The Open Faculty Evaluation System Project maintains a focused academic administration tool, with its vulnerability exposure centered on SQL injection risks in database query handling. This pattern reflects the application's database-driven design for managing faculty performance data; live severity, exploitation, and exposure counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Open Faculty Evaluation System Project over time
Signals from CVEs in this vendor scope (2 CVEs).
2 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2018-18758CRITICAL Open Faculty Evaluation System 7 for PHP 7 allows submit_feedback.php SQL Injection, a different vulnerability than CVE-2018-18757. | Jun 19, 2019 | 9.8 | 30 | NO | NO |
CVE-2018-18757CRITICAL Open Faculty Evaluation System 5.6 for PHP 5.6 allows submit_feedback.php SQL Injection, a different vulnerability than CVE-2018-18758. | Jun 19, 2019 | 9.8 | 30 | NO | NO |
Signals from CVEs in this vendor scope (2 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Open Faculty Evaluation System Project.
Media articles that mention a CVE ID that affects a product developed by Open Faculty Evaluation System Project — matched by CVE ID, not by vendor name.