Vulnerabilidades

Resumen — últimos 7 días

Vulnerabilidades nuevas2704▼ 598 respecto a la semana anterior
Críticas / altas1288▼ 199 respecto a la semana anterior
Nueva explotación activa (KEV)4▼ 5 respecto a la semana anterior
Sin puntuar (sin CVSS)299▼ 211 respecto a la semana anterior
–

23 resultados, ordenados por fecha de publicación (más recientes primero)

CVEEstadoSeveridadEPSS Explotación activaTecnologías afectadasPublicada ▼Modificada Descripción
AnalizadaMedia (5.5)0.38%—Senior-walter Online Student Clearance System8/12/202517/6/2026
A vulnerability was determined in SourceCodester Online Student Clearance System 1.0. The affected element is an unknown function of the file /Admin/delete-fee.php of the component Fee Table Handler. Executing manipulation of the argument ID can lead to improper authorization. The attack may be performed from remote.…
AnalizadaBaja (2)0.32%—Senior-walter Online Student Clearance System24/11/202517/6/2026
A flaw has been found in SourceCodester Online Student Clearance System 1.0. Impacted is an unknown function of the file /Admin/changepassword.php. This manipulation of the argument txtconfirm_password causes sql injection. It is possible to initiate the attack remotely. The exploit has been published and may be used.
ModificadaAlta (8.8)0.41%—Senior-walter Online Student Clearance System10/10/20255/7/2026
SourceCodester Online Student Clearance System 1.0 is vulnerable to Incorrect Access Control. The application contains a logic flaw which allows low privilege users can forge high privileged sessions and perform sensitive operations.
AnalizadaBaja (2)0.29%—Senior-walter Online Student Clearance System10/6/202517/6/2026
A vulnerability has been found in SourceCodester Online Student Clearance System 1.0 and classified as problematic. Affected by this vulnerability is an unknown functionality of the file /Admin/add-fee.php. The manipulation of the argument txtamt leads to cross site scripting. The attack can be launched remotely. The…
AnalizadaMedia (5.3)0.32%—Senior-walter Online Student Clearance System18/5/202517/6/2026
A vulnerability, which was classified as problematic, has been found in SourceCodester Online Student Clearance System 1.0. Affected by this issue is some unknown functionality. The manipulation leads to cross-site request forgery. The attack may be launched remotely. The exploit has been disclosed to the public and…
AnalizadaMedia (6.9)1.1%—Senior-walter Online Student Clearance System16/5/202517/6/2026
A vulnerability, which was classified as problematic, was found in SourceCodester Online Student Clearance System 1.0. This affects an unknown part. The manipulation leads to exposure of information through directory listing. It is possible to initiate the attack remotely. The exploit has been disclosed to the public…
AnalizadaMedia (4.8)0.65%—Senior-walter Online Student Clearance System9/5/202517/6/2026
A vulnerability classified as problematic was found in SourceCodester Online Student Clearance System 1.0. Affected by this vulnerability is an unknown functionality of the file /admin/add-student.php. The manipulation of the argument Fullname leads to cross site scripting. The attack can be launched remotely. The…
AnalizadaMedia (4.8)0.65%—Senior-walter Online Student Clearance System9/5/202517/6/2026
A vulnerability classified as problematic has been found in SourceCodester Online Student Clearance System 1.0. Affected is an unknown function of the file /admin/add-admin.php. The manipulation of the argument txtusername/txtfullname/txtpassword/txtpassword2 leads to cross site scripting. It is possible to launch the…
AnalizadaMedia (6.9)1.3%—Senior-walter Online Student Clearance System9/5/202517/6/2026
A vulnerability was found in SourceCodester Online Student Clearance System 1.0. It has been rated as critical. This issue affects some unknown processing of the file /edit-photo.php. The manipulation of the argument userImage leads to unrestricted upload. The attack may be initiated remotely. The exploit has been…
AnalizadaMedia (6.9)1.1%—Senior-walter Online Student Clearance System9/5/202517/6/2026
A vulnerability was found in SourceCodester Online Student Clearance System 1.0. It has been declared as critical. This vulnerability affects unknown code of the file /admin/edit-admin.php. The manipulation of the argument id/txtfullname/txtemail/cmddesignation leads to sql injection. The attack can be initiated…
AnalizadaMedia (6.9)0.64%—Senior-walter Online Student Clearance System6/5/202517/6/2026
A vulnerability classified as critical was found in SourceCodester Online Student Clearance System 1.0. This vulnerability affects unknown code of the file /Admin/login.php. The manipulation of the argument id/username/password leads to sql injection. The attack can be initiated remotely. The exploit has been…
