CVE-2017-16561: Ingenious School Management System Project Ingenious School Management System
Critical severity, CVSS 9.8. EPSS: 1.4% chance of exploitation in the next 30 days.
/view/friend_profile.php in Ingenious School Management System 2.3.0 is vulnerable to Boolean-based and Time-based SQL injection in the 'friend_index' parameter of a GET request.
Affected products
- Ingenious School Management System Project Ingenious School Management System: version 2.3.0 only
Published 2017-11-07. Last modified 2026-06-17.