Top technology
Linux 13140
Google 12525
Microsoft 12378
Apple 6692
Oracle 6673
Adobe 6383
Ibm 6286
Cisco 5751
Debian 3919
Mozilla 2886
Apache 2864
Redhat 2586
HIGH 8.8
CVE-2020-6128
SQL injection vulnerability exists in the CoursePeriodModal.php page of OS4Ed openSIS 7.3. A specially crafted HTTP request can lead to SQL injection…
Opensis
No fix yet
HIGH 8.8
CVE-2020-6132
SQL injection vulnerability exists in the ID parameters of OS4Ed openSIS 7.3 pages. The id parameter in the page ChooseCP.php is vulnerable to SQL in…
Opensis
No fix yet
HIGH 8.8
CVE-2020-6133
SQL injection vulnerabilities exist in the ID parameters of OS4Ed openSIS 7.3 pages. The id parameter in the page CourseMoreInfo.php is vulnerable to…
Opensis
No fix yet
HIGH 8.8
CVE-2020-6134
SQL injection vulnerabilities exist in the ID parameters of OS4Ed openSIS 7.3 pages. The id parameter in the page MassDropModal.php is vulnerable to …
Opensis
No fix yet
HIGH 8.8
CVE-2020-6129
SQL injection vulnerabilities exist in the course_period_id parameters used in OS4Ed openSIS 7.3 pages. The course_period_id parameter in the page Cp…
Opensis
No fix yet
HIGH 8.8
CVE-2020-6130
SQL injection vulnerabilities exist in the course_period_id parameters used in OS4Ed openSIS 7.3 pages. The course_period_id parameter in the page Ma…
Opensis
No fix yet
HIGH 8.8
CVE-2020-6131
SQL injection vulnerabilities exist in the course_period_id parameters used in OS4Ed openSIS 7.3 pages. The course_period_id parameter in the page Ma…
Opensis
No fix yet
HIGH 8.8
CVE-2020-6117
SQL injection vulnerabilities exist in the CheckDuplicateStudent.php page of OS4Ed openSIS 7.3. The bday parameter in the page CheckDuplicateStudent.…
Opensis
No fix yet
HIGH 8.8
CVE-2020-6118
SQL injection vulnerabilities exist in the CheckDuplicateStudent.php page of OS4Ed openSIS 7.3. The bmonth parameter in the page CheckDuplicateStuden…
Opensis
No fix yet
HIGH 8.8
CVE-2020-6119
SQL injection vulnerabilities exist in the CheckDuplicateStudent.php page of OS4Ed openSIS 7.3. The byear parameter in the page CheckDuplicateStudent…
Opensis
No fix yet
HIGH 8.8
CVE-2020-6120
SQL injection vulnerability exists in the CheckDuplicateStudent.php page of OS4Ed openSIS 7.3. The fn parameter in the page CheckDuplicateStudent.php…
Opensis
No fix yet
HIGH 8.8
CVE-2020-6121
SQL injection vulnerabilities exist in the CheckDuplicateStudent.php page of OS4Ed openSIS 7.3. The ln parameter in the page CheckDuplicateStudent.ph…
Opensis
No fix yet
HIGH 8.8
CVE-2020-6122
SQL injection vulnerability exists in the CheckDuplicateStudent.php page of OS4Ed openSIS 7.3. The mn parameter in the page CheckDuplicateStudent.php…
Opensis
No fix yet
HIGH 8.8
CVE-2020-6123
An exploitable sql injection vulnerability exists in the email parameter functionality of OS4Ed openSIS 7.3. The email parameter in the page EmailChe…
Opensis
No fix yet
CRITICAL 9.8
CVE-2020-6637EPSS 20%
openSIS Community Edition version 7.3 is vulnerable to SQL injection via the USERNAME parameter of index.php.
Opensis
Patch available
CRITICAL 9.8
CVE-2020-13380
openSIS before 7.4 allows SQL Injection.
Opensis
after 7.4
CRITICAL 9.8
CVE-2020-13381EPSS 59%
openSIS through 7.4 allows SQL Injection.
Opensis
after 7.4
CRITICAL 9.1
CVE-2020-13382EPSS 53%
openSIS through 7.4 has Incorrect Access Control.
Opensis
after 7.4
HIGH 7.5
CVE-2020-13383EPSS 68%
openSIS through 7.4 allows Directory Traversal.
Opensis
after 7.4
HIGH 7.5
CVE-2014-8366
SQL injection vulnerability in openSIS 4.5 through 5.3 allows remote attackers to execute arbitrary SQL commands via the Username and password to ind…
Opensis
No fix yet
HIGH 7.5
CVE-2013-1349EPSS 23%
Eval injection vulnerability in ajax.php in openSIS 4.5 through 5.2 allows remote attackers to execute arbitrary PHP code via the modname parameter.
Opensis
Patch available