Learning Management System ProjectCVEs & Vulnerabilities
2 CVEs affecting Learning Management System Project products, tracked from the National Vulnerability Database, with CVSS/EPSS scores and exploitation status.
2 CVEs→ All vendors
Most Affected Products
learning management system 2
CVE-2021-25200CRITICAL
Arbitrary file upload vulnerability in SourceCodester Learning Management System v 1.0 allows attackers to execute arbitrary code, via the file upload to \lms\student_avatar.php.
30 Jul 2021
9.8
CVSS
CVE-2021-25201HIGH
SQL injection vulnerability in Learning Management System v 1.0 allows remote attackers to execute arbitrary SQL statements through the id parameter to obtain sensitive database information.
23 Jul 2021
7.5
CVSS
← PrevPage 1 / 1Next →