Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1310 CNY

100%

Student Management System — Vulnerabilities & Security Advisories 32

All 32 CVE vulnerabilities found in Student Management System, with AI-generated Chinese analysis, references, and POCs.

This page provides a comprehensive aggregation of security weaknesses and vulnerabilities affecting the Student Management System product, focusing on general software exposure and configuration errors. It collects data regarding various vulnerability classifications, including but not limited to injection flaws, broken access control, and security misconfigurations, covering advisory reports released from January 2020 to December 2023. Readers can utilize this resource to track vendor security advisories over time, gain a deeper understanding of specific weakness classes such as SQL injection or cross-site scripting within this context, and examine the historical trend of disclosed vulnerabilities for this specific student information platform. The aggregated data aims to assist security professionals and system administrators in assessing risk profiles and prioritizing remediation efforts based on verified incident reports. By consolidating these findings, the page offers a centralized view of the product’s security posture without requiring users to visit multiple disparate sources. This structured approach facilitates better visibility into recurring security issues and helps stakeholders identify patterns in how threats have evolved for the Student Management System over the specified period. The information presented is derived from official vendor notifications, industry databases, and independent security research, ensuring a reliable foundation for decision-making regarding system hardening and patch management strategies for educational institutions relying on this technology.

Vendor: SourceCodester

CVE IDTitleCVSSSeverityPublished
CVE-2026-2943 SapneshNaik Student Management System index.php cross site scripting CWE-79 4.3 Medium2026-02-22
CVE-2026-2939 itsourcecode Student Management System Add Student add_student cross site scripting CWE-79 2.4 Low2026-02-22
CVE-2026-2014 itsourcecode Student Management System index.php sql injection CWE-89 7.3 High2026-02-06
CVE-2026-2013 itsourcecode Student Management System index.php sql injection CWE-89 7.3 High2026-02-06
CVE-2026-2012 itsourcecode Student Management System index.php sql injection CWE-89 7.3 High2026-02-06
CVE-2026-2011 itsourcecode Student Management System controller.php sql injection CWE-89 7.3 High2026-02-06
CVE-2025-15168 itsourcecode Student Management System statistical.php sql injection CWE-89 7.3 High2025-12-29
CVE-2025-15078 itsourcecode Student Management System list_report.php sql injection CWE-89 7.3 High2025-12-25
CVE-2025-15077 itsourcecode Student Management System form137.php sql injection CWE-89 7.3 High2025-12-25
CVE-2025-15075 itsourcecode Student Management System student_p.php sql injection CWE-89 7.3 High2025-12-25
CVE-2025-15034 itsourcecode Student Management System record.php sql injection CWE-89 7.3 High2025-12-23
CVE-2025-14967 itsourcecode Student Management System candidates_report.php sql injection CWE-89 7.3 High2025-12-19
CVE-2025-14653 itsourcecode Student Management System addrecord.php sql injection CWE-89 7.3 High2025-12-14
CVE-2025-14644 itsourcecode Student Management System update_subject.php sql injection CWE-89 7.3 High2025-12-14
CVE-2025-14639 itsourcecode Student Management System uprec.php sql injection CWE-89 7.3 High2025-12-14
CVE-2025-14588 itsourcecode Student Management System update_program.php sql injection CWE-89 7.3 High2025-12-13
CVE-2025-14578 itsourcecode Student Management System update_account.php sql injection CWE-89 7.3 High2025-12-12
CVE-2025-14337 itsourcecode Student Management System new_grade.php sql injection CWE-89 7.3 High2025-12-09
CVE-2025-14336 itsourcecode Student Management System promote.php sql injection CWE-89 7.3 High2025-12-09
CVE-2025-14335 itsourcecode Student Management System new_school_year.php sql injection CWE-89 7.3 High2025-12-09
CVE-2025-14334 itsourcecode Student Management System new_adviser.php sql injection CWE-89 7.3 High2025-12-09
CVE-2025-14258 itsourcecode Student Management System newsubject.php sql injection CWE-89 7.3 High2025-12-08
CVE-2025-14257 itsourcecode Student Management System newrecord.php sql injection CWE-89 7.3 High2025-12-08
CVE-2025-14256 itsourcecode Student Management System newcurriculm.php sql injection CWE-89 7.3 High2025-12-08
CVE-2025-14226 itsourcecode Student Management System edit_user.php sql injection CWE-89 7.3 High2025-12-08
CVE-2025-0203 code-projects Student Management System DbFunction.php showSubject1 sql injection CWE-89 6.3 Medium2025-01-04
CVE-2024-12929 code-projects Student Management System addCatController.php sql injection CWE-89 6.3 Medium2024-12-26
CVE-2024-6191 itsourcecode Student Management System Login Page login.php sql injection CWE-89 7.3 High2024-06-20
CVE-2024-5047 SourceCodester Student Management System controller.php unrestricted upload CWE-434 7.3 High2024-05-17
CVE-2023-3008 ningzichun Student Management System login.php sql injection CWE-89 7.3 High2023-05-31

All 32 known CVE vulnerabilities affecting Student Management System with full Chinese analysis, references, and POCs where available.