CVE-2026-2073: itsourcecode School Management System index.php sql injection
A vulnerability was determined in itsourcecode School Management System 1.0. This affects an unknown function of the file /ramonsys/user/index.php. Executing a manipulation of the argument ID can lead to sql injection. The attack may be performed from remote. The exploit has been publicly disclosed and may be utilized.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2026-2073?
The severity of CVE-2026-2073 is classified as high due to the potential for SQL injection attacks.
How do I fix CVE-2026-2073?
To fix CVE-2026-2073, sanitize and validate user input in the /ramonsys/user/index.php file to prevent SQL injection.
What systems are affected by CVE-2026-2073?
CVE-2026-2073 affects the itsourcecode School Management System version 1.0.
What type of vulnerability is CVE-2026-2073?
CVE-2026-2073 is an SQL injection vulnerability that allows attackers to manipulate database queries.
Can CVE-2026-2073 compromise sensitive data?
Yes, if exploited, CVE-2026-2073 can be used to access or manipulate sensitive data stored in the database.