Home/Product/itsourcecode school management system
Product

itsourcecode school management system

52 known vulnerabilities across versions
Vulnerabilities are listed by affected version. Select any CVE for the full briefing and its intelligence graph.
CVE-2026-3261
all versions
A flaw has been found in itsourcecode School Management System 1.0. This impacts an unknown function of the file /settings/index.p
7.3HIGH
CVE-2026-2190
all versions
A security flaw has been discovered in itsourcecode School Management System 1.0. This impacts an unknown function of the file /ra
7.3HIGH
CVE-2026-2189
all versions
A vulnerability was identified in itsourcecode School Management System 1.0. This affects an unknown function of the file /ramonsy
7.3HIGH
CVE-2026-2073
all versions
A vulnerability was determined in itsourcecode School Management System 1.0. This affects an unknown function of the file /ramonsy
7.3HIGH
CVE-2026-2018
all versions
A flaw has been found in itsourcecode School Management System 1.0. This affects an unknown part of the file /ramonsys/settings/co
7.3HIGH
CVE-2026-2014
all versions
A security flaw has been discovered in itsourcecode Student Management System 1.0. This impacts an unknown function of the file /r
7.3HIGH
CVE-2026-2013
all versions
A vulnerability was identified in itsourcecode Student Management System 1.0. This affects an unknown function of the file /ramons
7.3HIGH
CVE-2026-2012
all versions
A vulnerability was determined in itsourcecode Student Management System 1.0. The impacted element is an unknown function of the f
7.3HIGH
CVE-2026-2011
all versions
A vulnerability was found in itsourcecode Student Management System 1.0. The affected element is an unknown function of the file /
7.3HIGH
CVE-2026-1701
all versions
A security vulnerability has been detected in itsourcecode School Management System 1.0. This issue affects some unknown processin
7.3HIGH
CVE-2026-1590
all versions
A vulnerability was identified in itsourcecode School Management System 1.0. This impacts an unknown function of the file /ramonsy
7.3HIGH
CVE-2026-1589
all versions
A vulnerability was determined in itsourcecode School Management System 1.0. This affects an unknown function of the file /ramonsy
7.3HIGH
CVE-2026-1551
all versions
A weakness has been identified in itsourcecode School Management System 1.0. This affects an unknown part of the file /ramonsys/co
6.3MEDIUM
CVE-2026-1545
all versions
A weakness has been identified in itsourcecode School Management System 1.0. The affected element is an unknown function of the fi
7.3HIGH
CVE-2026-1176
all versions
A security flaw has been discovered in itsourcecode School Management System 1.0. Affected is an unknown function of the file /sub
7.3HIGH
CVE-2026-0544
all versions
A security flaw has been discovered in itsourcecode School Management System 1.0. This affects an unknown part of the file /studen
7.3HIGH
CVE-2024-46336
all versions
kashipara School Management System 1.0 is vulnerable to Cross Site Scripting (XSS) via /client_user/feedback.php.
6.1MEDIUM
CVE-2024-46334
all versions
kashipara School Management System 1.0 is vulnerable to Cross Site Scripting (XSS) via the formuser and formpassword parameters in
6.1MEDIUM
CVE-2025-11661
all versions
A vulnerability was found in ProjectsAndPrograms School Management System up to 6b6fae5426044f89c08d0dd101c7fa71f9042a59. This aff
7.3HIGH
CVE-2025-11660
all versions
A vulnerability has been found in ProjectsAndPrograms School Management System up to 6b6fae5426044f89c08d0dd101c7fa71f9042a59. Aff
7.3HIGH
CVE-2025-11659
all versions
A flaw has been found in ProjectsAndPrograms School Management System up to 6b6fae5426044f89c08d0dd101c7fa71f9042a59. Affected by
7.3HIGH
CVE-2025-11658
all versions
A vulnerability was detected in ProjectsAndPrograms School Management System up to 6b6fae5426044f89c08d0dd101c7fa71f9042a59. Affec
7.3HIGH
CVE-2025-11657
all versions
A security vulnerability has been detected in ProjectsAndPrograms School Management System up to 6b6fae5426044f89c08d0dd101c7fa71f
7.3HIGH
CVE-2025-11656
all versions
A weakness has been identified in ProjectsAndPrograms School Management System up to 6b6fae5426044f89c08d0dd101c7fa71f9042a59. Thi
7.3HIGH
CVE-2025-11056
all versions
A flaw has been found in ProjectsAndPrograms School Management System 1.0. Affected by this vulnerability is an unknown functional
6.3MEDIUM
CVE-2025-51967
all versions
