CVE-2026-86220

Summary

A vulnerability was detected in SourceCodester Class and Exam Timetabling System 1.0. The affected element is the function mysqli_query of the file /admin/modal_add_course.php. The manipulation of the argument course results in sql injection. The attack can be launched remotely. The exploit is now public and may be used.

Affected Software

VendorProductVersion RangeStatus
SourceCodesterClass and Exam Timetabling System1.0affected

Weaknesses

  • CWE-89: SQL Injection
  • CWE-74: Injection

References