CVE-2026-2983

Severity
6.9MEDIUM
EPSS
0.1%
top 78.69%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedFeb 23

Description

A vulnerability was determined in SourceCodester Student Result Management System 1.0. The impacted element is an unknown function of the file /admin/core/import_users.php of the component Bulk Import. This manipulation of the argument File causes improper access controls. Remote exploitation of the attack is possible. The exploit has been publicly disclosed and may be utilized.

CVSS vector

CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:L/VI:L/VA:L/SC:N/SI:N/SA:N

🔴Vulnerability Details

2
GHSA
GHSA-m8cf-3mc4-cgqh: A vulnerability was determined in SourceCodester Student Result Management System 12026-02-23
CVEList
SourceCodester Student Result Management System Bulk Import import_users.php access control2026-02-23
CVE-2026-2983 (MEDIUM CVSS 6.9) | A vulnerability was determined in S | cvebase.io