Sourcecodester Automatic Question Paper Generator System vulnerabilities

7 known vulnerabilities affecting sourcecodester/automatic_question_paper_generator_system.

Total CVEs
7
CISA KEV
0
Public exploits
0
Exploited in wild
0
Severity breakdown
CRITICAL5HIGH1MEDIUM1

Vulnerabilities

Page 1 of 1
CVE-2023-1666CRITICALCVSS 9.8v1.02023-03-27
CVE-2023-1666 [MEDIUM] CWE-89 CVE-2023-1666: A vulnerability has been found in SourceCodester Automatic Question Paper Generator System 1.0 and c A vulnerability has been found in SourceCodester Automatic Question Paper Generator System 1.0 and classified as critical. This vulnerability affects unknown code of the file users/classes/view_class.php of the component GET Parameter Handler. The manipulation of the argument id leads to sql injection. The attack can be initiated remotely. The exploit
cvelistv5nvd
CVE-2023-1592CRITICALCVSS 9.8v1.02023-03-23
CVE-2023-1592 [MEDIUM] CWE-89 CVE-2023-1592: A vulnerability classified as critical was found in SourceCodester Automatic Question Paper Generato A vulnerability classified as critical was found in SourceCodester Automatic Question Paper Generator System 1.0. This vulnerability affects unknown code of the file admin/courses/view_class.php of the component GET Parameter Handler. The manipulation of the argument id leads to sql injection. The attack can be initiated remotely. The identifier of thi
cvelistv5nvd
CVE-2023-1591CRITICALCVSS 9.8v1.02023-03-23
CVE-2023-1591 [MEDIUM] CWE-89 CVE-2023-1591: A vulnerability classified as critical has been found in SourceCodester Automatic Question Paper Gen A vulnerability classified as critical has been found in SourceCodester Automatic Question Paper Generator System 1.0. This affects an unknown part of the file classes/Users.php?f=save_ruser. The manipulation of the argument id/email leads to sql injection. It is possible to initiate the attack remotely. The associated identifier of this vulnerability
cvelistv5nvd
CVE-2023-1593MEDIUMCVSS 6.1v1.02023-03-23
CVE-2023-1593 [LOW] CWE-79 CVE-2023-1593: A vulnerability, which was classified as problematic, has been found in SourceCodester Automatic Que A vulnerability, which was classified as problematic, has been found in SourceCodester Automatic Question Paper Generator System 1.0. This issue affects some unknown processing of the file classes/Master.php?f=save_class. The manipulation of the argument description leads to cross site scripting. The attack may be initiated remotely. The identifier VDB-22
cvelistv5nvd
CVE-2023-1441CRITICALCVSS 9.8v1.02023-03-17
CVE-2023-1441 [MEDIUM] CWE-89 CVE-2023-1441: A vulnerability has been found in SourceCodester Automatic Question Paper Generator System 1.0 and c A vulnerability has been found in SourceCodester Automatic Question Paper Generator System 1.0 and classified as critical. Affected by this vulnerability is an unknown functionality of the file admin/courses/view_course.php of the component GET Parameter Handler. The manipulation of the argument id leads to sql injection. The attack can be launched rem
cvelistv5nvd
CVE-2023-1474CRITICALCVSS 9.8v1.02023-03-17
CVE-2023-1474 [MEDIUM] CWE-89 CVE-2023-1474: A vulnerability classified as critical was found in SourceCodester Automatic Question Paper Generato A vulnerability classified as critical was found in SourceCodester Automatic Question Paper Generator System 1.0. This vulnerability affects unknown code of the file users/question_papers/manage_question_paper.php of the component GET Parameter Handler. The manipulation of the argument id leads to sql injection. The attack can be initiated remotely. Th
cvelistv5nvd
CVE-2023-1440HIGHCVSS 8.8v1.02023-03-17
CVE-2023-1440 [MEDIUM] CWE-89 CVE-2023-1440: A vulnerability, which was classified as critical, was found in SourceCodester Automatic Question Pa A vulnerability, which was classified as critical, was found in SourceCodester Automatic Question Paper Generator System 1.0. Affected is an unknown function of the file users/user/manage_user.php of the component GET Parameter Handler. The manipulation of the argument id leads to sql injection. It is possible to launch the attack remotely. The exploit
cvelistv5nvd
Sourcecodester Automatic Question Paper Generator System vulnerabilities | cvebase