Unrated severityNVD Advisory· Published Jun 29, 2026· Updated Jun 29, 2026
SourceCodester Class and Exam Timetabling System preview4.php sql injection
CVE-2026-13527
Description
A vulnerability has been found in SourceCodester Class and Exam Timetabling System 1.0. The affected element is an unknown function of the file /preview4.php. Such manipulation of the argument course_year_section leads to sql injection. The attack may be launched remotely. The exploit has been disclosed to the public and may be used.
Affected products
1- Range: 1.0
Patches
Vulnerability mechanics
References
6- github.com/yuanyuandechen/vul/issues/1mitreexploitissue-tracking
- vuldb.com/cve/CVE-2026-13527mitrethird-party-advisory
- vuldb.com/submit/840551mitrethird-party-advisory
- vuldb.com/vuln/374535mitrevdb-entrytechnical-description
- vuldb.com/vuln/374535/ctimitresignaturepermissions-required
- www.sourcecodester.commitreproduct
News mentions
0No linked articles in our index yet.