CVE-2026-16154: SourceCodester Class and Exam Timetabling System edit_room1.php sql injection
A vulnerability was determined in SourceCodester Class and Exam Timetabling System 1.0/1.php. Affected by this vulnerability is an unknown functionality of the file /editroom1.php. Executing a manipulation of the argument ID can lead to sql injection. The attack may be performed from remote. The exploit has been publicly disclosed and may be utilized.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2026-16154?
The severity of CVE-2026-16154 is rated as high with a score of 7.3.
How do I fix CVE-2026-16154?
To fix CVE-2026-16154, validate and sanitize all user inputs, particularly the ID parameter in the edit_room1.php file.
What type of attacks can be performed using CVE-2026-16154?
CVE-2026-16154 allows for SQL injection attacks, enabling an attacker to manipulate database queries.
Which software is affected by CVE-2026-16154?
CVE-2026-16154 affects SourceCodester Class and Exam Timetabling System versions 1.0.
Can CVE-2026-16154 be exploited remotely?
Yes, CVE-2026-16154 can be exploited remotely through the manipulation of the ID argument.