What is CVE-2026-75080?
A serious vulnerability has been found in SourceCodester Class and Exam Timetabling System 1.0. The manipulation of the 'ID' parameter in `/edit_subject1.php` allows remote SQL injection attacks. Users should immediately apply the vendor-supplied patch or implement enhanced input validation measures.
Azərbaycanca: SourceCodester Class and Exam Timetabling System 1.0 proqramında ciddi bir boşluq aşkar edilib. `/edit_subject1.php` faylındakı 'ID' parametrinin manipulyasiyası SQL injection-a imkan verir, bu da uzaqdan hücuma şərait yaradır. İstifadəçilər dərhal vendor tərəfindən təmin edilən yeniləməni tətbiq etməli və ya giriş validasiyasını gücləndirməlidirlər.
Related CVEs
link basis: same weakness class CWE-89; shared vendor: SourceCodester
FAQ1
Which file in SourceCodester Class and Exam Timetabling System 1.0 is vulnerable to SQL injection?
The SQL injection vulnerability exists in the `/edit_subject1.php` file due to manipulation of the 'ID' parameter.
See also6
This explainer is AI-written from source data — skopnix's own reporting on this CVE; CVSS scores, vendors and versions are never invented. See NVD for the official record.