Ingenious School Management System Project maintains a school-administration platform where the observed vulnerability pattern centers on input-handling and file-upload controls, specifically SQL injection and unrestricted file-type acceptance. Treat this as a compact vendor profile; live severity, exploitation, and exposure counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Ingenious School Management System Project over time
Signals from CVEs in this vendor scope (2 CVEs).
2 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2017-15957HIGH my_profile.php in Ingenious School Management System 2.3.0 allows a student or teacher to upload an arbitrary file. | Oct 29, 2017 | 8.8 | 38 | NO | YES |
CVE-2017-16561CRITICAL /view/friend_profile.php in Ingenious School Management System 2.3.0 is vulnerable to Boolean-based and Time-based SQL injection in the 'friend_index' parameter of a GET request. | Nov 7, 2017 | 9.8 | 28 | NO | NO |
Signals from CVEs in this vendor scope (2 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Ingenious School Management System Project.
Media articles that mention a CVE ID that affects a product developed by Ingenious School Management System Project — matched by CVE ID, not by vendor name.