AnalizadaAlta (7.2)0.71%—Walterjnr1 Web-based Student Clearance System29/2/202417/6/2026
A vulnerability, which was classified as critical, has been found in SourceCodester Web-Based Student Clearance System 1.0. Affected by this issue is some unknown functionality of the file /admin/edit-admin.php of the component Edit User Profile Page. The manipulation of the argument Fullname leads to sql injection.…
AnalizadaCrítica (9.8)0.76%—Walterjnr1 Web-based Student Clearance System29/2/202417/6/2026
A vulnerability classified as critical was found in SourceCodester Web-Based Student Clearance System 1.0. Affected by this vulnerability is an unknown functionality of the file /Admin/login.php. The manipulation of the argument txtpassword leads to sql injection. The attack can be launched remotely. The exploit has…
ModificadaMedia (4.8)0.49%—Web-based Student Clearance System Project Web-based Student Clearance System28/11/202217/6/2026
Web-Based Student Clearance System v1.0 was discovered to contain a cross-site scripting (XSS) vulnerability in Admin/add-admin.php. This vulnerability allows attackers to execute arbitrary web scripts or HTML via a crafted payload injected into the txtfullname parameter.
ModificadaMedia (4.8)0.49%—Web-based Student Clearance System Project Web-based Student Clearance System28/11/202217/6/2026
Web-Based Student Clearance System v1.0 was discovered to contain a cross-site scripting (XSS) vulnerability in /Admin/add-student.php. This vulnerability allows attackers to execute arbitrary web scripts or HTML via a crafted payload injected into the txtfullname parameter.
ModificadaMedia (4.8)0.48%—Web-based Student Clearance System Project Web-based Student Clearance System28/11/202217/6/2026
Web-Based Student Clearance System v1.0 was discovered to contain a cross-site scripting (XSS) vulnerability in changepassword.php. This vulnerability allows attackers to execute arbitrary web scripts or HTML via a crafted payload injected into the txtnew_password parameter.
ModificadaMedia (4.8)0.50%—Web-based Student Clearance System Project Web-based Student Clearance System1/11/202217/6/2026
A cross-site scripting (XSS) vulnerability in /admin/add-fee.php of Web-Based Student Clearance System v1.0 allows attackers to execute arbitrary web scripts or HTML via a crafted payload injected into the cmddept parameter.
ModificadaMedia (4.8)0.50%—Web-based Student Clearance System Project Web-based Student Clearance System1/11/202217/6/2026
A cross-site scripting (XSS) vulnerability in /admin/edit-admin.php of Web-Based Student Clearance System v1.0 allows attackers to execute arbitrary web scripts or HTML via a crafted payload injected into the txtemail parameter.
ModificadaAlta (8.8)0.58%—Web-based Student Clearance System Project Web-based Student Clearance System28/10/202217/6/2026
A vulnerability was found in SourceCodester Web-Based Student Clearance System. It has been classified as critical. This affects an unknown part of the file Admin/edit-admin.php. The manipulation of the argument id leads to sql injection. It is possible to initiate the attack remotely. The exploit has been disclosed…
ModificadaMedia (5.4)0.51%—Student Clearance System Project Student Clearance System11/10/202217/6/2026
A Stored XSS issue in Student Clearance System v.1.0 allows the injection of arbitrary JavaScript in the Student registration form.
ModificadaAlta (7.5)0.64%—Web-based Student Clearance System Project Web-based Student Clearance System9/10/202217/6/2026
A vulnerability classified as critical was found in SourceCodester Web-Based Student Clearance System 1.0. Affected by this vulnerability is an unknown functionality of the file edit-photo.php of the component Photo Handler. The manipulation leads to unrestricted upload. The attack can be launched remotely. The…
ModificadaMedia (5.4)0.66%—Web-based Student Clearance System Project Web-based Student Clearance System8/10/202217/6/2026
A vulnerability was found in SourceCodester Web-Based Student Clearance System. It has been rated as problematic. Affected by this issue is the function prepare of the file /Admin/add-student.php. The manipulation leads to cross site scripting. The attack may be launched remotely. The exploit has been disclosed to the…
ModificadaCrítica (9.8)0.68%—Web-based Student Clearance System Project Web-based Student Clearance System7/10/202217/6/2026
A vulnerability was found in SourceCodester Web-Based Student Clearance System. It has been classified as critical. Affected is an unknown function of the file /Admin/login.php of the component POST Parameter Handler. The manipulation of the argument txtusername leads to sql injection. It is possible to launch the…