CVE-2019-1010028: School College Portal With ERP Script Project School College Portal With ERP Script
Medium severity, CVSS 6.1. EPSS: 0.7% chance of exploitation in the next 30 days.
phpscriptsmall.com School College Portal with ERP Script 2.6.1 and earlier is affected by: Cross Site Scripting (XSS). The impact is: Attack administrators and teachers, students and more. The component is: /pro-school/index.php?student/message/send_reply/. The attack vector is: <img src=x onerror=alert(document.domain) />.
Affected products
- School College Portal With ERP Script Project School College Portal With ERP Script: up to and including 2.6.1
Published 2019-07-15. Last modified 2026-06-17.