Code Projects Exam Form Submission
Don't miss out!
Thousands of developers use stack.watch to stay informed.Get an email whenever new security vulnerabilities are reported in Code Projects Exam Form Submission.
By the Year
In 2025 there have been 20 vulnerabilities in Code Projects Exam Form Submission with an average score of 9.8 out of ten. Last year, in 2024 Exam Form Submission had 2 security vulnerabilities published. That is, 18 more vulnerabilities have already been reported in 2025 as compared to last year. However, the average CVE base score of the vulnerabilities in 2025 is greater by 3.70.
| Year | Vulnerabilities | Average Score |
|---|---|---|
| 2025 | 20 | 9.80 |
| 2024 | 2 | 6.10 |
It may take a day or so for new Exam Form Submission vulnerabilities to show up in the stats or in the list of recent security vulnerabilities. Additionally vulnerabilities may be tagged under a different product or component name.
Recent Code Projects Exam Form Submission Security Vulnerabilities
Exam Form Submission 1.0 SQLi via credits param in admin/update_s7.php
CVE-2025-8372
9.8 - Critical
- July 31, 2025
A vulnerability was found in code-projects Exam Form Submission 1.0 and classified as critical. Affected by this issue is some unknown functionality of the file /admin/update_s7.php. The manipulation of the argument credits leads to sql injection. The attack may be launched remotely. The exploit has been disclosed to the public and may be used.
SQL Injection
Exam Form Submission 1.0 /admin/update_s5.php Remote SQLi via credits
CVE-2025-8371
9.8 - Critical
- July 31, 2025
A vulnerability has been found in code-projects Exam Form Submission 1.0 and classified as critical. Affected by this vulnerability is an unknown functionality of the file /admin/update_s5.php. The manipulation of the argument credits leads to sql injection. The attack can be launched remotely. The exploit has been disclosed to the public and may be used.
SQL Injection
Exam Form Submission 1.0 SQLi RCE in delete_s8.php
CVE-2025-8327
9.8 - Critical
- July 30, 2025
A vulnerability classified as critical was found in code-projects Exam Form Submission 1.0. Affected by this vulnerability is an unknown functionality of the file /admin/delete_s8.php. The manipulation of the argument ID leads to sql injection. The attack can be launched remotely. The exploit has been disclosed to the public and may be used.
SQL Injection
Exam Form Submission 1.0 SQLi in /register.php
CVE-2025-8328
9.8 - Critical
- July 30, 2025
A vulnerability, which was classified as critical, has been found in code-projects Exam Form Submission 1.0. Affected by this issue is some unknown functionality of the file /register.php. The manipulation of the argument USN leads to sql injection. The attack may be launched remotely. The exploit has been disclosed to the public and may be used. Other parameters might be affected as well.
SQL Injection
Remote SQL Injection in Exam Form Submission 1.0 via /admin/delete_s7.php
CVE-2025-8326
9.8 - Critical
- July 30, 2025
A vulnerability classified as critical has been found in code-projects Exam Form Submission 1.0. Affected is an unknown function of the file /admin/delete_s7.php. The manipulation of the argument ID leads to sql injection. It is possible to launch the attack remotely. The exploit has been disclosed to the public and may be used.
SQL Injection
Exam Form Submission 1.0 SQLi in /admin/update_s8.php
CVE-2025-8273
9.8 - Critical
- July 28, 2025
A vulnerability classified as critical has been found in code-projects Exam Form Submission 1.0. Affected is an unknown function of the file /admin/update_s8.php. The manipulation of the argument credits leads to sql injection. It is possible to launch the attack remotely. The exploit has been disclosed to the public and may be used.
SQL Injection
SQLi in Exam Form Submission 1.0 /admin/update_fst.php
CVE-2025-8272
9.8 - Critical
- July 28, 2025
A vulnerability was found in code-projects Exam Form Submission 1.0. It has been rated as critical. This issue affects some unknown processing of the file /admin/update_fst.php. The manipulation of the argument credits leads to sql injection. The attack may be initiated remotely. The exploit has been disclosed to the public and may be used.
SQL Injection
Exam Form Submission 1.0 PHP SQLi in /admin/delete_s3.php
CVE-2025-8271
9.8 - Critical
- July 28, 2025
A vulnerability was found in code-projects Exam Form Submission 1.0. It has been declared as critical. This vulnerability affects unknown code of the file /admin/delete_s3.php. The manipulation of the argument ID leads to sql injection. The attack can be initiated remotely. The exploit has been disclosed to the public and may be used.
SQL Injection
Exam Form Submission 1.0 SQLi in /admin/delete_s2.php (remote)
CVE-2025-8270
9.8 - Critical
- July 28, 2025
A vulnerability was found in code-projects Exam Form Submission 1.0. It has been classified as critical. This affects an unknown part of the file /admin/delete_s2.php. The manipulation of the argument ID leads to sql injection. It is possible to initiate the attack remotely. The exploit has been disclosed to the public and may be used.
SQL Injection
SQLi via ID in Exam Form Submission 1.0 delete_s1.php
CVE-2025-8269
9.8 - Critical
- July 28, 2025
A vulnerability was found in code-projects Exam Form Submission 1.0 and classified as critical. Affected by this issue is some unknown functionality of the file /admin/delete_s1.php. The manipulation of the argument ID leads to sql injection. The attack may be launched remotely. The exploit has been disclosed to the public and may be used.
