Vulmon
Recent Vulnerabilities
Research Posts
Trends
Blog
About
Contact
Vulmon Alerts
By Relevance
By Risk Score
By Publish Date
alumni management system project alumni management system 1.0 vulnerabilities and exploits
(subscribe to this query)
7.5
CVSSv2
CVE-2021-25210
Arbitrary file upload vulnerability in SourceCodester Alumni Management System v 1.0 allows malicious users to execute arbitrary code, via the file upload to manage_event.php.
Alumni Management System Project Alumni Management System 1.0
7.5
CVSSv2
CVE-2021-25212
SQL injection vulnerability in SourceCodester Alumni Management System v 1.0 allows remote malicious users to execute arbitrary SQL statements, via the id parameter to manage_event.php.
Alumni Management System Project Alumni Management System 1.0
7.5
CVSSv2
CVE-2020-29214
SQL injection vulnerability in SourceCodester Alumni Management System 1.0 allows the user to inject SQL payload to bypass the authentication via admin/login.php.
Alumni Management System Project Alumni Management System 1.0
7.5
CVSSv2
CVE-2020-28070
SourceCodester Alumni Management System 1.0 is affected by SQL injection causing arbitrary remote code execution from GET input in view_event.php via the 'id' parameter.
Alumni Management System Project Alumni Management System 1.0
6.5
CVSSv2
CVE-2020-28072
A Remote Code Execution vulnerability exists in DourceCodester Alumni Management System 1.0. An authenticated attacker can upload arbitrary file in the gallery.php page and executing it on the server reaching the RCE.
Alumni Management System Project Alumni Management System 1.0
3.5
CVSSv2
CVE-2020-28071
SourceCodester Alumni Management System 1.0 is affected by cross-site Scripting (XSS) in /admin/gallery.php. After the admin authentication an attacker can upload an image in the gallery using a XSS payload in the description textarea called 'about' and reach a stored X...
Alumni Management System Project Alumni Management System 1.0
CVSSv2
CVSSv2
CVSSv3
VMScore
Recommendations:
SSTI
CVE-2024-35863
CVE-2024-35910
man-in-the-middle
CVE-2024-35912
CVE-2024-25742
LFI
CVE-2024-32002
CVE-2024-22120
Vulnerability Notification Service
You don’t have to wait for vulnerability scanning results
Get Started