CVE-2026-19899: SourceCodester Class and Exam Timetabling System edit_teacher.php sql injection
Published Aug 15, 2026
·Updated
A vulnerability was determined in SourceCodester Class and Exam Timetabling System 1.0. The affected element is an unknown function of the file /editteacher.php. Executing a manipulation of the argument ID can lead to sql injection. The attack may be performed from remote. The exploit has been publicly disclosed and may be utilized.
Affected Software
1 affected component
Sourcecodester Class and Exam Timetabling System=1.0
Event History
Aug 15, 2026
CVE Published
via MITRE·04:30 PM
Data Sourced
via MITRE·04:30 PM
DescriptionSeverityWeakness
Frequently Asked Questions
1
What is the severity of CVE-2026-19899?
The severity of CVE-2026-19899 is high with a score of 7.3.
2
What type of vulnerability is CVE-2026-19899?
CVE-2026-19899 is classified as an SQL Injection vulnerability.
3
How do I fix CVE-2026-19899?
To fix CVE-2026-19899, sanitize and validate all user inputs in the edit_teacher.php file to prevent SQL injection.
4
Who is affected by CVE-2026-19899?
CVE-2026-19899 affects users of SourceCodester Class and Exam Timetabling System version 1.0.
5
Can CVE-2026-19899 be exploited remotely?
Yes, CVE-2026-19899 can be exploited remotely by manipulating the argument ID.