📦 Rosariosis

by Rosariosis

🔍 What is Rosariosis?

Description coming soon...

🛡️ Security Overview

Click on a severity to filter vulnerabilities

⚠️ Known Vulnerabilities

CVE-2022-2067

CRITICAL CVSS 9.1 Jun 13, 2022

This CVE describes a SQL injection vulnerability in the Rosariosis educational management software prior to version 9.0. Attackers can inject malicious SQL queries through user inputs, potentially all...

CVE-2021-44567

CRITICAL CVSS 9.8 Feb 24, 2022

An unauthenticated SQL injection vulnerability in RosarioSIS allows attackers to execute arbitrary SQL commands via the votes parameter in PortalPollsNotes.fnc.php. This affects all RosarioSIS install...

CVE-2021-44427

CRITICAL CVSS 9.8 Nov 29, 2021

An unauthenticated SQL injection vulnerability in Rosario Student Information System (rosariosis) allows remote attackers to execute arbitrary PostgreSQL statements through the syear parameter in /Sid...

CVE-2023-0994

HIGH CVSS 7.5 Feb 24, 2023

This CVE describes an information exposure vulnerability in RosarioSIS, an open-source student information system. The vulnerability allows unauthorized actors to access sensitive information through ...