PT-2026-29216 · Code Projects · Student Membership System

Nomath

·

Published

2026-03-31

·

Updated

2026-03-31

·

CVE-2026-5197

CVSS v2.0

6.5

Medium

AV:N/AC:L/Au:S/C:P/I:P/A:P
A vulnerability was found in code-projects Student Membership System 1.0. The affected element is an unknown function of the file /delete user.php. The manipulation of the argument ID results in sql injection. The attack may be launched remotely. The exploit has been made public and could be used.

Exploit

Fix

SQL injection

Special Elements Injection

Weakness Enumeration

Related Identifiers

CVE-2026-5197

Affected Products

Student Membership System