Vulnerabilities (CVE)

Filtered by vendor Online Student Enrollment System Project Subscribe
Total 2 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2022-46503 1 Online Student Enrollment System Project 1 Online Student Enrollment System 2025-04-08 N/A 5.4 MEDIUM
A cross-site scripting (XSS) vulnerability in the component /admin/register.php of Online Student Enrollment System v1.0 allows attackers to execute arbitrary web scripts via a crafted payload injected into the name parameter.
CVE-2022-46502 1 Online Student Enrollment System Project 1 Online Student Enrollment System 2025-04-07 N/A 9.8 CRITICAL
Online Student Enrollment System v1.0 was discovered to contain a SQL injection vulnerability via the username parameter at /student_enrollment/admin/login.php.