Code-Projects Student Web Portal是Code-Projects开源的一个学生门户网站。 Code-Projects Student Web Portal 1.0版本存在SQL注入漏洞,该漏洞源于对文件/check_user.php中参数Username的错误操作,可能导致SQL注入。
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| code-projects | Student Web Portal | 1.0 | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2026-2195 | 7.3 HIGH | code-projects Online Reviewer System questions-view.php sql injection |
| CVE-2026-2174 | 7.3 HIGH | code-projects Contact Management System CRUD Endpoint improper authentication |
| CVE-2026-2173 | 7.3 HIGH | code-projects Online Examination System login.php sql injection |
| CVE-2026-2172 | 7.3 HIGH | code-projects Online Application System for Admission Login Endpoint index.php sql injecti |
| CVE-2026-2171 | 7.3 HIGH | code-projects Online Student Management System Login accounts.php sql injection |
| CVE-2026-2166 | 7.3 HIGH | code-projects Online Reviewer System Login index.php sql injection |
| CVE-2026-2133 | 7.3 HIGH | code-projects Online Music Site AdminUpdateCategory.php unrestricted upload |
| CVE-2026-2132 | 7.3 HIGH | code-projects Online Music Site AdminUpdateCategory.php sql injection |
| CVE-2026-2176 | 6.3 MEDIUM | code-projects Contact Management System index.py sql injection |
| CVE-2026-2156 | 2.4 LOW | code-projects Online Student Management System Announcement Management index.php cross sit |
No comments yet