PT-2026-68672 · Sourcecodester · Onlne Examination & Learning Management System

·

CVE-2026-19066

·

Published

2026-08-06

·

Updated

2026-08-07

CVSS v3.1

4.3

Medium

VectorAV:N/AC:L/PR:L/UI:N/S:U/C:L/I:N/A:N
Name of the Vulnerable Software and Affected Versions SourceCodester Online Examination & Learning Management System version 1.0
Description An authorization bypass exists in the view students.php file. A remote attacker can exploit this by manipulating the class group argument, allowing unauthorized access to restricted functionality.
Recommendations Restrict access to the view students.php file or avoid using the class group argument until a fix is available. At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Exploit

Improper Authorization

IDOR

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2026-19066

Affected Products

Onlne Examination & Learning Management System