Unrated severityNVD Advisory· Published Jun 28, 2026· Updated Jun 29, 2026
SourceCodester Class and Exam Timetabling System preview.php sql injection
CVE-2026-13485
Description
A vulnerability was found in SourceCodester Class and Exam Timetabling System 1.0. This affects an unknown function of the file /preview.php. Performing a manipulation of the argument course_year_section results in sql injection. The attack can be initiated remotely. The exploit has been made public and could be used.
Affected products
1- Range: = 1.0
Patches
Vulnerability mechanics
References
6- github.com/lffaker/cybersec/issues/6mitreexploitissue-tracking
- vuldb.com/cve/CVE-2026-13485mitrethird-party-advisory
- vuldb.com/submit/838185mitrethird-party-advisory
- vuldb.com/vuln/374482mitrevdb-entrytechnical-description
- vuldb.com/vuln/374482/ctimitresignaturepermissions-required
- www.sourcecodester.commitreproduct
News mentions
0No linked articles in our index yet.