CVE-2026-1595: itsourcecode Society Management System edit_student_query.php sql injection
A vulnerability was detected in itsourcecode Society Management System 1.0. This affects an unknown part of the file /admin/editstudentquery.php. The manipulation of the argument studentid results in sql injection. The attack can be executed remotely. The exploit is now public and may be used.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2026-1595?
CVE-2026-1595 has been classified as a high severity vulnerability due to the risk of SQL injection.
How do I fix CVE-2026-1595?
To fix CVE-2026-1595, you should validate and sanitize all user inputs, particularly the student_id parameter, to prevent SQL injection.
Which component is affected by CVE-2026-1595?
CVE-2026-1595 affects the edit_student_query.php file in the itsourcecode Society Management System.
What types of attacks can CVE-2026-1595 facilitate?
CVE-2026-1595 can facilitate SQL injection attacks, allowing attackers to manipulate the database.
Is CVE-2026-1595 present in all versions of the Society Management System?
CVE-2026-1595 is specifically reported in version 1.0 of the itsourcecode Society Management System.