CVE-2018-7477: School Management Script Project School Management Script
Critical severity, CVSS 9.8. EPSS: 2.7% chance of exploitation in the next 30 days.
SQL Injection exists in PHP Scripts Mall School Management Script 3.0.4 via the Username and Password fields to parents/Parent_module/parent_login.php.
Affected products
- School Management Script Project School Management Script: version 3.0.4 only
Published 2018-02-28. Last modified 2026-06-17.