6.9
/ 10
MEDIUM
CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:L/VI:L/VA:L/SC:N/SI:N/SA:N/E:P
Description
A vulnerability was found in code-projects Online Examination System 1.0. Affected by this vulnerability is an unknown functionality of the file /index.php of the component Login Page. Performing a manipulation of the argument User results in sql injection. The attack is possible to be carried out remotely. The exploit has been made public and could be used.
Basic Information
ID
CVE-2026-1422
Source
VulDB
Published
Jan 26, 2026 at 06:02
Affected Product
Vendor
code-projects
Product
Online Examination System
Version
1.0
Affected Versions
code-projects Online Examination System 1.0