code-projects Vulnerabilities and Affected Products
Vulnerabilities associated with School Fees Payment System.
Products
Clear product- Blood Bank Management System28 vulnerabilities
- Exam Form Submission28 vulnerabilities
- Patient Record Management System27 vulnerabilities
- Job Recruitment25 vulnerabilities
- Online Music Site23 vulnerabilities
- Inventory Management System21 vulnerabilities
- Online Shoe Store21 vulnerabilities
- Simple Laundry System21 vulnerabilities
- Blood Bank System20 vulnerabilities
- Library System20 vulnerabilities
- Chat System19 vulnerabilities
- Pharmacy Management System19 vulnerabilities
- E-Commerce Website18 vulnerabilities
- Real Estate Property Management System18 vulnerabilities
- Simple Online Hotel Reservation System18 vulnerabilities
- Simple Pizza Ordering System18 vulnerabilities
- Employee Management System16 vulnerabilities
- Hostel Management System16 vulnerabilities
- Online Appointment Booking System16 vulnerabilities
- Simple Food Ordering System16 vulnerabilities
- Client Details System15 vulnerabilities
- Intern Membership Management System15 vulnerabilities
- blood_bank_system14 vulnerabilities
- Church Donation System14 vulnerabilities
- pharmacy_management_system14 vulnerabilities
| Vulnerability | Title and context | CVSS | EPSS | PoCs | Signals | STIX action |
|---|---|---|---|---|---|---|
CVE-2025-6569MEDIUM | code-projects School Fees Payment System student.php cross site scriptingA vulnerability classified as problematic was found in code-projects School Fees Payment System 1.0. Affected by this vulnerability is an unknown functionality of the file /student.php. The manipulation of the argument sname/contact/about/emailid/transcation_remark leads to cross site scripting. The attack can be launched remotely. The exploit has been disclosed to the public and may be used. | CVSS5.3v4.0 | EPSS0.327% | PoCs0 | SignalsNot listed in CISA KEVNo known ransomware useNo Nuclei templates | STIX |
CVE-2025-6473MEDIUM | code-projects School Fees Payment System fees.php cross site scriptingA vulnerability, which was classified as problematic, was found in code-projects School Fees Payment System 1.0. This affects an unknown part of the file /fees.php. The manipulation of the argument transcation_remark leads to cross site scripting. It is possible to initiate the attack remotely. The exploit has been disclosed to the public and may be used. | CVSS5.3v4.0 | EPSS0.327% | PoCs0 | SignalsNot listed in CISA KEVNo known ransomware useNo Nuclei templates | STIX |
CVE-2025-6403MEDIUM | code-projects School Fees Payment System student.php sql injectionA vulnerability was found in code-projects School Fees Payment System 1.0. It has been rated as critical. This issue affects some unknown processing of the file /student.php. The manipulation of the argument ID leads to sql injection. The attack may be initiated remotely. The exploit has been disclosed to the public and may be used. | CVSS6.9v4.0 | EPSS1.69% | PoCs0 | SignalsNot listed in CISA KEVNo known ransomware use1 Nuclei template | STIX |
CVE-2025-6341MEDIUM | code-projects School Fees Payment System cross-site request forgeryA vulnerability classified as problematic was found in code-projects School Fees Payment System 1.0. This vulnerability affects unknown code. The manipulation leads to cross-site request forgery. The attack can be initiated remotely. The exploit has been disclosed to the public and may be used. | CVSS5.3v4.0 | EPSS0.221% | PoCs0 | SignalsNot listed in CISA KEVNo known ransomware useNo Nuclei templates | STIX |
CVE-2025-6340MEDIUM | code-projects School Fees Payment System branch.php cross site scriptingA vulnerability classified as problematic has been found in code-projects School Fees Payment System 1.0. This affects an unknown part of the file /branch.php. The manipulation of the argument Branch/Address/Detail leads to cross site scripting. It is possible to initiate the attack remotely. The exploit has been disclosed to the public and may be used. | CVSS5.1v4.0 | EPSS0.239% | PoCs0 | SignalsNot listed in CISA KEVNo known ransomware useNo Nuclei templates | STIX |
CVE-2025-5985MEDIUM | code-projects School Fees Payment System improper authenticationA vulnerability was found in code-projects School Fees Payment System 1.0 and classified as critical. Affected by this issue is some unknown functionality. The manipulation leads to improper authentication. The attack may be launched remotely. The exploit has been disclosed to the public and may be used. CWE-287Jun 10, 2025 | CVSS6.9v4.0 | EPSS0.487% | PoCs0 | SignalsNot listed in CISA KEVNo known ransomware useNo Nuclei templates | STIX |
CVE-2025-5979MEDIUM | code-projects School Fees Payment System branch.php sql injectionA vulnerability classified as critical has been found in code-projects School Fees Payment System 1.0. This affects an unknown part of the file /branch.php. The manipulation of the argument ID leads to sql injection. It is possible to initiate the attack remotely. The exploit has been disclosed to the public and may be used. | CVSS6.9v4.0 | EPSS0.438% | PoCs0 | SignalsNot listed in CISA KEVNo known ransomware useNo Nuclei templates | STIX |
CVE-2025-5977MEDIUM | code-projects School Fees Payment System datatable.php sql injectionA vulnerability was found in code-projects School Fees Payment System 1.0 and classified as critical. This issue affects some unknown processing of the file /datatable.php. The manipulation of the argument sSortDir_0 leads to sql injection. The attack may be initiated remotely. The exploit has been disclosed to the public and may be used. | CVSS6.9v4.0 | EPSS0.438% | PoCs0 | SignalsNot listed in CISA KEVNo known ransomware useNo Nuclei templates | STIX |
CVE-2025-5971MEDIUM | code-projects School Fees Payment System ajx.php sql injectionA vulnerability was found in code-projects School Fees Payment System 1.0. It has been classified as critical. This affects an unknown part of the file /ajx.php. The manipulation of the argument name_startsWith leads to sql injection. It is possible to initiate the attack remotely. The exploit has been disclosed to the public and may be used. | CVSS5.3v4.0 | EPSS0.51% | PoCs0 | SignalsNot listed in CISA KEVNo known ransomware useNo Nuclei templates | STIX |