CVE Tools

Engineers Online Portal

26 CVEs tracked. None of them is in CISA KEV.

This hub aggregates every CVE we track for Engineers Online Portal, a product in the enterprise software space. Use it to gauge the current risk picture and drill into individual advisories.

Engineers Online Portal CVEs per month

Oct 2024 to Sep 2026. Point at a month, or focus the strip and use the arrow keys.
Engineers Online Portal CVEs per month
MonthCVEs
2024-100
2024-110
2024-120
2025-010
2025-020
2025-030
2025-040
2025-050
2025-060
2025-070
2025-080
2025-090
2025-100
2025-110
2025-120
2026-010
2026-020
2026-030
2026-041
2026-050
2026-060
2026-070
2026-080
2026-090

Severity

How the 26 CVEs score on CVSS. Severity is not exploitation: KEV is counted above.

  • Critical519%
  • High415%
  • Medium1246%
  • Low519%

Latest CVEs

The 15 most recently published vulnerabilities affecting Engineers Online Portal.

  1. CVE-2026-36236SourceCodester Engineers Online Portal v1.0 is vulnerable to SQL Injection in update_password.php via the new_password parameter.9.8
  2. CVE-2024-0351SourceCodester Engineers Online Portal session fixiation3.1
  3. CVE-2024-0350SourceCodester Engineers Online Portal session expiration3.1
  4. CVE-2024-0349SourceCodester Engineers Online Portal missing secure attribute3.7
  5. CVE-2024-0348SourceCodester Engineers Online Portal File Upload resource consumption4.3
  6. CVE-2024-0347SourceCodester Engineers Online Portal signup_teacher.php weak password3.7
  7. CVE-2024-0260SourceCodester Engineers Online Portal Password Change change_password_teacher.php session expiration4.3
  8. CVE-2024-0182SourceCodester Engineers Online Portal Admin Login sql injection7.3
  9. CVE-2023-7160SourceCodester Engineers Online Portal Add Engineer cross site scripting2.4
  10. CVE-2023-5284SourceCodester Engineers Online Portal upload_save_student.php unrestricted upload6.3
  11. CVE-2023-5283SourceCodester Engineers Online Portal teacher_signup.php sql injection6.3
  12. CVE-2023-5282SourceCodester Engineers Online Portal seed_message_student.php sql injection6.3
  13. CVE-2023-5281SourceCodester Engineers Online Portal remove_inbox_message.php sql injection6.3
  14. CVE-2023-5280SourceCodester Engineers Online Portal my_students.php sql injection6.3
  15. CVE-2023-5279SourceCodester Engineers Online Portal my_classmates.php sql injection6.3

Product grouping is registry-driven, with AI assist and human review. How it works

We use analytics cookies to see which pages and articles actually help people. Decline and none of them run — the site works the same. What we store