Campcodes Vulnerabilities and Affected Products
Vulnerabilities associated with Online Examination System.
Products
Clear product- Complete Web-Based School Management System74 vulnerabilities
- complete_web-based_school_management_system61 vulnerabilities
- Sales and Inventory System37 vulnerabilities
- Online Job Finder System23 vulnerabilities
- Beauty Salon Management System21 vulnerabilities
- Online Learning Management System21 vulnerabilities
- Online Examination System16 vulnerabilities
- Online Hospital Management System16 vulnerabilities
- online_job_finder_system16 vulnerabilities
- Advanced Online Voting System15 vulnerabilities
- Grocery Sales and Inventory System15 vulnerabilities
- Legal Case Management System15 vulnerabilities
- Retro Basketball Shoes Online Store15 vulnerabilities
- Supplier Management System14 vulnerabilities
- Online Recruitment Management System12 vulnerabilities
- Online Shopping Portal12 vulnerabilities
- Complete Online Beauty Parlor Management System10 vulnerabilities
- Computer Sales and Inventory System10 vulnerabilities
- Courier Management System10 vulnerabilities
- Employee Management System10 vulnerabilities
- Payroll Management System10 vulnerabilities
- Church Management System9 vulnerabilities
- Complete Online DJ Booking System9 vulnerabilities
- Online Laundry Management System9 vulnerabilities
- Online Loan Management System9 vulnerabilities
| Vulnerability | Title and context | CVSS | EPSS | PoCs | Signals | STIX action |
|---|---|---|---|---|---|---|
CVE-2024-4919MEDIUM | Campcodes Online Examination System addCourseExe.php sql injectionA vulnerability was found in Campcodes Online Examination System 1.0. It has been declared as critical. This vulnerability affects unknown code of the file /adminpanel/admin/query/addCourseExe.php. The manipulation of the argument course_name leads to sql injection. The attack can be initiated remotely. The exploit has been disclosed to the public and may be used. VDB-264454 is the identifier assigned to this vulnerability. CWE-89May 15, 2024 | CVSS5.3v4.0 | EPSS0.575% | PoCs0 | SignalsNot listed in CISA KEVNo known ransomware useNo Nuclei templates | STIX |
CVE-2024-4918MEDIUM | Campcodes Online Examination System updateQuestion.php sql injectionA vulnerability was found in Campcodes Online Examination System 1.0. It has been classified as critical. This affects an unknown part of the file updateQuestion.php. The manipulation of the argument id leads to sql injection. It is possible to initiate the attack remotely. The exploit has been disclosed to the public and may be used. The identifier VDB-264453 was assigned to this vulnerability. CWE-89May 15, 2024 | CVSS5.3v4.0 | EPSS0.579% | PoCs0 | SignalsNot listed in CISA KEVNo known ransomware useNo Nuclei templates | STIX |
CVE-2024-4917MEDIUM | Campcodes Online Examination System submitAnswerExe.php sql injectionA vulnerability was found in Campcodes Online Examination System 1.0 and classified as critical. Affected by this issue is some unknown functionality of the file submitAnswerExe.php. The manipulation of the argument exmne_id leads to sql injection. The attack may be launched remotely. The exploit has been disclosed to the public and may be used. The identifier of this vulnerability is VDB-264452. CWE-89May 15, 2024 | CVSS5.3v4.0 | EPSS0.615% | PoCs0 | SignalsNot listed in CISA KEVNo known ransomware useNo Nuclei templates | STIX |
CVE-2024-4916MEDIUM | Campcodes Online Examination System selExamAttemptExe.php sql injectionA vulnerability has been found in Campcodes Online Examination System 1.0 and classified as critical. Affected by this vulnerability is an unknown functionality of the file selExamAttemptExe.php. The manipulation of the argument thisId leads to sql injection. The attack can be launched remotely. The exploit has been disclosed to the public and may be used. The associated identifier of this vulnerability is VDB-264451. CWE-89May 15, 2024 | CVSS5.3v4.0 | EPSS0.575% | PoCs0 | SignalsNot listed in CISA KEVNo known ransomware useNo Nuclei templates | STIX |
