CVE-2026-5531: SourceCodester Student Result Management System HTTP GET Request login_credentials.txt cleartext storage in file
A vulnerability has been found in SourceCodester Student Result Management System 1.0. Impacted is an unknown function of the file /logincredentials.txt of the component HTTP GET Request Handler. The manipulation leads to cleartext storage in a file or on disk. The attack may be initiated remotely. The exploit has been disclosed to the public and may be used.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2026-5531?
The severity of CVE-2026-5531 is considered high due to cleartext storage of sensitive login credentials.
How do I fix CVE-2026-5531?
To fix CVE-2026-5531, ensure that login credentials are encrypted before storage and avoid using HTTP GET requests for sensitive data.
What components are affected by CVE-2026-5531?
CVE-2026-5531 affects the SourceCodester Student Result Management System version 1.0.
What is the primary issue of CVE-2026-5531?
The primary issue of CVE-2026-5531 is the insecure storage of login credentials in cleartext within a file.
Who is the vendor associated with CVE-2026-5531?
The vendor associated with CVE-2026-5531 is SourceCodester.