Vulnerabilities (CVE)

Filtered by vendor School Attendance Monitoring System Project Subscribe
Total 3 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2018-18798 1 School Attendance Monitoring System Project 1 School Attendance Monitoring System 2023-12-10 7.5 HIGH 9.8 CRITICAL
Attendance Monitoring System 1.0 has SQL Injection via the 'id' parameter to student/index.php?view=view, event/index.php?view=view, and user/index.php?view=view.
CVE-2018-18797 1 School Attendance Monitoring System Project 1 School Attendance Monitoring System 2023-12-10 6.8 MEDIUM 8.8 HIGH
School Attendance Monitoring System 1.0 has CSRF via /user/user/edit.php.
CVE-2018-18799 1 School Attendance Monitoring System Project 1 School Attendance Monitoring System 2023-12-10 6.8 MEDIUM 8.8 HIGH
School Attendance Monitoring System 1.0 has CSRF via event/controller.php?action=photos.