Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1336 CNY

100%

Student-Management-System — Vulnerabilities & Security Advisories 19

All 19 CVE vulnerabilities found in Student-Management-System, with AI-generated Chinese analysis, references, and POCs.

This vulnerability aggregation page covers the Student-Management-System product, focusing on weaknesses identified by the vendor within the Common Weakness Enumeration framework. It collects a comprehensive range of security flaws, including injection attacks, broken access control, and cross-site scripting vulnerabilities that have been publicly disclosed or reported by security researchers. The data spans from the product’s initial release through the most recent advisories issued in the current fiscal year, ensuring that historical trends and recent patches are both accounted for in the analysis. Readers can utilize this resource to track the vendor’s security advisory timeline, observe how quickly they respond to critical threats, and correlate specific weakness classes with the product’s architecture. By examining this aggregated data, users can better understand the persistent security challenges inherent in the Student-Management-System and evaluate the effectiveness of the vendor’s remediation efforts over time. This information is intended to help security professionals, auditors, and administrators assess risk profiles, prioritize patching strategies, and compare the product’s security posture against industry benchmarks without relying on isolated incident reports.

Vendor: Cyber-III

CVE IDTitleCVSSSeverityPublished
CVE-2026-18958 imranrisal-dev Student-Management-System Login loginCheckTest.php sql injection CWE-89 7.3 High2026-08-05
CVE-2026-18927 imranrisal-dev Student-Management-System Shared Upload Helper student_profile_pic.php storeProfileImage unrestricted upload CWE-434 6.3 Medium2026-08-05
CVE-2026-11476 Kushan2k student-management-system Profile Update Endpoint AdminController.php edit-admin improper authorization CWE-285 6.3 Medium2026-06-08
CVE-2026-11475 Kushan2k student-management-system Certificate Verification Endpoint GradeController.php getStatus sql injection CWE-89 6.3 Medium2026-06-08
CVE-2026-11474 Kushan2k student-management-system Registration Endpoint RegisterService.php unrestricted upload CWE-434 7.3 High2026-06-08
CVE-2026-10777 ealpha072 Student-Management-System Administrative Backend config.php improper authentication CWE-287 7.3 High2026-06-03
CVE-2026-10619 sayan365 student-management-system improper authentication CWE-287 7.3 High2026-06-02
CVE-2026-10272 a4m4 Student-Management-System deleteform.php improper authorization CWE-285 6.5 Medium2026-06-01
CVE-2026-10271 a4m4 Student-Management-System Admin Endpoint admin redirect CWE-698 6.3 Medium2026-06-01
CVE-2026-10112 sambitraj STUDENT-MANAGEMENT-SYSTEM Dashboard cross site scripting CWE-79 2.4 Low2026-05-30
CVE-2026-10111 sambitraj STUDENT-MANAGEMENT-SYSTEM Login Page sql injection CWE-89 7.3 High2026-05-30
CVE-2026-9562 sambitraj STUDENT-MANAGEMENT-SYSTEM Dashboard access control CWE-284 7.3 High2026-05-26
CVE-2026-5671 Cyber-III Student-Management-System Class Schedule Deletion Endpoint delete_batch.php cross site scripting CWE-79 4.3 Medium2026-04-06
CVE-2026-5670 Cyber-III Student-Management-System upload.php move_uploaded_file unrestricted upload CWE-434 6.3 Medium2026-04-06
CVE-2026-5669 Cyber-III Student-Management-System Parameter login.php sql injection CWE-89 7.3 High2026-04-06
CVE-2026-5668 Cyber-III Student-Management-System add%20notice.php cross site scripting CWE-79 2.4 Low2026-04-06
CVE-2026-5644 Cyber-III Student-Management-System batch-notice.php cross site scripting CWE-79 2.4 Low2026-04-06
CVE-2026-5643 Cyber-III Student-Management-System Admin Add Endpoint notice.php cross site scripting CWE-79 2.4 Low2026-04-06
CVE-2026-5642 Cyber-III Student-Management-System HTTP POST Request update.php improper authorization CWE-285 7.3 High2026-04-06

All 19 known CVE vulnerabilities affecting Student-Management-System with full Chinese analysis, references, and POCs where available.