rootpwn

high · CVSS v3 7.3 · CVSS v4 6.9 · EPSS 0.00431

CVE-2026-95926

A vulnerability was determined in SourceCodester Online Reviewer Management System 1.0. The impacted element is an unkno…

Description

A vulnerability was determined in SourceCodester Online Reviewer Management System 1.0. The impacted element is an unknown function of the file /reviewer_0/admins/assessments/pretest/btn_functions.php?action=update. This manipulation of the argument test_id causes sql injection. The attack is possible to be carried out remotely. The exploit has been publicly disclosed and may be utilized.

Scores

Severity
high
CVSS v2
7.5
CVSS v3
7.3
CVSS v4
6.9
EPSS
0.00431

← All CVEs