PT-2026-25682 · Itsourcecode · Online Enrollment System

Yu_Ji

·

Published

2026-03-16

·

Updated

2026-03-16

·

CVE-2026-4235

CVSS v2.0
7.5
VectorAV:N/AC:L/Au:N/C:P/I:P/A:P
A weakness has been identified in itsourcecode Online Enrollment System 1.0. This issue affects some unknown processing of the file /sms/login.php. This manipulation of the argument user email causes sql injection. The attack is possible to be carried out remotely. The exploit has been made available to the public and could be used for attacks.

Exploit

Fix

SQL injection

Special Elements Injection

Weakness Enumeration

Related Identifiers

CVE-2026-4235

Affected Products

Online Enrollment System