CVE 5.3 MEDIUM

CodeAstro Online Classroom updatedetailsfromstudent.php sql injection_CVE-2026-6033

5.3 / 10
MEDIUM
CVSS:4.0/AV:N/AC:L/AT:N/PR:L/UI:N/VC:L/VI:L/VA:L/SC:N/SI:N/SA:N/E:P

Description

A vulnerability was determined in CodeAstro Online Classroom 1.0. Affected is an unknown function of the file /updatedetailsfromstudent.php?eno=146891650. Executing a manipulation of the argument fname can lead to sql injection. The attack may be performed from remote. The exploit has been publicly disclosed and may be utilized.

Basic Information

ID CVE-2026-6033
Source VulDB
Published Apr 10, 2026 at 07:30
Modified Apr 10, 2026 at 12:59

Affected Product

Vendor CodeAstro
Product Online Classroom
Version 1.0
Affected Versions CodeAstro Online Classroom 1.0

CWE Classification

References

💭 Join the Security Discussion

🔒 Your email address will not be published. Required fields are marked *

⚠️ Please be respectful and constructive in your comments. Security discussions should remain professional.