Vulnerability index

Browse CVEs

58 matching
Filters 2 Clear all
Severity

Filters apply as you choose them.

Opensis CRITICAL 9.8
CVE-2020-6143EPSS 6%

A remote code execution vulnerability exists in the install functionality of OS4Ed openSIS 7.4. The password variable which is set at line 122 in ins…

No fix yet
Fix from $2,300 2020-09-01
Opensis CRITICAL 9.8
CVE-2020-6144EPSS 6%

A remote code execution vulnerability exists in the install functionality of OS4Ed openSIS 7.4. The username variable which is set at line 121 in ins…

No fix yet
Fix from $2,300 2020-09-01
Opensis CRITICAL 9.8
CVE-2020-6137

SQL injection vulnerability exists in the password reset functionality of OS4Ed openSIS 7.3. The password_stf_email parameter in the password reset p…

No fix yet
Fix from $2,300 2020-09-01
Opensis CRITICAL 9.8
CVE-2020-6138

SQL injection vulnerability exists in the password reset functionality of OS4Ed openSIS 7.3. The uname parameter in the password reset page /opensis/…

No fix yet
Fix from $2,300 2020-09-01
Opensis CRITICAL 9.8
CVE-2020-6139

SQL injection vulnerability exists in the password reset functionality of OS4Ed openSIS 7.3. The username_stf_email parameter in the password reset p…

No fix yet
Fix from $2,300 2020-09-01
Opensis CRITICAL 9.8
CVE-2020-6140

SQL injection vulnerability exists in the password reset functionality of OS4Ed openSIS 7.3. The password_stf_email parameter in the password reset p…

No fix yet
Fix from $2,300 2020-09-01
Opensis CRITICAL 9.8
CVE-2020-6141

An exploitable SQL injection vulnerability exists in the login functionality of OS4Ed openSIS 7.3. A specially crafted HTTP request can lead to SQL i…

No fix yet
Fix from $2,300 2020-09-01
Opensis HIGH 8.8
CVE-2020-6136

An exploitable SQL injection vulnerability exists in the DownloadWindow.php functionality of OS4Ed openSIS 7.3. A specially crafted HTTP request can …

No fix yet
Fix from $1,950 2020-09-01
Opensis HIGH 8.8
CVE-2020-6135

An exploitable SQL injection vulnerability exists in the Validator.php functionality of OS4Ed openSIS 7.3. A specially crafted HTTP request can lead …

No fix yet
Fix from $1,950 2020-09-01
Opensis HIGH 8.8
CVE-2020-6124

An exploitable sql injection vulnerability exists in the email parameter functionality of OS4Ed openSIS 7.3. The email parameter in the page EmailChe…

No fix yet
Fix from $1,950 2020-09-01
Opensis HIGH 8.8
CVE-2020-6125

An exploitable SQL injection vulnerability exists in the GetSchool.php functionality of OS4Ed openSIS 7.3. A specially crafted HTTP request can lead …

No fix yet
Fix from $1,950 2020-09-01
Opensis HIGH 8.8
CVE-2020-6126

SQL injection vulnerability exists in the CoursePeriodModal.php page of OS4Ed openSIS 7.3. The course_period_id parameter in the page CoursePeriodMod…

No fix yet
Fix from $1,950 2020-09-01
Opensis HIGH 8.8
CVE-2020-6127

SQL injection vulnerability exists in the CoursePeriodModal.php page of OS4Ed openSIS 7.3. The id parameter in the page CoursePeriodModal.php is vuln…

No fix yet
Fix from $1,950 2020-09-01
Opensis HIGH 8.8
CVE-2020-6128

SQL injection vulnerability exists in the CoursePeriodModal.php page of OS4Ed openSIS 7.3. A specially crafted HTTP request can lead to SQL injection…

No fix yet
Fix from $1,950 2020-09-01
Opensis HIGH 8.8
CVE-2020-6132

SQL injection vulnerability exists in the ID parameters of OS4Ed openSIS 7.3 pages. The id parameter in the page ChooseCP.php is vulnerable to SQL in…

No fix yet
Fix from $1,950 2020-09-01
Opensis HIGH 8.8
CVE-2020-6133

SQL injection vulnerabilities exist in the ID parameters of OS4Ed openSIS 7.3 pages. The id parameter in the page CourseMoreInfo.php is vulnerable to…

No fix yet
Fix from $1,950 2020-09-01
Opensis HIGH 8.8
CVE-2020-6134

SQL injection vulnerabilities exist in the ID parameters of OS4Ed openSIS 7.3 pages. The id parameter in the page MassDropModal.php is vulnerable to …

No fix yet
Fix from $1,950 2020-09-01
Opensis HIGH 8.8
CVE-2020-6129

SQL injection vulnerabilities exist in the course_period_id parameters used in OS4Ed openSIS 7.3 pages. The course_period_id parameter in the page Cp…

No fix yet
Fix from $1,950 2020-09-01
Opensis HIGH 8.8
CVE-2020-6130

SQL injection vulnerabilities exist in the course_period_id parameters used in OS4Ed openSIS 7.3 pages. The course_period_id parameter in the page Ma…

No fix yet
Fix from $1,950 2020-09-01
Opensis HIGH 8.8
CVE-2020-6131

SQL injection vulnerabilities exist in the course_period_id parameters used in OS4Ed openSIS 7.3 pages. The course_period_id parameter in the page Ma…

No fix yet
Fix from $1,950 2020-09-01
Opensis HIGH 8.8
CVE-2020-6117

SQL injection vulnerabilities exist in the CheckDuplicateStudent.php page of OS4Ed openSIS 7.3. The bday parameter in the page CheckDuplicateStudent.…

No fix yet
Fix from $1,950 2020-09-01
Opensis HIGH 8.8
CVE-2020-6118

SQL injection vulnerabilities exist in the CheckDuplicateStudent.php page of OS4Ed openSIS 7.3. The bmonth parameter in the page CheckDuplicateStuden…

No fix yet
Fix from $1,950 2020-09-01
Opensis HIGH 8.8
CVE-2020-6119

SQL injection vulnerabilities exist in the CheckDuplicateStudent.php page of OS4Ed openSIS 7.3. The byear parameter in the page CheckDuplicateStudent…

No fix yet
Fix from $1,950 2020-09-01
Opensis HIGH 8.8
CVE-2020-6120

SQL injection vulnerability exists in the CheckDuplicateStudent.php page of OS4Ed openSIS 7.3. The fn parameter in the page CheckDuplicateStudent.php…

No fix yet
Fix from $1,950 2020-09-01
Opensis HIGH 8.8
CVE-2020-6121

SQL injection vulnerabilities exist in the CheckDuplicateStudent.php page of OS4Ed openSIS 7.3. The ln parameter in the page CheckDuplicateStudent.ph…

No fix yet
Fix from $1,950 2020-09-01
Opensis HIGH 8.8
CVE-2020-6122

SQL injection vulnerability exists in the CheckDuplicateStudent.php page of OS4Ed openSIS 7.3. The mn parameter in the page CheckDuplicateStudent.php…

No fix yet
Fix from $1,950 2020-09-01
Opensis HIGH 8.8
CVE-2020-6123

An exploitable sql injection vulnerability exists in the email parameter functionality of OS4Ed openSIS 7.3. The email parameter in the page EmailChe…

No fix yet
Fix from $1,950 2020-09-01
Opensis HIGH 7.5
CVE-2014-8366

SQL injection vulnerability in openSIS 4.5 through 5.3 allows remote attackers to execute arbitrary SQL commands via the Username and password to ind…

No fix yet
Fix from $1,950 2014-10-20