top of page
perceptive_background_267k.jpg

A vulnerability has been found in raisulislamg4 student_management_system_by_php up to 310d950e09013d5133c6b9210aff9444382d16d1. The affected element is an unkn…

Published:

31 mei 2026 om 22:00:00

Alert date:

1 juni 2026 om 16:08:13

Source:

nvd.nist.gov

Click to open the original link from this advisory

Web Technologies, Database & Storage

A SQL injection vulnerability has been discovered in raisulislamg4's student_management_system_by_php project. The vulnerability exists in the add_user_check.php file within the User Creation Handler component, specifically affecting the 'role' parameter. The flaw allows remote exploitation and the exploit has been publicly disclosed. The affected version is up to commit 310d950e09013d5133c6b9210aff9444382d16d1. The project maintainers have been notified through an issue report but have not yet responded. This vulnerability poses a high risk as it enables SQL injection attacks that could compromise the entire database.

Technical details

Mitigation steps:

Affected products:

student_management_system_by_php

Related links:

Related CVE's:

Related threat actors:

IOC's:

This article was created with the assistance of AI technology by Perceptive.

© 2025 by Perceptive Security. All rights reserved.

email: info@perceptivesecurity.com

Deze website toont informatie afkomstig van externe bronnen; Perceptive aanvaardt geen verantwoordelijkheid voor de juistheid, volledigheid of actualiteit van deze informatie.

bottom of page