Sourcecodester Online Courseware vulnerabilities

14 known vulnerabilities affecting sourcecodester/online_courseware.

Total CVEs
14
CISA KEV
0
Public exploits
0
Exploited in wild
0
Severity breakdown
CRITICAL10MEDIUM4

Vulnerabilities

Page 1 of 1
CVE-2025-0800MEDIUMCVSS 5.1v1.02025-01-29
CVE-2025-0800 [MEDIUM] CWE-79 CVE-2025-0800: A vulnerability classified as problematic has been found in SourceCodester Online Courseware 1.0. Af A vulnerability classified as problematic has been found in SourceCodester Online Courseware 1.0. Affected is an unknown function of the file /pcci/admin/saveeditt.php of the component Edit Teacher. The manipulation of the argument fname leads to cross site scripting. It is possible to launch the attack remotely. The exploit has been disclosed to the p
cvelistv5nvd
CVE-2024-3416CRITICALCVSS 9.8v1.02024-04-07
CVE-2024-3416 [MEDIUM] CWE-89 CVE-2024-3416: A vulnerability classified as critical was found in SourceCodester Online Courseware 1.0. This vulne A vulnerability classified as critical was found in SourceCodester Online Courseware 1.0. This vulnerability affects unknown code of the file admin/editt.php. The manipulation of the argument id leads to sql injection. The attack can be initiated remotely. The exploit has been disclosed to the public and may be used. The identifier of this vulnerabilit
cvelistv5nvd
CVE-2024-3419CRITICALCVSS 9.8v1.02024-04-07
CVE-2024-3419 [MEDIUM] CWE-89 CVE-2024-3419: A vulnerability has been found in SourceCodester Online Courseware 1.0 and classified as critical. A A vulnerability has been found in SourceCodester Online Courseware 1.0 and classified as critical. Affected by this vulnerability is an unknown functionality of the file admin/edit.php. The manipulation of the argument id leads to sql injection. The attack can be launched remotely. The exploit has been disclosed to the public and may be used. The assoc
cvelistv5nvd
CVE-2024-3422CRITICALCVSS 9.8v1.02024-04-07
CVE-2024-3422 [MEDIUM] CWE-89 CVE-2024-3422: A vulnerability was found in SourceCodester Online Courseware 1.0. It has been declared as critical. A vulnerability was found in SourceCodester Online Courseware 1.0. It has been declared as critical. This vulnerability affects unknown code of the file admin/activatestud.php. The manipulation of the argument selector leads to sql injection. The attack can be initiated remotely. The exploit has been disclosed to the public and may be used. VDB-259594
cvelistv5nvd
CVE-2024-3421CRITICALCVSS 9.8v1.02024-04-07
CVE-2024-3421 [MEDIUM] CWE-89 CVE-2024-3421: A vulnerability was found in SourceCodester Online Courseware 1.0. It has been classified as critica A vulnerability was found in SourceCodester Online Courseware 1.0. It has been classified as critical. This affects an unknown part of the file admin/deactivatestud.php. The manipulation of the argument selector leads to sql injection. It is possible to initiate the attack remotely. The exploit has been disclosed to the public and may be used. The iden
cvelistv5nvd
CVE-2024-3420CRITICALCVSS 9.8v1.02024-04-07
CVE-2024-3420 [MEDIUM] CWE-89 CVE-2024-3420: A vulnerability was found in SourceCodester Online Courseware 1.0 and classified as critical. Affect A vulnerability was found in SourceCodester Online Courseware 1.0 and classified as critical. Affected by this issue is some unknown functionality of the file admin/saveedit.php. The manipulation of the argument id leads to sql injection. The attack may be launched remotely. The exploit has been disclosed to the public and may be used. The identifier o
cvelistv5nvd
CVE-2024-3425CRITICALCVSS 9.8v1.02024-04-07
CVE-2024-3425 [MEDIUM] CWE-89 CVE-2024-3425: A vulnerability classified as critical was found in SourceCodester Online Courseware 1.0. Affected b A vulnerability classified as critical was found in SourceCodester Online Courseware 1.0. Affected by this vulnerability is an unknown functionality of the file admin/activateall.php. The manipulation of the argument selector leads to sql injection. The attack can be launched remotely. The exploit has been disclosed to the public and may be used. The i
