CVE-2021-3239: E-Learning System Project E-Learning System

Critical severity, CVSS 9.8. EPSS: 18.4% chance of exploitation in the next 30 days.

E-Learning System 1.0 suffers from an unauthenticated SQL injection vulnerability, which allows remote attackers to execute arbitrary code on the hosting web server and gain a reverse shell.

Affected products

Published 2021-02-15. Last modified 2026-06-17.