Exam Form Submission Code Projects Exam Form Submission

Don't miss out!

Thousands of developers use stack.watch to stay informed.
Get an email whenever new security vulnerabilities are reported in Code Projects Exam Form Submission.

By the Year

In 2026 there have been 6 vulnerabilities in Code Projects Exam Form Submission with an average score of 2.7 out of ten. Last year, in 2025 Exam Form Submission had 20 security vulnerabilities published. If vulnerabilities keep coming in at the current rate, it appears that number of security vulnerabilities in Exam Form Submission in 2026 could surpass last years number. Last year, the average CVE base score was greater by 7.08

Year Vulnerabilities Average Score
2026 6 2.72
2025 20 9.80
2024 2 6.10

It may take a day or so for new Exam Form Submission vulnerabilities to show up in the stats or in the list of recent security vulnerabilities. Additionally vulnerabilities may be tagged under a different product or component name.

Recent Code Projects Exam Form Submission Security Vulnerabilities

Exam Form Submission 1.0 PHP XSS via sname param in update_s6.php
CVE-2026-4595 2.4 - Low - March 23, 2026

A vulnerability was determined in code-projects Exam Form Submission 1.0. This vulnerability affects unknown code of the file /admin/update_s6.php. Executing a manipulation of the argument sname can lead to cross site scripting. The attack can be launched remotely. The exploit has been publicly disclosed and may be utilized. If you want to get the best quality for vulnerability data then you always have to consider VulDB.

XSS

XSS in Exam Form Submission 1.0 /admin/update_s3.php via sname
CVE-2026-4578 2.4 - Low - March 23, 2026

A vulnerability was determined in code-projects Exam Form Submission 1.0. The impacted element is an unknown function of the file /admin/update_s3.php. Executing a manipulation of the argument sname can lead to cross site scripting. The attack may be launched remotely. The exploit has been publicly disclosed and may be utilized.

XSS

Code-Projects Exam Form Submission 1.0 Remote XSS via sname
CVE-2026-4577 2.4 - Low - March 23, 2026

A vulnerability was found in code-projects Exam Form Submission 1.0. The affected element is an unknown function of the file /admin/update_s4.php. Performing a manipulation of the argument sname results in cross site scripting. The attack may be initiated remotely. The exploit has been made public and could be used.

XSS

XSS via sname in Exam Form Submission 1.0
CVE-2026-4576 2.4 - Low - March 23, 2026

A vulnerability has been found in code-projects Exam Form Submission 1.0. Impacted is an unknown function of the file /admin/update_s5.php. Such manipulation of the argument sname leads to cross site scripting. The attack can be launched remotely. The exploit has been disclosed to the public and may be used.

XSS

Remote XSS via sname in Exam Form Submission 1.0 /admin/update_s2.php
CVE-2026-4575 2.4 - Low - March 23, 2026

A flaw has been found in code-projects Exam Form Submission 1.0. This issue affects some unknown processing of the file /admin/update_s2.php. This manipulation of the argument sname causes cross site scripting. The attack can be initiated remotely. The exploit has been published and may be used.

XSS

Exam Form Submission 1.0 Remote XSS in /admin/update_s1.php sname
CVE-2026-4557 4.3 - Medium - March 22, 2026

A vulnerability was detected in code-projects Exam Form Submission 1.0. This impacts an unknown function of the file /admin/update_s1.php. Performing a manipulation of the argument sname results in cross site scripting. The attack may be initiated remotely. The exploit is now public and may be used.

XSS

Exam Form Submission 1.0 SQLi via credits param in admin/update_s7.php
CVE-2025-8372 9.8 - Critical - July 31, 2025

A vulnerability was found in code-projects Exam Form Submission 1.0 and classified as critical. Affected by this issue is some unknown functionality of the file /admin/update_s7.php. The manipulation of the argument credits leads to sql injection. The attack may be launched remotely. The exploit has been disclosed to the public and may be used.

SQL Injection

Exam Form Submission 1.0 /admin/update_s5.php Remote SQLi via credits
CVE-2025-8371 9.8 - Critical - July 31, 2025

A vulnerability has been found in code-projects Exam Form Submission 1.0 and classified as critical. Affected by this vulnerability is an unknown functionality of the file /admin/update_s5.php. The manipulation of the argument credits leads to sql injection. The attack can be launched remotely. The exploit has been disclosed to the public and may be used.

