Sourcecodester Online Class Record System vulnerabilities

3 known vulnerabilities affecting sourcecodester/online_class_record_system.

Total CVEs
3
CISA KEV
0
Public exploits
0
Exploited in wild
0
Severity breakdown
MEDIUM3

Vulnerabilities

Page 1 of 1
CVE-2026-2087MEDIUMCVSS 6.9v1.02026-02-07
CVE-2026-2087 [MEDIUM] CWE-74 CVE-2026-2087: A flaw has been found in SourceCodester Online Class Record System 1.0. Affected by this issue is so A flaw has been found in SourceCodester Online Class Record System 1.0. Affected by this issue is some unknown functionality of the file /admin/login.php. This manipulation of the argument user_email causes sql injection. The attack may be initiated remotely. The exploit has been published and may be used.
cvelistv5nvd
CVE-2026-2089MEDIUMCVSS 6.9v1.02026-02-07
CVE-2026-2089 [MEDIUM] CWE-74 CVE-2026-2089: A vulnerability was found in SourceCodester Online Class Record System 1.0. This vulnerability affec A vulnerability was found in SourceCodester Online Class Record System 1.0. This vulnerability affects unknown code of the file /admin/subject/controller.php. Performing a manipulation of the argument ID results in sql injection. Remote exploitation of the attack is possible. The exploit has been made public and could be used.
cvelistv5nvd
CVE-2026-2090MEDIUMCVSS 6.9v1.02026-02-07
CVE-2026-2090 [MEDIUM] CWE-74 CVE-2026-2090: A vulnerability was determined in SourceCodester Online Class Record System 1.0. This issue affects A vulnerability was determined in SourceCodester Online Class Record System 1.0. This issue affects some unknown processing of the file /admin/message/search.php. Executing a manipulation of the argument term can lead to sql injection. The attack can be executed remotely. The exploit has been publicly disclosed and may be utilized.
cvelistv5nvd