PT-2026-45852 · Code Projects · Student Admission System

Xu Zhihan

·

Published

2026-06-02

·

Updated

2026-06-02

·

CVE-2026-10620

CVSS v3.1

7.3

High

VectorAV:N/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:L
A flaw has been found in code-projects Student Admission System 1.0. Affected is an unknown function of the file /index.php. This manipulation of the argument eid/did causes sql injection. The attack is possible to be carried out remotely. The exploit has been published and may be used.

Exploit

Fix

SQL injection

Special Elements Injection

Weakness Enumeration

Related Identifiers

CVE-2026-10620

Affected Products

Student Admission System