esusalla
9 exploits
Active since Apr 2025
OS4ED openSIS 8.0-9.1 - Path Traversal and Arbitrary File Deletion via /Modules.php
CVSS 8.8
OS4ED openSIS 7.0-9.1 - SQL Injection via stu_id Parameter
CVSS 8.8
OS4ED openSIS 7.0-9.1 - Authenticated SQL Injection via Attendance Codes Table Parameter
CVSS 7.5
OS4ED openSIS 8.0-9.1 - Path Traversal via Crafted POST Request to /Modules.php
CVSS 9.8
OS4ED openSIS 8.0-9.1 - Path Traversal via Crafted POST Request to Inbox.php
CVSS 9.1
OS4ED openSIS 7.0-9.1 - SQL Injection via cp_id Parameter
CVSS 9.8
OS4ED openSIS 7.0-9.1 - SQL Injection via StudentFilters.php filter_id Parameter
CVSS 9.8
OS4ED openSIS 7.0-9.1 - SQL Injection via Group.php groupid Parameter
CVSS 9.8
OS4ED openSIS 7.0-9.1 - Unauthenticated Insecure Direct Object Reference in Staff Files Component
CVSS 7.5