• Skip to primary navigation
  • Skip to main content
CVE Vulnerability

CVE Vulnerability

  • CVE’s
  • Products
  • Vendors
Home » CVE’s

CVE’s


CVE
Vendors
Products
Updated
CVSS v2
CVSS v3
CVE-2018-18803
2018-12-17
N/A
9.8 CRITICAL
Curriculum Evaluation System 1.0 allows SQL Injection via the login screen, related to frmCourse.vb and includes/user.vb.
CVE-2018-18802
2019-06-18
N/A
8.8 HIGH
The Tubigan "Welcome to our Resort" 1.0 software allows CSRF via admin/mod_users/controller.php?action=edit.
CVE-2018-18801
2018-12-18
N/A
9.8 CRITICAL
The BSEN Ordering software 1.0 has SQL Injection via student/index.php?view=view&id=[SQL] or index.php?q=single-item&id=[SQL].
CVE-2018-18800
2019-05-15
N/A
9.8 CRITICAL
The Tubigan "Welcome to our Resort" 1.0 software allows SQL Injection via index.php?p=accomodation&q=[SQL], index.php?p=rooms&q=[SQL], or admin/login.php.
CVE-2018-18799
2018-12-18
N/A
8.8 HIGH
School Attendance Monitoring System 1.0 has CSRF via event/controller.php?action=photos.
CVE-2018-18798
2019-03-28
N/A
9.8 CRITICAL
Attendance Monitoring System 1.0 has SQL Injection via the 'id' parameter to student/index.php?view=view, event/index.php?view=view, and user/index.php?view=view.
CVE-2018-18797
2018-12-18
N/A
8.8 HIGH
School Attendance Monitoring System 1.0 has CSRF via /user/user/edit.php.
CVE-2018-18796
2018-12-18
N/A
9.8 CRITICAL
Library Management System 1.0 has SQL Injection via the "Search for Books" screen.
CVE-2018-18795
2018-12-18
N/A
9.8 CRITICAL
School Event Management System 1.0 has SQL Injection via the student/index.php or event/index.php id parameter.
CVE-2018-18794
2018-12-18
N/A
8.8 HIGH
School Event Management System 1.0 allows CSRF via user/controller.php?action=edit.
« Previous 1 … 2,172 2,173 2,174 2,175 2,176 … 11,258 Next »

Copyright CVE Vulnerabilities 2023
Data Sources:

  • NIST
  • MITRE
  • CVE Search
  • Open CVE