CVE-2024-4915MEDIUM | Campcodes Online Examination System result.php sql injectionA vulnerability, which was classified as critical, was found in Campcodes Online Examination System 1.0. Affected is an unknown function of the file result.php. The manipulation of the argument id leads to sql injection. It is possible to launch the attack remotely. The exploit has been disclosed to the public and may be used. VDB-264450 is the identifier assigned to this vulnerability. CWE-89May 15, 2024 | CVSS5.3v4.0 | EPSS0.767% | PoCs0 | SignalsNot listed in CISA KEVNo known ransomware useNo Nuclei templates | STIX |
CVE-2024-4914MEDIUM | Campcodes Online Examination System ranking-exam.php sql injectionA vulnerability, which was classified as critical, has been found in Campcodes Online Examination System 1.0. This issue affects some unknown processing of the file ranking-exam.php. The manipulation of the argument exam_id leads to sql injection. The attack may be initiated remotely. The exploit has been disclosed to the public and may be used. The identifier VDB-264449 was assigned to this vulnerability. CWE-89May 15, 2024 | CVSS5.3v4.0 | EPSS0.675% | PoCs0 | SignalsNot listed in CISA KEVNo known ransomware useNo Nuclei templates | STIX |
CVE-2024-4913MEDIUM | Campcodes Online Examination System exam.php sql injectionA vulnerability classified as critical was found in Campcodes Online Examination System 1.0. This vulnerability affects unknown code of the file exam.php. The manipulation of the argument id leads to sql injection. The attack can be initiated remotely. The exploit has been disclosed to the public and may be used. The identifier of this vulnerability is VDB-264448. CWE-89May 15, 2024 | CVSS5.3v4.0 | EPSS0.541% | PoCs0 | SignalsNot listed in CISA KEVNo known ransomware useNo Nuclei templates | STIX |
CVE-2024-4912MEDIUM | Campcodes Online Examination System addExamExe.php sql injectionA vulnerability classified as critical has been found in Campcodes Online Examination System 1.0. This affects an unknown part of the file addExamExe.php. The manipulation of the argument examTitle leads to sql injection. It is possible to initiate the attack remotely. The exploit has been disclosed to the public and may be used. The associated identifier of this vulnerability is VDB-264447. CWE-89May 15, 2024 | CVSS5.3v4.0 | EPSS0.541% | PoCs0 | SignalsNot listed in CISA KEVNo known ransomware useNo Nuclei templates | STIX |
CVE-2024-2945MEDIUM | Campcodes Online Examination System updateExaminee.php sql injectionA vulnerability was found in Campcodes Online Examination System 1.0. It has been classified as critical. Affected is an unknown function of the file /adminpanel/admin/facebox_modal/updateExaminee.php. The manipulation of the argument id leads to sql injection. It is possible to launch the attack remotely. The exploit has been disclosed to the public and may be used. The identifier of this vulnerability is VDB-258036. CWE-89Mar 27, 2024 | CVSS6.3v3.1 | EPSS0.512% | PoCs0 | SignalsNot listed in CISA KEVNo known ransomware useNo Nuclei templates | STIX |
CVE-2024-2944MEDIUM | Campcodes Online Examination System deleteCourseExe.php sql injectionA vulnerability was found in Campcodes Online Examination System 1.0 and classified as critical. This issue affects some unknown processing of the file /adminpanel/admin/query/deleteCourseExe.php. The manipulation of the argument id leads to sql injection. The attack may be initiated remotely. The exploit has been disclosed to the public and may be used. The associated identifier of this vulnerability is VDB-258035. CWE-89Mar 27, 2024 | CVSS6.3v3.1 | EPSS0.55% | PoCs0 | SignalsNot listed in CISA KEVNo known ransomware useNo Nuclei templates | STIX |
