CVE-2026-2012: itsourcecode Student Management System index.php sql injection
A vulnerability was determined in itsourcecode Student Management System 1.0. The impacted element is an unknown function of the file /ramonsys/facultyloading/index.php. This manipulation of the argument ID causes sql injection. The attack may be initiated remotely. The exploit has been publicly disclosed and may be utilized.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2026-2012?
The severity of CVE-2026-2012 is categorized as high due to its potential for SQL injection.
How do I fix CVE-2026-2012?
To fix CVE-2026-2012, sanitize and validate all user inputs in the affected index.php file to prevent SQL injection.
What systems are affected by CVE-2026-2012?
CVE-2026-2012 affects version 1.0 of the itsourcecode Student Management System.
What type of vulnerability is CVE-2026-2012?
CVE-2026-2012 is a SQL injection vulnerability that can allow attackers to manipulate database queries.
How can CVE-2026-2012 impact my system?
CVE-2026-2012 can lead to data breaches, unauthorized data access, and potential system compromise.