在其 sourcecode Online Admission System 1.0 中发现了一个弱点。受影响的元素是文件 /admin/confirm.php 中一个未知的函数。该函数对参数 schedid 的操纵导致了 SQL 注入漏洞。攻击者可以远程发起攻击。相关漏洞利用代码已公开,可能被用于实际攻击。
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| itsourcecode | Online Admission System | 1.0 |
cpe:2.3:a:itsourcecode:online_admission_system:*:*:*:*:*:*:*:*
|
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2026-105185 | 7.3 HIGH | itsourcecode Online Admission System examinee.php sql injection |
| CVE-2026-105184 | 7.3 HIGH | itsourcecode Online Admission System creteria.php sql injection |
| CVE-2026-105172 | 7.3 HIGH | itsourcecode Online Admission System login1.php sql injection |
| CVE-2026-105187 | 6.3 MEDIUM | itsourcecode Online Admission System key.php sql injection |
| CVE-2026-105186 | 6.3 MEDIUM | itsourcecode Online Admission System new.php sql injection |
| CVE-2026-105181 | 6.3 MEDIUM | itsourcecode Online Admission System register1.php sql injection |
No comments yet