The Judging Management System Project maintains a specialized web-based application for competition and event judging workflows, occupying a focused but prominent role in niche deployment contexts. Vulnerabilities affecting this vendor skew strongly toward critical-severity outcomes and recur across application-layer input-handling and file-management weaknesses—particularly SQL injection, cross-site scripting, and unrestricted file uploads—that reflect typical risks in web-facing data collection and administrative tools. Defenders should treat this vendor's security advisories with urgency given the severity profile; live exploitation activity and current exposure counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Judging Management System Project over time
Signals from CVEs in this vendor scope (17 CVEs).
17 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2023-24641CRITICAL Judging Management System v1.0 was discovered to contain a SQL injection vulnerability via the sid parameter at /php-jms/updateview.php. | Mar 3, 2023 | 9.8 | 31 | NO | NO |
CVE-2023-30245CRITICAL SQL injection vulnerability found in Judging Management System v.1.0 allows a remote attacker to execute arbitrary code via the crit_id parameter of the edit_criteria.php file. | May 15, 2023 | 9.8 | 30 | NO | NO |
CVE-2023-30246CRITICAL SQL injection vulnerability found in Judging Management System v.1.0 allows a remote attacker to execute arbitrary code via the contestant_id parameter. | May 12, 2023 | 9.8 | 30 | NO | NO |
CVE-2023-30077CRITICAL Judging Management System v1.0 by oretnom23 was discovered to vulnerable to SQL injection via /php-jms/review_result.php?mainevent_id=, mainevent_id. | May 4, 2023 | 9.8 | 30 | NO | NO |
CVE-2023-30076CRITICAL Sourcecodester Judging Management System v1.0 is vulnerable to SQL Injection via /php-jms/print_judges.php?print_judges.php=&se_name=&sub_event_id=. | Apr 20, 2023 | 9.8 | 30 | NO | NO |
CVE-2023-2108CRITICAL A vulnerability has been found in SourceCodester Judging Management System 1.0 and classified as critical. Affected by this vulnerability is an unknown functionality of the file ed | Apr 16, 2023 | 9.8 | 30 | NO | NO |
CVE-2023-24643CRITICAL Judging Management System v1.0 was discovered to contain a SQL injection vulnerability via the sid parameter at /php-jms/updateBlankTxtview.php. | Mar 3, 2023 | 9.8 | 30 | NO | NO |
CVE-2023-24642CRITICAL Judging Management System v1.0 was discovered to contain a SQL injection vulnerability via the sid parameter at /php-jms/updateTxtview.php. | Mar 3, 2023 | 9.8 | 30 | NO | NO |
CVE-2023-37682CRITICAL Judging Management System v1.0 was discovered to contain a SQL injection vulnerability via the id parameter at /php-jms/deductScores.php. | Aug 8, 2023 | 9.8 | 29 | NO | NO |
CVE-2023-30203CRITICAL Judging Management System v1.0 was discovered to contain a SQL injection vulnerability via the event_id parameter at /php-jms/result_sheet.php. | May 4, 2023 | 9.8 | 29 | NO | NO |
Signals from CVEs in this vendor scope (17 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Judging Management System Project.
Media articles that mention a CVE ID that affects a product developed by Judging Management System Project — matched by CVE ID, not by vendor name.