Unrated severityNVD Advisory· Published Jul 4, 2026· Updated Jul 6, 2026
code-projects Assessment Management marking-scheme.php sql injection
CVE-2026-14658
Description
A vulnerability was detected in code-projects Assessment Management 1.0. This vulnerability affects unknown code of the file /lecturer/marking-scheme.php. The manipulation of the argument smarksrange[] results in sql injection. It is possible to launch the attack remotely. The exploit is now public and may be used.
Patches
Vulnerability mechanics
References
6- github.com/zzzxc643/CVE1/blob/main/assessment/vul6.mdmitreexploit
- vuldb.com/cve/CVE-2026-14658mitrethird-party-advisory
- vuldb.com/submit/846717mitrethird-party-advisory
- code-projects.orgmitreproduct
- vuldb.com/vuln/376171mitrevdb-entrytechnical-description
- vuldb.com/vuln/376171/ctimitresignaturepermissions-required
News mentions
0No linked articles in our index yet.