SQL Injection

Exam Form Submission 1.0 SQLi in /register.php
CVE-2025-8328 9.8 - Critical - July 30, 2025

A vulnerability, which was classified as critical, has been found in code-projects Exam Form Submission 1.0. Affected by this issue is some unknown functionality of the file /register.php. The manipulation of the argument USN leads to sql injection. The attack may be launched remotely. The exploit has been disclosed to the public and may be used. Other parameters might be affected as well.

SQL Injection

Exam Form Submission 1.0 SQLi RCE in delete_s8.php
CVE-2025-8327 9.8 - Critical - July 30, 2025

A vulnerability classified as critical was found in code-projects Exam Form Submission 1.0. Affected by this vulnerability is an unknown functionality of the file /admin/delete_s8.php. The manipulation of the argument ID leads to sql injection. The attack can be launched remotely. The exploit has been disclosed to the public and may be used.

SQL Injection

Remote SQL Injection in Exam Form Submission 1.0 via /admin/delete_s7.php
CVE-2025-8326 9.8 - Critical - July 30, 2025

A vulnerability classified as critical has been found in code-projects Exam Form Submission 1.0. Affected is an unknown function of the file /admin/delete_s7.php. The manipulation of the argument ID leads to sql injection. It is possible to launch the attack remotely. The exploit has been disclosed to the public and may be used.

SQL Injection

Exam Form Submission 1.0 SQLi in /admin/update_s8.php
CVE-2025-8273 9.8 - Critical - July 28, 2025

A vulnerability classified as critical has been found in code-projects Exam Form Submission 1.0. Affected is an unknown function of the file /admin/update_s8.php. The manipulation of the argument credits leads to sql injection. It is possible to launch the attack remotely. The exploit has been disclosed to the public and may be used.

SQL Injection

SQLi in Exam Form Submission 1.0 /admin/update_fst.php
CVE-2025-8272 9.8 - Critical - July 28, 2025

A vulnerability was found in code-projects Exam Form Submission 1.0. It has been rated as critical. This issue affects some unknown processing of the file /admin/update_fst.php. The manipulation of the argument credits leads to sql injection. The attack may be initiated remotely. The exploit has been disclosed to the public and may be used.

SQL Injection

Exam Form Submission 1.0 PHP SQLi in /admin/delete_s3.php
CVE-2025-8271 9.8 - Critical - July 28, 2025

A vulnerability was found in code-projects Exam Form Submission 1.0. It has been declared as critical. This vulnerability affects unknown code of the file /admin/delete_s3.php. The manipulation of the argument ID leads to sql injection. The attack can be initiated remotely. The exploit has been disclosed to the public and may be used.

SQL Injection

Exam Form Submission 1.0 SQLi in /admin/delete_s2.php (remote)
CVE-2025-8270 9.8 - Critical - July 28, 2025

A vulnerability was found in code-projects Exam Form Submission 1.0. It has been classified as critical. This affects an unknown part of the file /admin/delete_s2.php. The manipulation of the argument ID leads to sql injection. It is possible to initiate the attack remotely. The exploit has been disclosed to the public and may be used.

SQL Injection

SQLi via ID in Exam Form Submission 1.0 delete_s1.php
CVE-2025-8269 9.8 - Critical - July 28, 2025

A vulnerability was found in code-projects Exam Form Submission 1.0 and classified as critical. Affected by this issue is some unknown functionality of the file /admin/delete_s1.php. The manipulation of the argument ID leads to sql injection. The attack may be launched remotely. The exploit has been disclosed to the public and may be used.

SQL Injection

Unrestricted File Upload RCE in Exam Form Submission 1.0 /register.php
CVE-2025-8255 9.8 - Critical - July 28, 2025

A vulnerability was found in code-projects Exam Form Submission 1.0. It has been rated as critical. This issue affects some unknown processing of the file /register.php. The manipulation of the argument image leads to unrestricted upload. The attack may be initiated remotely. The exploit has been disclosed to the public and may be used.

Unrestricted File Upload

Exam Form Submission 1.0 RCE via SQLi in /admin/delete_s6.php
CVE-2025-8253 9.8 - Critical - July 28, 2025

A vulnerability was found in code-projects Exam Form Submission 1.0. It has been classified as critical. This affects an unknown part of the file /admin/delete_s6.php. The manipulation of the argument ID leads to sql injection. It is possible to initiate the attack remotely. The exploit has been disclosed to the public and may be used.

