PT-2026-25682 · Itsourcecode · Online Enrollment System
Yu_Ji
·
Published
2026-03-16
·
Updated
2026-03-16
·
CVE-2026-4235
CVSS v2.0
7.5
| Vector | AV:N/AC:L/Au:N/C:P/I:P/A:P |
A weakness has been identified in itsourcecode Online Enrollment System 1.0. This issue affects some unknown processing of the file /sms/login.php. This manipulation of the argument user email causes sql injection. The attack is possible to be carried out remotely. The exploit has been made available to the public and could be used for attacks.
Exploit
Fix
SQL injection
Special Elements Injection
Found an issue in the description? Have something to add? Feel free to write us 👾
Related Identifiers
Affected Products
Online Enrollment System