Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1336 CNY

100%

University Management System — Vulnerabilities & Security Advisories 17

All 17 CVE vulnerabilities found in University Management System, with AI-generated Chinese analysis, references, and POCs.

This page catalogues security vulnerabilities associated with the University Management System software developed by various vendors, focusing on common weakness types such as injection flaws, broken access control, and security misconfigurations. It aggregates data from vendor security advisories, CVE entries, and independent security researchers to provide a comprehensive view of the threat landscape. The coverage spans from early 2018 through the present, ensuring that both legacy issues and recent findings are accessible for thorough analysis. Users can utilize this resource to track a vendor's response history, understand the prevalence and impact of specific weakness classes within academic administrative software, and look up a product's complete vulnerability history. This information supports security teams in risk assessment, patch prioritization, and compliance auditing by highlighting patterns in how these systems are secured or mismanaged over time. The dataset includes details on affected versions, severity ratings, and remediation guidance where available. By consolidating these disparate sources, the page offers a centralized reference point for understanding the security posture of university management platforms. It serves administrators, IT staff, and security auditors who need to evaluate the risks associated with deploying or maintaining such systems in higher education environments. The focus remains on factual reporting and technical clarity rather than promotional content.

Vendor: CodeAstro

CVE ID Title CVSS Severity Published
CVE-2026-4474 itsourcecode University Management System admin_single_student_update.php cross site scripting CWE-79 2.4 Low 2026-03-20
CVE-2026-4356 itsourcecode University Management System add_result.php cross site scripting CWE-79 2.4 Low 2026-03-18
CVE-2026-3982 itsourcecode University Management System view_result.php cross site scripting CWE-79 4.3 Medium 2026-03-12
CVE-2026-3944 itsourcecode University Management System att_add.php sql injection CWE-89 7.3 High 2026-03-11
CVE-2026-3765 itsourcecode University Management System att_single_view.php sql injection CWE-89 7.3 High 2026-03-08
CVE-2026-3760 itsourcecode University Management System view_result.php sql injection CWE-89 7.3 High 2026-03-08
CVE-2026-3747 itsourcecode University Management System add_result.php sql injection CWE-89 7.3 High 2026-03-08
CVE-2026-3740 itsourcecode University Management System admin_search_student.php sql injection CWE-89 7.3 High 2026-03-08
CVE-2026-3413 itsourcecode University Management System admin_single_student.php sql injection CWE-89 7.3 High 2026-03-02
CVE-2026-3412 itsourcecode University Management System att_single_view.php cross site scripting CWE-79 4.3 Medium 2026-03-02
CVE-2026-3411 itsourcecode University Management System admin_single_student_update.php sql injection CWE-89 7.3 High 2026-03-02
CVE-2024-6958 itsourcecode University Management System Avatar File st_update.php unrestricted upload CWE-434 6.3 Medium 2024-07-21
CVE-2024-6957 itsourcecode University Management System Login functions.php sql injection CWE-89 7.3 High 2024-07-21
CVE-2024-6956 itsourcecode University Management System view_cgpa.php sql injection CWE-89 6.3 Medium 2024-07-21
CVE-2024-6952 itsourcecode University Management System sql injection CWE-89 6.3 Medium 2024-07-21
CVE-2024-1266 CodeAstro University Management System Student Registration Form st_reg.php cross site scripting CWE-79 2.4 Low 2024-02-07
CVE-2024-1265 CodeAstro University Management System Attendance Management att_add.php cross site scripting CWE-79 2.4 Low 2024-02-07

All 17 known CVE vulnerabilities affecting University Management System with full Chinese analysis, references, and POCs where available.