Sourcecodester Automatic Question Paper Generator System vulnerabilities
7 known vulnerabilities affecting sourcecodester/automatic_question_paper_generator_system.
Total CVEs
7
CISA KEV
0
Public exploits
0
Exploited in wild
0
Severity breakdown
CRITICAL5HIGH1MEDIUM1
Vulnerabilities
Page 1 of 1
CVE-2023-1666CRITICALCVSS 9.8v1.02023-03-27
CVE-2023-1666 [MEDIUM] CWE-89 CVE-2023-1666: A vulnerability has been found in SourceCodester Automatic Question Paper Generator System 1.0 and c
A vulnerability has been found in SourceCodester Automatic Question Paper Generator System 1.0 and classified as critical. This vulnerability affects unknown code of the file users/classes/view_class.php of the component GET Parameter Handler. The manipulation of the argument id leads to sql injection. The attack can be initiated remotely. The exploit
cvelistv5nvd
CVE-2023-1592CRITICALCVSS 9.8v1.02023-03-23
CVE-2023-1592 [MEDIUM] CWE-89 CVE-2023-1592: A vulnerability classified as critical was found in SourceCodester Automatic Question Paper Generato
A vulnerability classified as critical was found in SourceCodester Automatic Question Paper Generator System 1.0. This vulnerability affects unknown code of the file admin/courses/view_class.php of the component GET Parameter Handler. The manipulation of the argument id leads to sql injection. The attack can be initiated remotely. The identifier of thi
cvelistv5nvd
CVE-2023-1591CRITICALCVSS 9.8v1.02023-03-23
CVE-2023-1591 [MEDIUM] CWE-89 CVE-2023-1591: A vulnerability classified as critical has been found in SourceCodester Automatic Question Paper Gen
A vulnerability classified as critical has been found in SourceCodester Automatic Question Paper Generator System 1.0. This affects an unknown part of the file classes/Users.php?f=save_ruser. The manipulation of the argument id/email leads to sql injection. It is possible to initiate the attack remotely. The associated identifier of this vulnerability
cvelistv5nvd
CVE-2023-1593MEDIUMCVSS 6.1v1.02023-03-23
CVE-2023-1593 [LOW] CWE-79 CVE-2023-1593: A vulnerability, which was classified as problematic, has been found in SourceCodester Automatic Que
A vulnerability, which was classified as problematic, has been found in SourceCodester Automatic Question Paper Generator System 1.0. This issue affects some unknown processing of the file classes/Master.php?f=save_class. The manipulation of the argument description leads to cross site scripting. The attack may be initiated remotely. The identifier VDB-22
cvelistv5nvd
CVE-2023-1441CRITICALCVSS 9.8v1.02023-03-17
CVE-2023-1441 [MEDIUM] CWE-89 CVE-2023-1441: A vulnerability has been found in SourceCodester Automatic Question Paper Generator System 1.0 and c
A vulnerability has been found in SourceCodester Automatic Question Paper Generator System 1.0 and classified as critical. Affected by this vulnerability is an unknown functionality of the file admin/courses/view_course.php of the component GET Parameter Handler. The manipulation of the argument id leads to sql injection. The attack can be launched rem
cvelistv5nvd
CVE-2023-1474CRITICALCVSS 9.8v1.02023-03-17
CVE-2023-1474 [MEDIUM] CWE-89 CVE-2023-1474: A vulnerability classified as critical was found in SourceCodester Automatic Question Paper Generato
A vulnerability classified as critical was found in SourceCodester Automatic Question Paper Generator System 1.0. This vulnerability affects unknown code of the file users/question_papers/manage_question_paper.php of the component GET Parameter Handler. The manipulation of the argument id leads to sql injection. The attack can be initiated remotely. Th
cvelistv5nvd
CVE-2023-1440HIGHCVSS 8.8v1.02023-03-17
CVE-2023-1440 [MEDIUM] CWE-89 CVE-2023-1440: A vulnerability, which was classified as critical, was found in SourceCodester Automatic Question Pa
A vulnerability, which was classified as critical, was found in SourceCodester Automatic Question Paper Generator System 1.0. Affected is an unknown function of the file users/user/manage_user.php of the component GET Parameter Handler. The manipulation of the argument id leads to sql injection. It is possible to launch the attack remotely. The exploit
cvelistv5nvd