SQL Injection

Exam Form Submission 1.0 SQLi in /admin/delete_s5.php (remote)
CVE-2025-8252 9.8 - Critical - July 28, 2025

A vulnerability was found in code-projects Exam Form Submission 1.0 and classified as critical. Affected by this issue is some unknown functionality of the file /admin/delete_s5.php. The manipulation of the argument ID leads to sql injection. The attack may be launched remotely. The exploit has been disclosed to the public and may be used.

SQL Injection

Exam Form Submission 1.0 SQLi via /admin/delete_s4.php ID
CVE-2025-8251 9.8 - Critical - July 28, 2025

A vulnerability has been found in code-projects Exam Form Submission 1.0 and classified as critical. Affected by this vulnerability is an unknown functionality of the file /admin/delete_s4.php. The manipulation of the argument ID leads to sql injection. The attack can be launched remotely. The exploit has been disclosed to the public and may be used.

SQL Injection

Exam Form Submission 1.0 /admin/update_s3.php SQLi via credits arg
CVE-2025-8249 9.8 - Critical - July 28, 2025

A vulnerability, which was classified as critical, has been found in code-projects Exam Form Submission 1.0. This issue affects some unknown processing of the file /admin/update_s3.php. The manipulation of the argument credits leads to sql injection. The attack may be initiated remotely. The exploit has been disclosed to the public and may be used.

SQL Injection

Remote SQLi in code-projects Exam Form Submission 1.0 via credits
CVE-2025-8250 9.8 - Critical - July 28, 2025

A vulnerability, which was classified as critical, was found in code-projects Exam Form Submission 1.0. Affected is an unknown function of the file /admin/update_s4.php. The manipulation of the argument credits leads to sql injection. It is possible to launch the attack remotely. The exploit has been disclosed to the public and may be used.

SQL Injection

CVE-2025-8240: SQLi via phone in code-projects Exam Form Submission 1.0
CVE-2025-8240 9.8 - Critical - July 27, 2025

A vulnerability, which was classified as critical, has been found in code-projects Exam Form Submission 1.0. Affected by this issue is some unknown functionality of the file /user/dashboard.php. The manipulation of the argument phone leads to sql injection. The attack may be launched remotely. The exploit has been disclosed to the public and may be used.

SQL Injection

Exam Form Submission 1.0 SQLi via credits on /admin/update_s2.php RCE
CVE-2025-8238 9.8 - Critical - July 27, 2025

A vulnerability classified as critical has been found in code-projects Exam Form Submission 1.0. Affected is an unknown function of the file /admin/update_s2.php. The manipulation of the argument credits leads to sql injection. It is possible to launch the attack remotely. The exploit has been disclosed to the public and may be used.

SQL Injection

Exam Form Submission 1.0 /admin/ SQLi via email
CVE-2025-8239 9.8 - Critical - July 27, 2025

A vulnerability classified as critical was found in code-projects Exam Form Submission 1.0. Affected by this vulnerability is an unknown functionality of the file /admin/. The manipulation of the argument email leads to sql injection. The attack can be launched remotely. The exploit has been disclosed to the public and may be used.

SQL Injection

Code Projects Exam Form Submission 1.0 SQLi in /admin/update_s1.php
CVE-2025-8237 9.8 - Critical - July 27, 2025

A vulnerability was found in code-projects Exam Form Submission 1.0. It has been rated as critical. This issue affects some unknown processing of the file /admin/update_s1.php. The manipulation of the argument credits leads to sql injection. The attack may be initiated remotely. The exploit has been disclosed to the public and may be used.

SQL Injection

XSS in Code-Projects ExamForm 1.0 via Subject Fields
CVE-2023-42307 6.1 - Medium - March 12, 2024

Cross Site Scripting (XSS) vulnerability in Code-Projects Exam Form Submission 1.0 allows attackers to run arbitrary code via "Subject Name" and "Subject Code" section.

XSS

XSS via Subject Fields in Code-Projects Exam Frmt Subm 1.0
CVE-2023-42308 - March 12, 2024

Cross Site Scripting (XSS) vulnerability in Manage Fastrack Subjects in Code-Projects Exam Form Submission 1.0 allows attackers to run arbitrary code via the "Subject Name" and "Subject Code" Section.

Stay on top of Security Vulnerabilities

Want an email whenever new vulnerabilities are published for Code Projects Exam Form Submission or by Code Projects? Click the Watch button to subscribe.

subscribe