Code-Projects Online Examination System vulnerabilities

4 known vulnerabilities affecting code-projects/online_examination_system.

Total CVEs
4
CISA KEV
0
Public exploits
0
Exploited in wild
0
Severity breakdown
MEDIUM4

Vulnerabilities

Page 1 of 1
CVE-2026-2173MEDIUMCVSS 6.9v1.02026-02-08
CVE-2026-2173 [MEDIUM] CWE-74 CVE-2026-2173: A vulnerability was identified in code-projects Online Examination System 1.0. Affected by this issu A vulnerability was identified in code-projects Online Examination System 1.0. Affected by this issue is some unknown functionality of the file login.php. The manipulation of the argument username/password leads to sql injection. The attack may be initiated remotely.
cvelistv5nvd
CVE-2026-1422MEDIUMCVSS 6.9v1.02026-01-26
CVE-2026-1422 [MEDIUM] CWE-74 CVE-2026-1422: A vulnerability was found in code-projects Online Examination System 1.0. Affected by this vulnerabi A vulnerability was found in code-projects Online Examination System 1.0. Affected by this vulnerability is an unknown functionality of the file /index.php of the component Login Page. Performing a manipulation of the argument User results in sql injection. The attack is possible to be carried out remotely. The exploit has been made public and could be
cvelistv5nvd
CVE-2026-1423MEDIUMCVSS 5.3v1.02026-01-26
CVE-2026-1423 [MEDIUM] CWE-284 CVE-2026-1423: A vulnerability was determined in code-projects Online Examination System 1.0. Affected by this issu A vulnerability was determined in code-projects Online Examination System 1.0. Affected by this issue is some unknown functionality of the file /admin_pic.php. Executing a manipulation can lead to unrestricted upload. The attack may be performed from remote. The exploit has been publicly disclosed and may be utilized.
cvelistv5nvd
CVE-2026-1421MEDIUMCVSS 5.1v1.02026-01-26
CVE-2026-1421 [MEDIUM] CWE-79 CVE-2026-1421: A vulnerability has been found in code-projects Online Examination System 1.0. Affected is an unknow A vulnerability has been found in code-projects Online Examination System 1.0. Affected is an unknown function of the component Add Pages. Such manipulation leads to cross site scripting. The attack can be executed remotely. The exploit has been disclosed to the public and may be used.
cvelistv5nvd
Code-Projects Online Examination System vulnerabilities | cvebase