5.3
/ 10
MEDIUM
CVSS:4.0/AV:N/AC:L/AT:N/PR:L/UI:N/VC:L/VI:L/VA:L/SC:N/SI:N/SA:N/E:P
Description
A security flaw has been discovered in CodeAstro Online Classroom 1.0/2.php. Affected by this vulnerability is an unknown functionality of the file /OnlineClassroom/takeassessment2.php?exid=14. Performing a manipulation of the argument Q1 results in sql injection. Remote exploitation of the attack is possible. The exploit has been released to the public and may be used for attacks.
Basic Information
ID
CVE-2026-6010
Source
VulDB
Published
Apr 10, 2026 at 03:30
Affected Product
Vendor
CodeAstro
Product
Online Classroom
Version
1.0
Affected Versions
CodeAstro Online Classroom 1.0
CodeAstro Online Classroom 2.php
CodeAstro Online Classroom 2.php