📦 Student File Management System
by Fabian
🔍 What is Student File Management System?
Description coming soon...
🛡️ Security Overview
Click on a severity to filter vulnerabilities
⚠️ Known Vulnerabilities
This SQL injection vulnerability in code-projects Student File Management System 1.0 allows attackers to execute arbitrary SQL commands via the user_id parameter in /admin/delete_user.php. Remote atta...
This vulnerability allows remote attackers to execute arbitrary SQL commands via the 'stud_id' parameter in the /admin/delete_student.php file in code-projects Student File Management System 1.0. This...
This vulnerability allows remote attackers to execute SQL injection attacks against the Student File Management System 1.0 by manipulating the stud_no parameter in the /admin/save_student.php file. Th...
This SQL injection vulnerability in code-projects Student File Management System 1.0 allows attackers to execute arbitrary SQL commands through the firstname parameter in /admin/save_user.php. The vul...
This SQL injection vulnerability in code-projects Student File Management System 1.0 allows remote attackers to execute arbitrary SQL commands via the stud_id parameter in /admin/update_student.php. T...
This SQL injection vulnerability in code-projects Student File Management System 1.0 allows attackers to manipulate database queries through the user_id parameter in /admin/update_user.php. Remote att...
This vulnerability allows remote attackers to execute SQL injection attacks via the 'stud_no' parameter in the login_query.php file of Student File Management System 1.0. Attackers can potentially acc...
CVE-2025-14620 is an SQL injection vulnerability in code-projects Student File Management System 1.0 that allows attackers to manipulate database queries via the Username parameter in /admin/login_que...
This vulnerability in Student File Management System 1.0 allows attackers to bypass authorization controls when downloading files via the /download.php endpoint. By manipulating the store_id parameter...
CVE-2025-15205 is an SQL injection vulnerability in code-projects Student File Management System 1.0 affecting the /download.php file via the istore_id parameter. This allows remote attackers to execu...
This vulnerability allows remote attackers to upload arbitrary files to the Student File Management System 1.0 via the /save_file.php endpoint. Attackers can potentially upload malicious files like we...
This vulnerability allows attackers to inject malicious scripts into the Student File Management System's update user page. When exploited, it enables cross-site scripting attacks that could steal ses...
This vulnerability allows attackers to inject malicious scripts into the Student File Management System 1.0 through the /admin/update_student.php endpoint. When exploited, it enables cross-site script...