Search
Search Results (7 CVEs found)
| CVE | Vendors | Products | Updated | CVSS v3.1 |
|---|---|---|---|---|
| CVE-2026-86281 | 1 Sourcecodester | 1 Syllabus-aligned Learning Management Examination System | 2026-09-07 | 4.3 Medium |
| A security flaw has been discovered in SourceCodester Syllabus-Aligned Learning Management & Examination System 1.0. This impacts an unknown function. Performing a manipulation results in cross-site request forgery. The attack can be initiated remotely. The exploit has been released to the public and may be used for attacks. | ||||
| CVE-2026-86280 | 1 Sourcecodester | 1 Syllabus-aligned Learning Management Examination System | 2026-09-07 | 5.3 Medium |
| A vulnerability was identified in SourceCodester Syllabus-Aligned Learning Management & Examination System 1.0. This affects an unknown function of the file cict_portal.sql. Such manipulation leads to cleartext storage of sensitive information. It is possible to launch the attack remotely. The exploit is publicly available and might be used. | ||||
| CVE-2026-86279 | 1 Sourcecodester | 1 Syllabus-aligned Learning Management Examination System | 2026-09-07 | 6.3 Medium |
| A vulnerability was determined in SourceCodester Syllabus-Aligned Learning Management & Examination System 1.0. The impacted element is an unknown function of the file auth_process.php of the component Login. This manipulation causes session fixiation. It is possible to initiate the attack remotely. The exploit has been publicly disclosed and may be utilized. | ||||
| CVE-2026-86278 | 1 Sourcecodester | 1 Syllabus-aligned Learning Management Examination System | 2026-09-07 | 4.3 Medium |
| A vulnerability was found in SourceCodester Syllabus-Aligned Learning Management & Examination System 1.0. The affected element is an unknown function of the file manage_subjects.php. The manipulation of the argument msg/title/content results in cross site scripting. The attack may be performed from remote. The exploit has been made public and could be used. | ||||
| CVE-2026-86277 | 1 Sourcecodester | 1 Syllabus-aligned Learning Management Examination System | 2026-09-07 | 7.3 High |
| A vulnerability has been found in SourceCodester Syllabus-Aligned Learning Management & Examination System 1.0. Impacted is an unknown function of the file delete_exam.php. The manipulation of the argument ID leads to authorization bypass. The attack is possible to be carried out remotely. The exploit has been disclosed to the public and may be used. | ||||
| CVE-2026-86276 | 1 Sourcecodester | 1 Syllabus-aligned Learning Management Examination System | 2026-09-07 | 7.3 High |
| A flaw has been found in SourceCodester Syllabus-Aligned Learning Management & Examination System 1.0. This issue affects some unknown processing of the file db.php. Executing a manipulation can lead to hard-coded credentials. The attack can be executed remotely. The exploit has been published and may be used. | ||||
| CVE-2026-86275 | 1 Sourcecodester | 1 Syllabus-aligned Learning Management Examination System | 2026-09-07 | 5.3 Medium |
| A vulnerability was detected in SourceCodester Syllabus-Aligned Learning Management & Examination System 1.0. This vulnerability affects the function register of the file auth.php. Performing a manipulation of the argument role results in improper privilege management. Remote exploitation of the attack is possible. The exploit is now public and may be used. | ||||
Page 1 of 1.