A Reflected Cross-site Scripting (XSS) vulnerability exists in the themeSet.php file of ProjectsAndPrograms School Management Syst
6.1MEDIUM
CVE-2024-9658
<= 93.0.0
The School Management System for Wordpress plugin for WordPress is vulnerable to privilege escalation via account takeover in all
8.8HIGH
CVE-2024-12611
<= 93.0.0
The School Management System for Wordpress plugin for WordPress is vulnerable to Reflected Cross-Site Scripting via the 'title' pa
5.3MEDIUM
CVE-2024-12610
<= 93.0.0
The School Management System for Wordpress plugin for WordPress is vulnerable to unauthorized loss of data due to a missing capabi
5.3MEDIUM
CVE-2024-12609
< 93.0.0
The School Management System for Wordpress plugin for WordPress is vulnerable to SQL Injection via the 'view-attendance' page in a
6.5MEDIUM
CVE-2024-12607
< 93.0.0
The School Management System for Wordpress plugin for WordPress is vulnerable to SQL Injection via the 'id' parameter of the 'mj_s
6.5MEDIUM
CVE-2024-9660
< 92.0.0
The School Management System for Wordpress plugin for WordPress is vulnerable to arbitrary file uploads due to missing file type v
8.8HIGH
CVE-2024-9659
< 92.0.0
The School Management System for Wordpress plugin for WordPress is vulnerable to arbitrary file uploads due to missing file type v
9.8CRITICAL
CVE-2024-42575
< 2020-06-20
School Management System commit bae5aa was discovered to contain a SQL injection vulnerability via the medium parameter at substaf
9.8CRITICAL
CVE-2024-42574
< 2020-06-20
School Management System commit bae5aa was discovered to contain a SQL injection vulnerability via the medium parameter at attenda
9.8CRITICAL
CVE-2024-42573
< 2020-06-20
School Management System commit bae5aa was discovered to contain a SQL injection vulnerability via the medium parameter at dtmarks
9.8CRITICAL
CVE-2024-42572
< 2020-06-20
School Management System commit bae5aa was discovered to contain a SQL injection vulnerability via the medium parameter at unitmar
9.8CRITICAL
CVE-2024-42571
<= 2020-06-20
School Management System commit bae5aa was discovered to contain a SQL injection vulnerability via the medium parameter at inserta
9.8CRITICAL
CVE-2024-42570
< 2020-06-20
School Management System commit bae5aa was discovered to contain a SQL injection vulnerability via the medium parameter at adminin
9.8CRITICAL
CVE-2024-42569
<= 2020-06-20
School Management System commit bae5aa was discovered to contain a SQL injection vulnerability via the medium parameter at paidcla
9.8CRITICAL
CVE-2024-42568
< 2020-06-20
School Management System commit bae5aa was discovered to contain a SQL injection vulnerability via the transport parameter at vehi
9.8CRITICAL
CVE-2024-42567
< 2020-06-20
School Management System commit bae5aa was discovered to contain a SQL injection vulnerability via the sid parameter at /search.ph
9.8CRITICAL
CVE-2024-42566
< 2020-06-20
School Management System commit bae5aa was discovered to contain a SQL injection vulnerability via the password parameter at login
9.8CRITICAL
CVE-2024-6279
all versions
A vulnerability was found in lahirudanushka School Management System 1.0.0/1.0.1 and classified as critical. Affected by this issu
6.3MEDIUM
CVE-2024-6278
all versions
A vulnerability has been found in lahirudanushka School Management System 1.0.0/1.0.1 and classified as critical. Affected by this
4.7MEDIUM
CVE-2024-6277
all versions
A vulnerability, which was classified as critical, was found in lahirudanushka School Management System 1.0.0/1.0.1. Affected is a
4.7MEDIUM
CVE-2024-6276
all versions
A vulnerability, which was classified as critical, has been found in lahirudanushka School Management System 1.0.0/1.0.1. This iss
4.7MEDIUM
CVE-2024-6275
all versions
A vulnerability classified as critical was found in lahirudanushka School Management System 1.0.0/1.0.1. This vulnerability affect
4.7MEDIUM
CVE-2024-6274
all versions
A vulnerability classified as critical has been found in lahirudanushka School Management System 1.0.0/1.0.1. This affects an unkn
4.7MEDIUM
CVE-2024-6268
all versions
A vulnerability, which was classified as critical, has been found in lahirudanushka School Management System 1.0.0/1.0.1. Affected
7.3HIGH
CVE-2022-36193
all versions
SQL injection in School Management System 1.0 allows remote attackers to modify or delete data, causing persistent changes to the
9.8CRITICAL
CVE-2017-14843
all versions
Mojoomla School Management System for WordPress allows SQL Injection via the id parameter.
8.8HIGH
threatengine.sh