cvelistv5nvd
CVE-2024-3424CRITICALCVSS 9.8v1.02024-04-07
CVE-2024-3424 [MEDIUM] CWE-89 CVE-2024-3424: A vulnerability classified as critical has been found in SourceCodester Online Courseware 1.0. Affec A vulnerability classified as critical has been found in SourceCodester Online Courseware 1.0. Affected is an unknown function of the file admin/listscore.php. The manipulation of the argument title leads to sql injection. It is possible to launch the attack remotely. The exploit has been disclosed to the public and may be used. The identifier of this
cvelistv5nvd
CVE-2024-3423CRITICALCVSS 9.8v1.02024-04-07
CVE-2024-3423 [MEDIUM] CWE-89 CVE-2024-3423: A vulnerability was found in SourceCodester Online Courseware 1.0. It has been rated as critical. Th A vulnerability was found in SourceCodester Online Courseware 1.0. It has been rated as critical. This issue affects some unknown processing of the file admin/activateteach.php. The manipulation of the argument selector leads to sql injection. The attack may be initiated remotely. The exploit has been disclosed to the public and may be used. The associ
cvelistv5nvd
CVE-2024-3417CRITICALCVSS 9.8v1.02024-04-07
CVE-2024-3417 [MEDIUM] CWE-89 CVE-2024-3417: A vulnerability, which was classified as critical, has been found in SourceCodester Online Coursewar A vulnerability, which was classified as critical, has been found in SourceCodester Online Courseware 1.0. This issue affects some unknown processing of the file admin/saveeditt.php. The manipulation of the argument contact leads to sql injection. The attack may be initiated remotely. The exploit has been disclosed to the public and may be used. The id
cvelistv5nvd
CVE-2024-3418CRITICALCVSS 9.8v1.02024-04-07
CVE-2024-3418 [MEDIUM] CWE-89 CVE-2024-3418: A vulnerability, which was classified as critical, was found in SourceCodester Online Courseware 1.0 A vulnerability, which was classified as critical, was found in SourceCodester Online Courseware 1.0. Affected is an unknown function of the file admin/deactivateteach.php. The manipulation of the argument selector leads to sql injection. It is possible to launch the attack remotely. The exploit has been disclosed to the public and may be used. VDB-259
cvelistv5nvd
CVE-2024-3426MEDIUMCVSS 5.4v1.02024-04-07
CVE-2024-3426 [LOW] CWE-79 CVE-2024-3426: A vulnerability, which was classified as problematic, has been found in SourceCodester Online Course A vulnerability, which was classified as problematic, has been found in SourceCodester Online Courseware 1.0. Affected by this issue is some unknown functionality of the file editt.php. The manipulation of the argument id leads to cross site scripting. The attack may be launched remotely. The exploit has been disclosed to the public and may be used. VDB-2
cvelistv5nvd
CVE-2024-3427MEDIUMCVSS 5.4v1.02024-04-07
CVE-2024-3427 [LOW] CWE-79 CVE-2024-3427: A vulnerability, which was classified as problematic, was found in SourceCodester Online Courseware A vulnerability, which was classified as problematic, was found in SourceCodester Online Courseware 1.0. This affects an unknown part of the file addq.php. The manipulation of the argument id leads to cross site scripting. It is possible to initiate the attack remotely. The exploit has been disclosed to the public and may be used. The associated identifier
cvelistv5nvd
CVE-2024-3428MEDIUMCVSS 6.1v1.02024-04-07
CVE-2024-3428 [LOW] CWE-79 CVE-2024-3428: A vulnerability has been found in SourceCodester Online Courseware 1.0 and classified as problematic A vulnerability has been found in SourceCodester Online Courseware 1.0 and classified as problematic. This vulnerability affects unknown code of the file edit.php. The manipulation of the argument id leads to cross site scripting. The attack can be initiated remotely. The exploit has been disclosed to the public and may be used. The identifier of this vul
cvelistv5nvd