Unrated severityNVD Advisory· Published Jul 5, 2026· Updated Jul 7, 2026
SourceCodester Onlne Examination & Learning Management System process_lesson.php unrestricted upload
CVE-2026-14775
Description
A vulnerability was identified in SourceCodester Onlne Examination & Learning Management System 1.0. Affected is an unknown function of the file /process_lesson.php. Such manipulation of the argument user_id leads to unrestricted upload. The attack may be launched remotely. The exploit is publicly available and might be used. The name of the affected product appears to have a typo in it.
Patches
Vulnerability mechanics
References
6- github.com/nuiifornet/A033/blob/main/OE-LMS-RCE-1-process_lesson.mdmitreexploit
- vuldb.com/cve/CVE-2026-14775mitrethird-party-advisory
- vuldb.com/submit/850677mitrethird-party-advisory
- vuldb.com/vuln/376365mitrevdb-entrytechnical-description
- vuldb.com/vuln/376365/ctimitresignaturepermissions-required
- www.sourcecodester.commitreproduct
News mentions
0No linked articles in our index yet.