


Perceptive Security
SOC/SIEM Consultancy

A flaw has been found in code-projects Student Admission System 1.0. Affected is an unknown function of the file /index.php. This manipulation of the argument e…
Published:
1 June 2026 at 22:00:00
Alert date:
2 June 2026 at 22:02:38
Source:
nvd.nist.gov
Web Technologies, Database & Storage
A SQL injection vulnerability has been discovered in code-projects Student Admission System version 1.0. The flaw affects an unknown function in the /index.php file where manipulation of the eid/did arguments leads to SQL injection. The vulnerability can be exploited remotely and exploit code has been publicly published, making it actively exploitable. This represents a significant security risk for organizations using this student management system.
Technical details
Mitigation steps:
Affected products:
Student Admission System 1.0
Related links:
https://nvd.nist.gov/vuln/detail/CVE-2026-10620
https://code-projects.org/
https://github.com/Xu-Zhihan/CVE/issues/12
https://github.com/Xu-Zhihan/CVE/issues/13
https://vuldb.com/cve/CVE-2026-10620
https://vuldb.com/submit/829586
https://vuldb.com/submit/829606
https://vuldb.com/vuln/367928
https://vuldb.com/vuln/367928/cti
Related CVE's:
Related threat actors:
IOC's:
This article was created with the assistance of AI technology by Perceptive.
