Vulnerabilities (CVE)

Filtered by vendor Daycloud Subscribe
Total 5 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2025-50586 1 Daycloud 1 Studentmanage 2025-09-09 N/A 6.5 MEDIUM
StudentManage v1.0 was discovered to contain Cross-Site Request Forgery (CSRF).
CVE-2025-50585 1 Daycloud 1 Studentmanage 2025-09-09 N/A 8.8 HIGH
StudentManage v1.0 was discovered to contain a SQL injection vulnerability via the component /admin/adminStudentUrl.
CVE-2025-50584 1 Daycloud 1 Studentmanage 2025-09-09 N/A 4.8 MEDIUM
StudentManage v1.0 was discovered to contain a cross-site scripting (XSS) vulnerability via the Add A New Teacher module.
CVE-2025-50582 1 Daycloud 1 Studentmanage 2025-09-09 N/A 4.8 MEDIUM
StudentManage v1.0 was discovered to contain a cross-site scripting (XSS) vulnerability via the Add A New Course module.
CVE-2025-50583 1 Daycloud 1 Studentmanage 2025-09-09 N/A 4.8 MEDIUM
StudentManage v1.0 was discovered to contain a cross-site scripting (XSS) vulnerability via the Add A New Student module.