Search Results (3 CVEs found)

CVE Vendors Products Updated CVSS v3.1
CVE-2024-33911 1 Weblizar 1 School Management 2025-07-16 7.6 High
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Weblizar School Management Pro.This issue affects School Management Pro: from n/a through 10.3.4.
CVE-2022-1609 1 Weblizar 1 School Management 2025-06-02 9.8 Critical
The School Management WordPress plugin before 9.9.7 contains an obfuscated backdoor injected in it's license checking code that registers a REST API handler, allowing an unauthenticated attacker to execute arbitrary PHP code on the site.
CVE-2022-47430 1 Weblizar 1 School Management - Education \& Learning Management 2024-11-21 9.8 Critical
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Weblizar The School Management – Education & Learning Management allows SQL Injection.This issue affects The School Management – Education & Learning Management: from n/a through 4.1.