Description
A vulnerability was identified in SourceCodester Class and Exam Timetabling System 1.0. The impacted element is an unknown function of the file /archive5.php. The manipulation of the argument sy leads to sql injection. The attack can be initiated remotely. The exploit is publicly available and might be used.
Problem types
Product status
Timeline
| 2026-06-07: | Advisory disclosed |
| 2026-06-07: | VulDB entry created |
| 2026-06-07: | VulDB entry last update |
Credits
moist (VulDB User)
References
vuldb.com/vuln/369102 (VDB-369102 | SourceCodester Class and Exam Timetabling System archive5.php sql injection)
vuldb.com/vuln/369102/cti (VDB-369102 | CTI Indicators (IOB, IOC, TTP, IOA))
vuldb.com/cve/CVE-2026-11482 (CVE-2026-11482 | CVE Analysis and Report)
vuldb.com/submit/834107 (Submit #834107 | sourcecodester Class and Exam Timetabling System V1.0 SQL injection)
github.com/ssaaaa1234/cve/issues/5
www.sourcecodester.com/