v|per
7 exploits
Active since Mar 2025
Serosoft Academia Student Information System EagleR-1.0.118 - Arbitrary File Upload via writefile.php filePath Parameter
CVSS 6.4
Academia Student Information System EagleR 1.0.118 - Improper Access Control in Staff Resource Creation
CVSS 9.1
Academia Student Information System EagleR 1.0.118 - Stored Cross-Site Scripting via User ID Parameter
CVSS 5.4
Academia Student Information System EagleR 1.0.118 - Improper Access Control in /rest/staffResource/update
CVSS 8.1
Academia Student Information System EagleR 1.0.118 - Exposure of Sensitive Information via /rest/cb/executeBasicSearch
CVSS 7.5
Academia Student Information System EagleR 1.0.118 - Authorization Bypass via getStudemtAllDetailsById API
CVSS 6.5
Academia Student Information System EagleR 1.0.118 - Authenticated Privilege Escalation via Azure JWT Token Exposure
CVSS 6.5