Vulnerability index

Browse CVEs

15 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

HIGH 8.8 CVE-2024-9658 The School Management System for Wordpress plugin for WordPress is vulnerable to privilege escalation via account takeover in all versions up to, and… School Management System after 93.0.0 Fix from $1,9502025-03-07 MEDIUM 5.3 CVE-2024-12610 The School Management System for Wordpress plugin for WordPress is vulnerable to unauthorized loss of data due to a missing capability check on the '… School Management System after 93.0.0 Fix from $1,6002025-03-07 MEDIUM 5.3 CVE-2024-12611 The School Management System for Wordpress plugin for WordPress is vulnerable to Reflected Cross-Site Scripting via the 'title' parameter in all vers… School Management System after 93.0.0 Fix from $1,6002025-03-07 MEDIUM 6.5 CVE-2024-12607 The School Management System for Wordpress plugin for WordPress is vulnerable to SQL Injection via the 'id' parameter of the 'mj_smgt_show_event_task… School Management System 93.0.0+ Fix from $1,6002025-03-07 MEDIUM 6.5 CVE-2024-12609 The School Management System for Wordpress plugin for WordPress is vulnerable to SQL Injection via the 'view-attendance' page in all versions up to, … School Management System 93.0.0+ Fix from $1,6002025-03-07 HIGH 8.8 CVE-2024-9660 The School Management System for Wordpress plugin for WordPress is vulnerable to arbitrary file uploads due to missing file type validation in the mj… School Management System 92.0.0+ Fix from $1,9502024-11-23 CRITICAL 9.8 CVE-2024-9659 The School Management System for Wordpress plugin for WordPress is vulnerable to arbitrary file uploads due to missing file type validation in the mj… School Management System 92.0.0+ Fix from $2,3002024-11-23 HIGH 8.8 CVE-2017-14848 WPHRM Human Resource Management System for WordPress 1.0 allows SQL Injection via the employee_id parameter. Wphrm Human Resource Management System No fix yet Fix from $1,9502017-10-03 HIGH 8.8 CVE-2017-14842 Mojoomla SMSmaster Multipurpose SMS Gateway for WordPress allows SQL Injection via the id parameter. Smsmaster Multipurpose Sms Gateway No fix yet Fix from $1,9502017-09-28 HIGH 8.8 CVE-2017-14843 Mojoomla School Management System for WordPress allows SQL Injection via the id parameter. School Management System No fix yet Fix from $1,9502017-09-28 HIGH 8.8 CVE-2017-14844 Mojoomla WPGYM WordPress Gym Management System allows SQL Injection via the id parameter. Wpgym Gym Management System No fix yet Fix from $1,9502017-09-28 HIGH 8.8 CVE-2017-14845 Mojoomla WPCHURCH Church Management System for WordPress allows SQL Injection via the id parameter. Wpchurch Church Management System No fix yet Fix from $1,9502017-09-28 HIGH 8.8 CVE-2017-14846 Mojoomla Hospital Management System for WordPress allows SQL Injection via the id parameter. Hospital Management System No fix yet Fix from $1,9502017-09-28 HIGH 8.8 CVE-2017-14847 Mojoomla WPAMS Apartment Management System for WordPress allows SQL Injection via the id parameter. Wpams Apartment Management System No fix yet Fix from $1,9502017-09-28 MEDIUM 6.5 CVE-2017-14841 Mojoomla Annual Maintenance Contract (AMC) Management System allows Arbitrary File Upload in profilesetting image handling. Annual Maintenance Contract Management System No fix yet Fix from $1,6002017-09-28