CVE-2026-13566: SourceCodester Class and Exam Timetabling System preview3.php sql injection
A vulnerability was identified in SourceCodester Class and Exam Timetabling System 1.0. Affected by this issue is some unknown functionality of the file /preview3.php. The manipulation of the argument courseyearsection leads to sql injection. The attack may be initiated remotely. The exploit is publicly available and might be used.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2026-13566?
The severity of CVE-2026-13566 is classified as medium with a score of 5.5.
What type of vulnerability is CVE-2026-13566?
CVE-2026-13566 is an SQL injection vulnerability found in the SourceCodester Class and Exam Timetabling System.
How do I fix CVE-2026-13566?
To fix CVE-2026-13566, sanitize and validate user inputs to prevent malicious SQL code execution.
Where is the vulnerable file located for CVE-2026-13566?
The vulnerability for CVE-2026-13566 is located in the file /preview3.php.
Can CVE-2026-13566 be exploited remotely?
Yes, CVE-2026-13566 can be exploited remotely due to the nature of the SQL injection vulnerability.