Code-Projects Online Examination System是Code-Projects开源的一个在线考试系统。 code-projects Online Examination System 1.0版本存在SQL注入漏洞,该漏洞源于对文件login.php中参数username/password的错误操作,可能导致SQL注入攻击。
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| code-projects | Online Examination System | 1.0 | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2026-2195 | 7.3 HIGH | code-projects Online Reviewer System questions-view.php sql injection |
| CVE-2026-2174 | 7.3 HIGH | code-projects Contact Management System CRUD Endpoint improper authentication |
| CVE-2026-2172 | 7.3 HIGH | code-projects Online Application System for Admission Login Endpoint index.php sql injecti |
| CVE-2026-2171 | 7.3 HIGH | code-projects Online Student Management System Login accounts.php sql injection |
| CVE-2026-2166 | 7.3 HIGH | code-projects Online Reviewer System Login index.php sql injection |
| CVE-2026-2158 | 7.3 HIGH | code-projects Student Web Portal check_user.php sql injection |
| CVE-2026-2133 | 7.3 HIGH | code-projects Online Music Site AdminUpdateCategory.php unrestricted upload |
| CVE-2026-2132 | 7.3 HIGH | code-projects Online Music Site AdminUpdateCategory.php sql injection |
| CVE-2026-2176 | 6.3 MEDIUM | code-projects Contact Management System index.py sql injection |
| CVE-2026-2156 | 2.4 LOW | code-projects Online Student Management System Announcement Management index.php cross sit |
No comments yet