216.73.216.226

CVE-2026-12175

· Published 14/06/2026 01:16 · Modified 13/06/2026 23:16 · Author: The MITRE Corporation

Labels: CVE-2026-12175 2026-06-13CVE-2026-12175CWE-74[email protected]

Essential information

Published
14/06/2026 01:16
Modified
13/06/2026 23:16
Author
The MITRE Corporation
Creator
The MITRE Corporation
CVSS
5.8 (v2) 4.7 MEDIUM (v3.1) 5.1 MEDIUM (v4.0)
CISA KEV
No
CWE
CWE-74
CVSS vector
CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:L/I:L/A:L

CVSS metrics

Description

A vulnerability was detected in CodeAstro Student Attendance Management System 1.0. Impacted is an unknown function of the file /attendance-php/Admin/createStudents.php. Performing a manipulation of the argument admissionNumber results in sql injection. Remote exploitation of the attack is possible. The exploit is now public and may be used.

NVD status

Status
Received — CVE has been recently published to the CVE List and has been received by the NVD.
Source
[email protected]
NVD
View on NVD

Affected products (CPE)

ProductCPE
codeastro / student attendance management system cpe:2.3:a:codeastro:student_attendance_management_system:1.0:*:*:*:*:*:*:*

References