Vulnerabilities (CVE)

Filtered by vendor Donbermoy Subscribe
Filtered by product Advanced School Management System
Total 3 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2025-9689 1 Donbermoy 1 Advanced School Management System 2025-09-04 6.5 MEDIUM 6.3 MEDIUM
A vulnerability was detected in SourceCodester Advanced School Management System 1.0. The impacted element is an unknown function of the file /index.php/stock/item_select. The manipulation of the argument q results in sql injection. It is possible to launch the attack remotely. The exploit is now public and may be used.
CVE-2025-9690 1 Donbermoy 1 Advanced School Management System 2025-09-04 6.5 MEDIUM 6.3 MEDIUM
A flaw has been found in SourceCodester Advanced School Management System 1.0. This affects an unknown function of the file /index.php/stock/vendordetails. This manipulation of the argument ID causes sql injection. The attack can be initiated remotely. The exploit has been published and may be used.
CVE-2025-9306 1 Donbermoy 1 Advanced School Management System 2025-08-22 4.0 MEDIUM 3.5 LOW
A vulnerability was detected in SourceCodester Advanced School Management System 1.0. The impacted element is an unknown function of the file /index.php/notice/addNotice. The manipulation of the argument noticeSubject results in cross site scripting. It is possible to launch the attack remotely. The exploit is now public and may be used.