CVE-2026-105807: SourceCodester Simple Student Information System searchquery.php sql injection
Published Oct 6, 2026
·Updated
A vulnerability was found in SourceCodester Simple Student Information System 1.0. This affects an unknown part of the file searchquery.php. Performing a manipulation results in sql injection. The attack can be initiated remotely.
Affected Software
1 affected component
Sourcecodester Simple Student Information System=1.0
Event History
Oct 6, 2026
CVE Published
via MITRE·07:30 AM
Data Sourced
via MITRE·07:30 AM
DescriptionSeverityWeakness
Data Sourced
via NVD·08:16 AM
DescriptionSeverityWeakness
Frequently Asked Questions
1
What access does an attacker need to exploit this issue?
The attack can be initiated remotely and the vector indicates no privileges or user interaction are required.
2
What impact could successful exploitation have?
The available severity vector indicates low impact to confidentiality, integrity, and availability.
3
Which component should be prioritized for review?
The affected behavior is in an unspecified part of searchquery.php in SourceCodester Simple Student Information System 1.0.