Code-Projects Student Enrollment vulnerabilities
5 known vulnerabilities affecting code-projects/student_enrollment.
Total CVEs
5
CISA KEV
0
Public exploits
0
Exploited in wild
0
Severity breakdown
CRITICAL3HIGH1MEDIUM1
Vulnerabilities
Page 1 of 1
CVE-2025-7191MEDIUMCVSS 6.9v1.02025-07-08
CVE-2025-7191 [MEDIUM] CWE-74 CVE-2025-7191: A vulnerability has been found in code-projects Student Enrollment System 1.0 and classified as crit
A vulnerability has been found in code-projects Student Enrollment System 1.0 and classified as critical. This vulnerability affects unknown code of the file /login.php. The manipulation of the argument Username leads to sql injection. The attack can be initiated remotely. The exploit has been disclosed to the public and may be used.
nvd
CVE-2023-41505CRITICALCVSS 9.8v1.02024-03-13
CVE-2023-41505 [CRITICAL] CWE-434 CVE-2023-41505: An arbitrary file upload vulnerability in the Add Student's Profile Picture function of Student Enro
An arbitrary file upload vulnerability in the Add Student's Profile Picture function of Student Enrollment In PHP v1.0 allows attackers to execute arbitrary code via uploading a crafted PHP file.
nvd
CVE-2023-41504HIGHCVSS 8.8v1.02024-03-13
CVE-2023-41504 [HIGH] CWE-89 CVE-2023-41504: SQL Injection vulnerability in Student Enrollment In PHP 1.0 allows attackers to run arbitrary code
SQL Injection vulnerability in Student Enrollment In PHP 1.0 allows attackers to run arbitrary code via the Student Search function.
nvd
CVE-2023-41503CRITICALCVSS 9.8v1.02024-03-07
CVE-2023-41503 [CRITICAL] CWE-94 CVE-2023-41503: Student Enrollment In PHP v1.0 was discovered to contain a SQL injection vulnerability via the Login
Student Enrollment In PHP v1.0 was discovered to contain a SQL injection vulnerability via the Login function.
nvd
CVE-2023-41506CRITICALCVSS 9.8v1.02024-02-27
CVE-2023-41506 [CRITICAL] CWE-434 CVE-2023-41506: An arbitrary file upload vulnerability in the Update/Edit Student's Profile Picture function of Stud
An arbitrary file upload vulnerability in the Update/Edit Student's Profile Picture function of Student Enrollment In PHP v1.0 allows attackers to execute arbitrary code via uploading a crafted PHP file.
nvd