Known Vulnerabilities for Opensis by Os4ed
Listed below are 10 of the newest known vulnerabilities associated with "Opensis" by "Os4ed".
These CVEs are retrieved based on exact matches on listed software, hardware, and vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed software information are still displayed.
Data on known vulnerable versions is also displayed based on information from known CPEs
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2026-8406 json | openSIS Classic 9.3 contains an insecure direct object reference vulnerability in the messaging module. Any authenticated use... | Not Provided | 2026-06-11 | 2026-06-11 |
| CVE-2023-38885 json | ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new secur... | 8.8 - HIGH | 2023-11-20 | 2023-11-30 |
| CVE-2023-38884 json | ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new secur... | 7.5 - HIGH | 2023-11-20 | 2023-11-30 |
| CVE-2023-38883 json | ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new secur... | 6.1 - MEDIUM | 2023-11-20 | 2023-11-30 |
| CVE-2023-38882 json | ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new secur... | 6.1 - MEDIUM | 2023-11-20 | 2023-11-30 |
| CVE-2023-38881 json | ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new secur... | 6.1 - MEDIUM | 2023-11-20 | 2023-11-30 |
| CVE-2022-45962 json | Open Solutions for Education, Inc openSIS Community Edition v8.0 and earlier is vulnerable to SQL Injection via CalendarModal... | 6.5 - MEDIUM | 2023-02-13 | 2023-02-22 |
| CVE-2022-27041 json | Due to lack of protection, parameter student_id in OpenSIS Classic 8.0 /modules/eligibility/Student.php can be used to inject... | 7.5 - HIGH | 2022-04-11 | 2022-04-15 |
| CVE-2021-41679 json | A SQL injection vulnerability exists in version 8.0 of openSIS when MySQL or MariaDB is used as the application database. An ... | 9.8 - CRITICAL | 2021-11-30 | 2021-11-30 |
| CVE-2021-41678 json | A SQL injection vulnerability exists in version 8.0 of openSIS when MySQL or MariaDB is used as the application database. An ... | 9.8 - CRITICAL | 2021-11-30 | 2021-11-30 |
Known Affected Configurations (CPE V2.3)
| Type | Vendor | Product | Version | Update | Edition | Language |
|---|---|---|---|---|---|---|
| Application | Os4ed | Opensis | 7.6 | |||
| Application | Os4ed | Opensis | 7.5 | |||
| Application | Os4ed | Opensis | 7.4 | |||
| Application | Os4ed | Opensis | 7.3 | |||
| Application | Os4ed | Opensis | 7.3 | |||
| Application | Os4ed | Opensis | 7.2 | |||
| Application | Os4ed | Opensis | 7.1 | |||
| Application | Os4ed | Opensis | 7.0 | |||
| Application | Os4ed | Opensis | 7.0 | |||
| Application | Os4ed | Opensis | 5.3 | |||
| Application | Os4ed | Opensis | 5.2 | |||
| Application | Os4ed | Opensis | 5.1 | |||
| Application | Os4ed | Opensis | 5.0 | |||
| Application | Os4ed | Opensis | 4.9 | |||
| Application | Os4ed | Opensis | 4.8.1 | |||
| Application | Os4ed | Opensis | 4.8 | |||
| Application | Os4ed | Opensis | 4.7 | |||
| Application | Os4ed | Opensis | 4.6 | |||
| Application | Os4ed | Opensis | 4.5 |