student_management_system是Vivek Singh个人开发者的一个学生信息管理工具。 student_management_system存在跨站脚本漏洞,该漏洞源于/add.php文件的未知函数对参数name/address/fname操作不当,可能导致跨站脚本。攻击者可远程发起攻击。
| Vendor | Product | Version Range | Status |
|---|---|---|---|
| imvks786 | student_management_system | 9599b560ad3c3b83e75d328b76bedcd489ef1f46 |
affected |
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| imvks786 | student_management_system | 9599b560ad3c3b83e75d328b76bedcd489ef1f46 |
cpe:2.3:a:imvks786:student_management_system:*:*:*:*:*:*:*:*
|
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2026-11530 | 7.3 HIGH | imvks786 student_management_system Login index.ph sql injection |
| CVE-2026-11531 | 7.3 HIGH | imvks786 student_management_system Administrator Login Endpoint admin_login.php sql inject |
| CVE-2026-11532 | 6.3 MEDIUM | imvks786 student_management_system Student Record add.php access control |
| CVE-2026-11533 | 5.4 MEDIUM | imvks786 student_management_system Student Deletion Endpoint see.php improper authorizatio |
No comments yet