Vulnerabilities (CVE)

Filtered by vendor Ingenious School Management System Project Subscribe
Filtered by product Ingenious School Management System
Total 2 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2017-15957 1 Ingenious School Management System Project 1 Ingenious School Management System 2023-12-10 6.5 MEDIUM 8.8 HIGH
my_profile.php in Ingenious School Management System 2.3.0 allows a student or teacher to upload an arbitrary file.
CVE-2017-16561 1 Ingenious School Management System Project 1 Ingenious School Management System 2023-12-10 7.5 HIGH 9.8 CRITICAL
/view/friend_profile.php in Ingenious School Management System 2.3.0 is vulnerable to Boolean-based and Time-based SQL injection in the 'friend_index' parameter of a GET request.