PT-2026-47203 · Sourcecodester · Class/Exam Timetabling System

·

CVE-2026-11471

·

Published

2026-06-08

·

Updated

2026-06-08

CVSS v2.0

7.5

High

VectorAV:N/AC:L/Au:N/C:P/I:P/A:P
Name of the Vulnerable Software and Affected Versions SourceCodester Class and Exam Timetabling System version 1.0
Description An issue exists in the /index2.php file where the manipulation of the Password argument allows for remote SQL injection. SQL injection is a technique where an attacker inserts malicious SQL statements into a query, potentially allowing them to manipulate the database.
Recommendations Update SourceCodester Class and Exam Timetabling System version 1.0 to a version that contains a fix. As a temporary workaround, restrict access to the /index2.php file or avoid using the Password argument until the issue is resolved.

Exploit

Fix

SQL injection

Special Elements Injection

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2026-11471

Affected Products

Class/Exam Timetabling System