Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1359 CNY

100%

Engineers Online Portal — Vulnerabilities & Security Advisories 17

All 17 CVE vulnerabilities found in Engineers Online Portal, with AI-generated Chinese analysis, references, and POCs.

This vulnerability aggregation page covers CVE records associated with the product Engineers Online Portal, specifically focusing on Cross-Site Scripting (XSS) weaknesses. It collects public security advisories and disclosed vulnerabilities reported within the past two years, providing a consolidated view of known security defects affecting this specific software component. Readers can use this page to track the vendor's recent security advisories, understand the technical characteristics of the Cross-Site Scripting weakness class, and review the complete vulnerability history for the Engineers Online Portal. The data is presented in a structured format to facilitate rapid identification of exposure risks and remediation priorities. No marketing language or generic welcome statements are included; instead, the content remains factual and technical. Users can filter by date, severity, or specific weakness subtype to narrow down relevant issues. This resource supports security engineers, developers, and IT administrators in maintaining up-to-date knowledge of potential attack vectors related to user input handling and output encoding. The page aggregates information from multiple sources to ensure comprehensive coverage of reported incidents, helping organizations assess their risk landscape effectively.

Vendor: SourceCodester

CVE ID Title CVSS Severity Published
CVE-2024-0351 SourceCodester Engineers Online Portal session fixiation CWE-384 3.1 Low 2024-01-09
CVE-2024-0350 SourceCodester Engineers Online Portal session expiration CWE-613 3.1 Low 2024-01-09
CVE-2024-0349 SourceCodester Engineers Online Portal missing secure attribute CWE-614 3.7 Low 2024-01-09
CVE-2024-0348 SourceCodester Engineers Online Portal File Upload resource consumption CWE-400 4.3 Medium 2024-01-09
CVE-2024-0347 SourceCodester Engineers Online Portal signup_teacher.php weak password CWE-521 3.7 Low 2024-01-09
CVE-2024-0260 SourceCodester Engineers Online Portal Password Change change_password_teacher.php session expiration CWE-613 4.3 Medium 2024-01-07
CVE-2024-0182 SourceCodester Engineers Online Portal Admin Login sql injection CWE-89 7.3 High 2024-01-01
CVE-2023-7160 SourceCodester Engineers Online Portal Add Engineer cross site scripting CWE-79 2.4 Low 2023-12-29
CVE-2023-5284 SourceCodester Engineers Online Portal upload_save_student.php unrestricted upload CWE-434 6.3 Medium 2023-09-29
CVE-2023-5283 SourceCodester Engineers Online Portal teacher_signup.php sql injection CWE-89 6.3 Medium 2023-09-29
CVE-2023-5282 SourceCodester Engineers Online Portal seed_message_student.php sql injection CWE-89 6.3 Medium 2023-09-29
CVE-2023-5281 SourceCodester Engineers Online Portal remove_inbox_message.php sql injection CWE-89 6.3 Medium 2023-09-29
CVE-2023-5280 SourceCodester Engineers Online Portal my_students.php sql injection CWE-89 6.3 Medium 2023-09-29
CVE-2023-5279 SourceCodester Engineers Online Portal my_classmates.php sql injection CWE-89 6.3 Medium 2023-09-29
CVE-2023-5278 SourceCodester Engineers Online Portal login.php sql injection CWE-89 6.3 Medium 2023-09-29
CVE-2023-5277 SourceCodester Engineers Online Portal student_avatar.php unrestricted upload CWE-434 6.3 Medium 2023-09-29
CVE-2023-5276 SourceCodester Engineers Online Portal downloadable_student.php sql injection CWE-89 6.3 Medium 2023-09-29

All 17 known CVE vulnerabilities affecting Engineers Online Portal with full Chinese analysis, references, and POCs where available.