Products: 3
    Vulnerabilities: 7
    Known Exploited: 0
    0
    Critical Level Threats
    1
    High Level Threats
    5
    Medium Level Threats
    1
    Low Level Threats

    Vulnerabilities

    100806040200
    JanFebMarAprMayJunJulAugSepOctNovDec
    Critical Level Threats
    High Level Threats
    Medium Level Threats
    Low Level Threats

    Products Security index

    Actions
    Items Per Page

    Vulnerabilities

    CVE-2026-4991

    QDOCS Smart School Management System Admission Enquiry enquiry cross site scripting

    Last Modified: Apr 24, 2026
    Published: Mar 27, 2026

    CVE-2025-41107

    Stored XSS in Smart School

    Last Modified: Nov 14, 2025
    Published: Nov 10, 2025

    CVE-2025-60500

    QDocs Smart School Management System 7.1 allows authenticated users with roles such as "accountant" or "admin" to bypass file type restrictions in the media upload feature by abusing the alternate YouTube URL option. This logic flaw permits uploading of arbitrary PHP files, which are stored in a web-accessible directory.

    Last Modified: Nov 17, 2025
    Published: Oct 21, 2025

    CVE-2024-8784

    QDocs Smart School Management System Chat mynewuser sql injection

    Last Modified: Sep 19, 2024
    Published: Sep 13, 2024

    CVE-2024-34240

    QDOCS Smart School 7.0.0 is vulnerable to Cross Site Scripting (XSS) resulting in arbitrary code execution in admin functions related to adding or updating records.

    Last Modified: Nov 14, 2025
    Published: May 21, 2024
    Items Per Page
    Qdocs Vulnerabilities & Security CVEs | CVE-DB