Description
A vulnerability was found in SourceCodester Online Class Record System 1.0. This vulnerability affects unknown code of the file /admin/subject/controller.php. Performing a manipulation of the argument ID results in sql injection. Remote exploitation of the attack is possible. The exploit has been made public and could be used.
Problem types
Product status
Timeline
| 2026-02-06: | Advisory disclosed |
| 2026-02-06: | VulDB entry created |
| 2026-02-06: | VulDB entry last update |
Credits
MrCC (VulDB User)
References
vuldb.com/?id.344656 (VDB-344656 | SourceCodester Online Class Record System controller.php sql injection)
vuldb.com/?ctiid.344656 (VDB-344656 | CTI Indicators (IOB, IOC, TTP, IOA))
vuldb.com/?submit.746550 (Submit #746550 | SourceCodester Online Class Record System 1.0 SQL Injection)
github.com/xiaoccm07/cve/issues/2
www.sourcecodester.com/