CVE & Exploit Intelligence Database

Updated 28m ago

Search and track vulnerabilities with real-time exploit intelligence. Cross-reference CVEs against public exploits from ExploitDB, Metasploit, GitHub, and Nuclei — with CVSS and EPSS scoring, CISA KEV monitoring, and AI-powered exploit analysis.

337,123 CVEs tracked 53,223 with exploits 4,686 exploited in wild 1,539 CISA KEV 3,912 Nuclei templates 37,757 vendors 42,429 researchers
9 results Clear all
CVE-2024-31610 6.3 MEDIUM 1 Writeup EPSS 0.00
Code-projects Simple School Managemen... - Unrestricted File Upload
File Upload vulnerability in the function for employees to upload avatars in Code-Projects Simple School Management System v1.0 allows attackers to run arbitrary code via upload of crafted file.
CWE-434 Apr 25, 2024
CVE-2024-25310 8.8 HIGH 1 Writeup EPSS 0.00
Code-projects Simple School Managment System 1.0 - SQL Injection
Code-projects Simple School Managment System 1.0 allows SQL Injection via the 'id' parameter at "School/delete.php?id=5."
CWE-89 Feb 09, 2024
CVE-2024-25313 8.8 HIGH 1 Writeup EPSS 0.00
Code-projects Simple School Managment System 1.0 - Auth Bypass
Code-projects Simple School Managment System 1.0 allows Authentication Bypass via the username and password parameters at School/teacher_login.php.
CWE-287 Feb 09, 2024
CVE-2024-25312 8.8 HIGH 1 Writeup EPSS 0.00
Code-projects Simple School Managment System 1.0 - SQL Injection
Code-projects Simple School Managment System 1.0 allows SQL Injection via the 'id' parameter at "School/sub_delete.php?id=5."
CWE-89 Feb 09, 2024
CVE-2024-25309 8.8 HIGH 1 Writeup EPSS 0.00
Code-projects Simple School Managment System 1.0 - SQL Injection
Code-projects Simple School Managment System 1.0 allows SQL Injection via the 'pass' parameter at School/teacher_login.php.
CWE-89 Feb 09, 2024
CVE-2024-25308 8.8 HIGH 1 Writeup EPSS 0.00
Code-projects Simple School Managment System 1.0 - SQL Injection
Code-projects Simple School Managment System 1.0 allows SQL Injection via the 'name' parameter at School/teacher_login.php.
CWE-89 Feb 09, 2024
CVE-2024-25306 8.8 HIGH 1 Writeup EPSS 0.00
Code-projects Simple School Managment System 1.0 - SQL Injection
Code-projects Simple School Managment System 1.0 allows SQL Injection via the 'aname' parameter at "School/index.php".
CWE-89 Feb 09, 2024
CVE-2024-25305 8.8 HIGH 1 Writeup EPSS 0.00
Code-projects Simple School Managment System 1.0 - Auth Bypass
Code-projects Simple School Managment System 1.0 allows Authentication Bypass via the username and password parameters at School/index.php.
CWE-89 Feb 09, 2024
CVE-2024-25304 8.8 HIGH 1 Writeup EPSS 0.00
Code-projects Simple School Managment System 1.0 - SQL Injection
Code-projects Simple School Managment System 1.0 allows SQL Injection via the 'apass' parameter at "School/index.php."
CWE-89 Feb 09, 2024