Vulnerabilities (CVE)

Filtered by vendor Schoolmate Project Subscribe
Total 3 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2023-40946 1 Schoolmate Project 1 Schoolmate 2024-02-28 N/A 9.8 CRITICAL
Schoolmate 1.3 is vulnerable to SQL Injection in the variable $username from SESSION in ValidateLogin.php.
CVE-2023-40944 1 Schoolmate Project 1 Schoolmate 2024-02-28 N/A 9.8 CRITICAL
Schoolmate 1.3 is vulnerable to SQL Injection in the variable $schoolname from Database at ~\header.php.
CVE-2023-39850 1 Schoolmate Project 1 Schoolmate 2024-02-28 N/A 9.8 CRITICAL
Schoolmate v1.3 was discovered to contain multiple SQL injection vulnerabilities via the $courseid and $teacherid parameters at DeleteFunctions.php.