📦 Complete Web Based School Management System

by Campcodes

🔍 What is Complete Web Based School Management System?

Description coming soon...

🛡️ Security Overview

Click on a severity to filter vulnerabilities

⚠️ Known Vulnerabilities

CVE-2024-34934

CRITICAL CVSS 9.8 May 23, 2024

A SQL injection vulnerability in Campcodes Complete Web-Based School Management System 1.0 allows attackers to execute arbitrary SQL commands via the conversation_id parameter in the /view/emarks_rang...

CVE-2024-34927

CRITICAL CVSS 9.8 May 23, 2024

This SQL injection vulnerability in Campcodes Complete Web-Based School Management System 1.0 allows attackers to execute arbitrary SQL commands through the name parameter in /model/update_classroom.p...

CVE-2024-34929

CRITICAL CVSS 9.8 May 23, 2024

This SQL injection vulnerability in Campcodes Complete Web-Based School Management System 1.0 allows attackers to execute arbitrary SQL commands through the my_index parameter in the find_friends.php ...

CVE-2024-34931

CRITICAL CVSS 9.8 May 23, 2024

This SQL injection vulnerability in Campcodes Complete Web-Based School Management System 1.0 allows attackers to execute arbitrary SQL commands through the name parameter in the /model/update_subject...

CVE-2024-33408

CRITICAL CVSS 9.8 May 6, 2024

A SQL injection vulnerability in campcodes Complete Web-Based School Management System 1.0 allows attackers to execute arbitrary SQL commands via the id parameter in /model/get_classroom.php. This aff...

CVE-2024-33411

CRITICAL CVSS 9.8 May 6, 2024

A SQL injection vulnerability in Campcodes Complete Web-Based School Management System 1.0 allows attackers to execute arbitrary SQL commands via the my_index parameter in /model/get_admin_profile.php...

CVE-2024-33403

CRITICAL CVSS 9.8 May 6, 2024

A SQL injection vulnerability in campcodes Complete Web-Based School Management System 1.0 allows attackers to execute arbitrary SQL commands via the event_id parameter in /model/get_events.php. This ...

CVE-2024-34936

HIGH CVSS 8.6 May 23, 2024

This SQL injection vulnerability in Campcodes Complete Web-Based School Management System 1.0 allows attackers to execute arbitrary SQL commands through the month parameter in /view/event1.php. This c...

CVE-2024-33405

HIGH CVSS 8.6 May 6, 2024

This SQL injection vulnerability in campcodes Complete Web-Based School Management System 1.0 allows attackers to execute arbitrary SQL commands through the friend_index parameter in add_friends.php. ...

CVE-2024-33410

HIGH CVSS 8.1 May 6, 2024

This SQL injection vulnerability in campcodes Complete Web-Based School Management System 1.0 allows attackers to execute arbitrary SQL commands through the id parameter in the /model/delete_range_gra...

CVE-2024-34933

MEDIUM CVSS 6.3 May 23, 2024

This SQL injection vulnerability in Campcodes Complete Web-Based School Management System 1.0 allows attackers to execute arbitrary SQL commands through the admission_fee parameter in the /model/updat...

CVE-2024-5239

MEDIUM CVSS 6.3 May 23, 2024

This critical SQL injection vulnerability in Campcodes Complete Web-Based School Management System 1.0 allows attackers to manipulate database queries through the 'grade' parameter in /view/timetable_...

CVE-2024-5237

MEDIUM CVSS 6.3 May 23, 2024

This critical SQL injection vulnerability in Campcodes Complete Web-Based School Management System 1.0 allows attackers to manipulate database queries through the 'grade' parameter in the /view/timeta...

CVE-2024-5236

MEDIUM CVSS 6.3 May 23, 2024

This critical SQL injection vulnerability in Campcodes Complete Web-Based School Management System 1.0 allows remote attackers to execute arbitrary SQL commands via the 'date' parameter in /view/teach...

CVE-2024-5234

MEDIUM CVSS 6.3 May 23, 2024

This critical SQL injection vulnerability in Campcodes Complete Web-Based School Management System 1.0 allows attackers to manipulate database queries via the 'index' parameter in /view/teacher_salary...

CVE-2024-5114

MEDIUM CVSS 6.3 May 20, 2024

This critical SQL injection vulnerability in Campcodes Complete Web-Based School Management System 1.0 allows remote attackers to execute arbitrary SQL commands via the 'index' parameter in the /view/...

CVE-2024-5110

MEDIUM CVSS 6.3 May 20, 2024

This is a critical SQL injection vulnerability in Campcodes Complete Web-Based School Management System 1.0. Attackers can remotely exploit the /view/student_payment_invoice.php file to execute arbitr...

CVE-2024-5112

MEDIUM CVSS 6.3 May 20, 2024

This critical SQL injection vulnerability in Campcodes Complete Web-Based School Management System 1.0 allows remote attackers to manipulate database queries through the std_index parameter in /view/s...

CVE-2024-5108

MEDIUM CVSS 6.3 May 20, 2024

This critical SQL injection vulnerability in Campcodes Complete Web-Based School Management System 1.0 allows remote attackers to execute arbitrary SQL commands via the 'index' parameter in the /view/...

CVE-2024-5106

MEDIUM CVSS 6.3 May 19, 2024

This critical SQL injection vulnerability in Campcodes Complete Web-Based School Management System 1.0 allows attackers to manipulate database queries through the /view/student_payment_details3.php en...

CVE-2024-5103

MEDIUM CVSS 6.3 May 19, 2024

This is a critical SQL injection vulnerability in Campcodes Complete Web-Based School Management System 1.0. Attackers can manipulate the 'grade' parameter in the /view/student_first_payment.php file ...

CVE-2024-4910

MEDIUM CVSS 6.3 May 15, 2024

This CVE describes a critical SQL injection vulnerability in Campcodes Complete Web-Based School Management System 1.0. Attackers can manipulate the 'grade' parameter in the /view/student_exam_mark_in...

CVE-2024-4909

MEDIUM CVSS 6.3 May 15, 2024

This is a critical SQL injection vulnerability in Campcodes Complete Web-Based School Management System 1.0. Attackers can manipulate the 'due_year' parameter in the /view/student_due_payment.php file...

CVE-2024-4907

MEDIUM CVSS 6.3 May 15, 2024

This critical SQL injection vulnerability in Campcodes Complete Web-Based School Management System 1.0 allows attackers to manipulate database queries through the 'grade' parameter in /view/show_stude...

CVE-2024-33407

MEDIUM CVSS 5.9 May 6, 2024

This SQL injection vulnerability in campcodes Complete Web-Based School Management System 1.0 allows attackers to execute arbitrary SQL commands through the id parameter in the /model/delete_record.ph...