PT-2026-25541 · Tecnick · Tcexam

Ahmadmarzouk

·

Published

2026-03-15

·

Updated

2026-03-16

·

CVE-2026-4168

CVSS v2.0

3.3

Low

VectorAV:N/AC:L/Au:M/C:N/I:P/A:N
Name of the Vulnerable Software and Affected Versions Tecnick TCExam version 16.5.0
Description A security issue exists in Tecnick TCExam. The problem is located in an unknown function within the file /admin/code/tce edit group.php of the Group Handler component. Manipulating the Name argument can lead to cross site scripting. The attack can be initiated remotely. The exploit is publicly available.
Recommendations Upgrade the affected component to a later release where this issue is addressed.

Exploit

Fix

XSS

Code Injection

Weakness Enumeration

Related Identifiers

CVE-2026-4168

Affected Products

Tcexam