CVE-2019-18344: Online Grading System Project Online Grading System
Critical severity, CVSS 9.8. EPSS: 1.4% chance of exploitation in the next 30 days.
Sourcecodester Online Grading System 1.0 is vulnerable to unauthenticated SQL injection and can allow remote attackers to execute arbitrary SQL commands via the student, instructor, department, room, class, or user page (id or classid parameter).
Affected products
- Online Grading System Project Online Grading System: version 1.0 only
Published 2019-10-23. Last modified 2026-06-17.