CVE-2024-2943MEDIUM | Campcodes Online Examination System deleteExamExe.php sql injectionA vulnerability has been found in Campcodes Online Examination System 1.0 and classified as critical. This vulnerability affects unknown code of the file /adminpanel/admin/query/deleteExamExe.php. The manipulation of the argument id leads to sql injection. The attack can be initiated remotely. The exploit has been disclosed to the public and may be used. VDB-258034 is the identifier assigned to this vulnerability. CWE-89Mar 27, 2024 | CVSS6.3v3.1 | EPSS0.512% | PoCs0 | SignalsNot listed in CISA KEVNo known ransomware useNo Nuclei templates | STIX |
CVE-2024-2942MEDIUM | Campcodes Online Examination System deleteQuestionExe.php sql injectionA vulnerability, which was classified as critical, was found in Campcodes Online Examination System 1.0. This affects an unknown part of the file /adminpanel/admin/query/deleteQuestionExe.php. The manipulation of the argument id leads to sql injection. It is possible to initiate the attack remotely. The exploit has been disclosed to the public and may be used. The identifier VDB-258033 was assigned to this vulnerability. CWE-89Mar 27, 2024 | CVSS6.3v3.1 | EPSS0.512% | PoCs0 | SignalsNot listed in CISA KEVNo known ransomware useNo Nuclei templates | STIX |
CVE-2024-2941MEDIUM | Campcodes Online Examination System loginExe.php sql injectionA vulnerability, which was classified as critical, has been found in Campcodes Online Examination System 1.0. Affected by this issue is some unknown functionality of the file /adminpanel/admin/query/loginExe.php. The manipulation of the argument pass leads to sql injection. The attack may be launched remotely. The exploit has been disclosed to the public and may be used. The identifier of this vulnerability is VDB-258032. CWE-89Mar 27, 2024 | CVSS6.3v3.1 | EPSS0.689% | PoCs0 | SignalsNot listed in CISA KEVNo known ransomware useNo Nuclei templates | STIX |
Campcodes Online Examination System updateCourse.php cross site scriptingA vulnerability classified as problematic was found in Campcodes Online Examination System 1.0. Affected by this vulnerability is an unknown functionality of the file /adminpanel/admin/facebox_modal/updateCourse.php. The manipulation of the argument id leads to cross site scripting. The attack can be launched remotely. The exploit has been disclosed to the public and may be used. The associated identifier of this vulnerability is VDB-258031. CWE-79Mar 27, 2024 | CVSS3.5v3.1 | EPSS0.556% | PoCs0 | SignalsNot listed in CISA KEVNo known ransomware useNo Nuclei templates | STIX | |
Campcodes Online Examination System updateExaminee.php cross site scriptingA vulnerability classified as problematic has been found in Campcodes Online Examination System 1.0. Affected is an unknown function of the file /adminpanel/admin/facebox_modal/updateExaminee.php. The manipulation of the argument id leads to cross site scripting. It is possible to launch the attack remotely. The exploit has been disclosed to the public and may be used. VDB-258030 is the identifier assigned to this vulnerability. CWE-79Mar 27, 2024 | CVSS3.5v3.1 | EPSS0.58% | PoCs0 | SignalsNot listed in CISA KEVNo known ransomware useNo Nuclei templates | STIX | |
CVE-2024-2938MEDIUM | Campcodes Online Examination System updateCourse.php sql injectionA vulnerability was found in Campcodes Online Examination System 1.0. It has been rated as critical. This issue affects some unknown processing of the file /adminpanel/admin/facebox_modal/updateCourse.php. The manipulation of the argument id leads to sql injection. The attack may be initiated remotely. The exploit has been disclosed to the public and may be used. The identifier VDB-258029 was assigned to this vulnerability. CWE-89Mar 27, 2024 | CVSS6.3v3.1 | EPSS0.572% | PoCs0 | SignalsNot listed in CISA KEVNo known ransomware useNo Nuclei templates | STIX |