CVE-2026-0698: code-projects Intern Membership Management System edit_students.php sql injection
A vulnerability has been found in code-projects Intern Membership Management System 1.0. This affects an unknown function of the file /intern/admin/editstudents.php. Such manipulation of the argument adminid leads to sql injection. The attack may be launched remotely. The exploit has been disclosed to the public and may be used.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2026-0698?
CVE-2026-0698 is classified as a high severity vulnerability due to its potential for remote SQL injection attacks.
How do I fix CVE-2026-0698?
To fix CVE-2026-0698, ensure proper input validation and parameterized queries are employed in the /intern/admin/edit_students.php file.
What is the impact of exploiting CVE-2026-0698?
Exploitation of CVE-2026-0698 can lead to unauthorized access to the database and manipulation of student records.
Which version of the Intern Membership Management System is affected by CVE-2026-0698?
CVE-2026-0698 affects version 1.0 of the Intern Membership Management System by code-projects.
Can CVE-2026-0698 be exploited remotely?
Yes, CVE-2026-0698 can be exploited remotely, making it a significant threat to users of the affected software.