Medium severity4.7NVD Advisory· Published Jun 13, 2026· Updated Jun 15, 2026
CVE-2026-12175
CVE-2026-12175
Description
A vulnerability was detected in CodeAstro Student Attendance Management System 1.0. Impacted is an unknown function of the file /attendance-php/Admin/createStudents.php. Performing a manipulation of the argument admissionNumber results in sql injection. Remote exploitation of the attack is possible. The exploit is now public and may be used.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
1- Range: =1.0
Patches
Vulnerability mechanics
References
6News mentions
1- CodeAstro: Four SQLi and XSS Bugs Disclosed Across Two Management SystemsVypr Intelligence · Jun 13, 2026