CVE-2019-1010028: School College Portal With ERP Script Project School College Portal With ERP Script

Medium severity, CVSS 6.1. EPSS: 0.7% chance of exploitation in the next 30 days.

phpscriptsmall.com School College Portal with ERP Script 2.6.1 and earlier is affected by: Cross Site Scripting (XSS). The impact is: Attack administrators and teachers, students and more. The component is: /pro-school/index.php?student/message/send_reply/. The attack vector is: <img src=x onerror=alert(document.domain) />.

Affected products

Published 2019-07-15. Last modified 2026-06-17.