rootpwn

high · CVSS v3 7.3 · CVSS v4 6.9 · EPSS 0.00263

CVE-2026-93973

A vulnerability was detected in SourceCodester Online Reviewer Management System 1.0. The impacted element is an unknown…

Description

A vulnerability was detected in SourceCodester Online Reviewer Management System 1.0. The impacted element is an unknown function of the file /reviewer_0/admins/assessments/subject/btn_functions.php?action=remove. Performing a manipulation of the argument ID results in sql injection. The attack can be initiated remotely. The exploit is now public and may be used.

Scores

Severity
high
CVSS v2
7.5
CVSS v3
7.3
CVSS v4
6.9
EPSS
0.00263

← All CVEs