SQL Injection
Unrestricted File Upload RCE in Exam Form Submission 1.0 /register.php
CVE-2025-8255
9.8 - Critical
- July 28, 2025
A vulnerability was found in code-projects Exam Form Submission 1.0. It has been rated as critical. This issue affects some unknown processing of the file /register.php. The manipulation of the argument image leads to unrestricted upload. The attack may be initiated remotely. The exploit has been disclosed to the public and may be used.
Unrestricted File Upload
Exam Form Submission 1.0 RCE via SQLi in /admin/delete_s6.php
CVE-2025-8253
9.8 - Critical
- July 28, 2025
A vulnerability was found in code-projects Exam Form Submission 1.0. It has been classified as critical. This affects an unknown part of the file /admin/delete_s6.php. The manipulation of the argument ID leads to sql injection. It is possible to initiate the attack remotely. The exploit has been disclosed to the public and may be used.
SQL Injection
Exam Form Submission 1.0 SQLi in /admin/delete_s5.php (remote)
CVE-2025-8252
9.8 - Critical
- July 28, 2025
A vulnerability was found in code-projects Exam Form Submission 1.0 and classified as critical. Affected by this issue is some unknown functionality of the file /admin/delete_s5.php. The manipulation of the argument ID leads to sql injection. The attack may be launched remotely. The exploit has been disclosed to the public and may be used.
SQL Injection
Exam Form Submission 1.0 SQLi via /admin/delete_s4.php ID
CVE-2025-8251
9.8 - Critical
- July 28, 2025
A vulnerability has been found in code-projects Exam Form Submission 1.0 and classified as critical. Affected by this vulnerability is an unknown functionality of the file /admin/delete_s4.php. The manipulation of the argument ID leads to sql injection. The attack can be launched remotely. The exploit has been disclosed to the public and may be used.
SQL Injection
Exam Form Submission 1.0 /admin/update_s3.php SQLi via credits arg
CVE-2025-8249
9.8 - Critical
- July 28, 2025
A vulnerability, which was classified as critical, has been found in code-projects Exam Form Submission 1.0. This issue affects some unknown processing of the file /admin/update_s3.php. The manipulation of the argument credits leads to sql injection. The attack may be initiated remotely. The exploit has been disclosed to the public and may be used.
SQL Injection
Remote SQLi in code-projects Exam Form Submission 1.0 via credits
CVE-2025-8250
9.8 - Critical
- July 28, 2025
A vulnerability, which was classified as critical, was found in code-projects Exam Form Submission 1.0. Affected is an unknown function of the file /admin/update_s4.php. The manipulation of the argument credits leads to sql injection. It is possible to launch the attack remotely. The exploit has been disclosed to the public and may be used.
SQL Injection
CVE-2025-8240: SQLi via phone in code-projects Exam Form Submission 1.0
CVE-2025-8240
9.8 - Critical
- July 27, 2025
A vulnerability, which was classified as critical, has been found in code-projects Exam Form Submission 1.0. Affected by this issue is some unknown functionality of the file /user/dashboard.php. The manipulation of the argument phone leads to sql injection. The attack may be launched remotely. The exploit has been disclosed to the public and may be used.
SQL Injection
Exam Form Submission 1.0 /admin/ SQLi via email
CVE-2025-8239
9.8 - Critical
- July 27, 2025
A vulnerability classified as critical was found in code-projects Exam Form Submission 1.0. Affected by this vulnerability is an unknown functionality of the file /admin/. The manipulation of the argument email leads to sql injection. The attack can be launched remotely. The exploit has been disclosed to the public and may be used.
SQL Injection
Exam Form Submission 1.0 SQLi via credits on /admin/update_s2.php RCE
CVE-2025-8238
9.8 - Critical
- July 27, 2025
A vulnerability classified as critical has been found in code-projects Exam Form Submission 1.0. Affected is an unknown function of the file /admin/update_s2.php. The manipulation of the argument credits leads to sql injection. It is possible to launch the attack remotely. The exploit has been disclosed to the public and may be used.
SQL Injection
Code Projects Exam Form Submission 1.0 SQLi in /admin/update_s1.php
CVE-2025-8237
9.8 - Critical
- July 27, 2025
A vulnerability was found in code-projects Exam Form Submission 1.0. It has been rated as critical. This issue affects some unknown processing of the file /admin/update_s1.php. The manipulation of the argument credits leads to sql injection. The attack may be initiated remotely. The exploit has been disclosed to the public and may be used.
SQL Injection
XSS via Subject Fields in Code-Projects Exam Frmt Subm 1.0
CVE-2023-42308
- March 12, 2024
Cross Site Scripting (XSS) vulnerability in Manage Fastrack Subjects in Code-Projects Exam Form Submission 1.0 allows attackers to run arbitrary code via the "Subject Name" and "Subject Code" Section.
XSS in Code-Projects ExamForm 1.0 via Subject Fields
CVE-2023-42307
6.1 - Medium
- March 12, 2024
Cross Site Scripting (XSS) vulnerability in Code-Projects Exam Form Submission 1.0 allows attackers to run arbitrary code via "Subject Name" and "Subject Code" section.
XSS
Stay on top of Security Vulnerabilities
Want an email whenever new vulnerabilities are published for Code Projects Exam Form Submission or by Code Projects? Click the Watch button to subscribe.