📦 Student Grading System

by Oretnom23

🔍 What is Student Grading System?

Description coming soon...

🛡️ Security Overview

Click on a severity to filter vulnerabilities

⚠️ Known Vulnerabilities

CVE-2022-28025

CRITICAL CVSS 9.8 Apr 21, 2022

CVE-2022-28025 is a critical SQL injection vulnerability in Student Grading System v1.0 that allows attackers to execute arbitrary SQL commands via the /student-grading-system/rms.php?page=school_year...

CVE-2022-27304

CRITICAL CVSS 9.8 Apr 5, 2022

Student Grading System v1.0 contains a SQL injection vulnerability in the user parameter that allows attackers to execute arbitrary SQL commands. This affects all users of this specific software versi...

CVE-2025-10421

MEDIUM CVSS 6.3 Sep 15, 2025

This SQL injection vulnerability in SourceCodester Student Grading System 1.0 allows attackers to manipulate database queries through the /update_account.php endpoint. Remote attackers can potentially...

CVE-2025-10420

MEDIUM CVSS 6.3 Sep 15, 2025

This SQL injection vulnerability in SourceCodester Student Grading System 1.0 allows attackers to manipulate database queries via the ID parameter in /form137.php. Attackers can potentially read, modi...

CVE-2025-10418

MEDIUM CVSS 6.3 Sep 15, 2025

This vulnerability allows remote attackers to execute SQL injection attacks against SourceCodester Student Grading System 1.0 via the ID parameter in /view_students.php. Attackers can potentially acce...

CVE-2025-10419

MEDIUM CVSS 6.3 Sep 15, 2025

This SQL injection vulnerability in SourceCodester Student Grading System 1.0 allows attackers to manipulate database queries through the 'sy' parameter in /del_promote.php. Attackers can potentially ...

CVE-2025-10409

MEDIUM CVSS 6.3 Sep 14, 2025

This SQL injection vulnerability in SourceCodester Student Grading System 1.0 allows remote attackers to execute arbitrary SQL commands via the 'fname' parameter in /rms.php?page=users. Organizations ...

CVE-2025-10408

MEDIUM CVSS 6.3 Sep 14, 2025

This SQL injection vulnerability in SourceCodester Student Grading System 1.0 allows attackers to manipulate database queries through the /edit_user.php file's ID parameter. Remote attackers can poten...