functionality of the file /admin/delete_s1.php. Performing manipulation of the argument ID results in sql injection. The attack can be initiated remotely. The exploit has been made public and could be used.
CVE-2025-10595 2 Janobe, Sourcecodester 2 Online Student File Management System, Online Student File Management System 2025-09-22 6.3 Medium
A vulnerability has been found in SourceCodester Online Student File Management System 1.0. Affected by this issue is some unknown functionality of the file /admin/delete_user.php. The manipulation of the argument user_id leads to sql injection. The attack can be initiated remotely. The exploit has been disclosed to the public and may be used.
CVE-2025-10596 3 Janobe, Online Exam Form Submission Project, Sourcecodester 3 Online Exam Form Submission, Online Exam Form Submission, Online Exam Form Submission 2025-09-22 7.3 High
A vulnerability was found in SourceCodester Online Exam Form Submission 1.0. This affects an unknown part of the file /index.php. The manipulation of the argument usn results in sql injection. The attack can be launched remotely. The exploit has been made public and could be used.
CVE-2025-10600 3 Janobe, Online Exam Form Submission Project, Sourcecodester 3 Online Exam Form Submission, Online Exam Form Submission, Online Exam Form Submission 2025-09-22 7.3 High
A flaw has been found in SourceCodester Online Exam Form Submission 1.0. This impacts an unknown function of the file /register.php. This manipulation of the argument img causes unrestricted upload. It is possible to initiate the attack remotely. The exploit has been published and may be used.
CVE-2025-10601 3 Janobe, Online Exam Form Submission Project, Sourcecodester 3 Online Exam Form Submission, Online Exam Form Submission, Online Exam Form Submission 2025-09-22 7.3 High
A vulnerability has been found in SourceCodester Online Exam Form Submission 1.0. Affected is an unknown function of the file /admin/index.php. Such manipulation of the argument email leads to sql injection. It is possible to launch the attack remotely. The exploit has been disclosed to the public and may be used.
CVE-2025-10625 3 Janobe, Online Exam Form Submission Project, Sourcecodester 3 Online Exam Form Submission, Online Exam Form Submission, Online Exam Form Submission 2025-09-20 6.3 Medium
A vulnerability was detected in SourceCodester Online Exam Form Submission 1.0. Affected by this vulnerability is an unknown functionality of the file /user/dashboard.php?page=update_profile. The manipulation of the argument phone results in sql injection. The attack may be launched remotely. The exploit is now public and may be used. Other parameters might be affected as well.
CVE-2025-10626 3 Janobe, Online Exam Form Submission Project, Sourcecodester 3 Online Exam Form Submission, Online Exam Form Submission, Online Exam Form Submission 2025-09-20 6.3 Medium
A flaw has been found in SourceCodester Online Exam Form Submission 1.0. Affected by this issue is some unknown functionality of the file /admin/update_s3.php. This manipulation of the argument credits causes sql injection. Remote exploitation of the attack is possible. The exploit has been published and may be used.
CVE-2025-10627 3 Janobe, Online Exam Form Submission Project, Sourcecodester 3 Online Exam Form Submission, Online Exam Form Submission, Online Exam Form Submission 2025-09-20 6.3 Medium
A vulnerability has been found in SourceCodester Online Exam Form Submission 1.0. This affects an unknown part of the file /admin/delete_user.php. Such manipulation of the argument ID leads to sql injection. The attack can be executed remotely. The exploit has been disclosed to the public and may be used.