CVE-2019-18344: Online Grading System Project Online Grading System

Critical severity, CVSS 9.8. EPSS: 1.4% chance of exploitation in the next 30 days.

Sourcecodester Online Grading System 1.0 is vulnerable to unauthenticated SQL injection and can allow remote attackers to execute arbitrary SQL commands via the student, instructor, department, room, class, or user page (id or classid parameter).

Affected products

Published 2019-10-23. Last modified 2026-06-17.