Metrics
Affected Vendors & Products
Tue, 07 Apr 2026 15:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Tue, 07 Apr 2026 09:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Cyber-iii
Cyber-iii student-management-system |
|
| Vendors & Products |
Cyber-iii
Cyber-iii student-management-system |
Mon, 06 Apr 2026 18:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | A vulnerability was determined in Cyber-III Student-Management-System up to 1a938fa61e9f735078e9b291d2e6215b4942af3f. Impacted is an unknown function of the file /admin/class%20schedule/delete_batch.php of the component Class Schedule Deletion Endpoint. Executing a manipulation of the argument batch can lead to cross site scripting. The attack can be launched remotely. The exploit has been publicly disclosed and may be utilized. This product does not use versioning. This is why information about affected and unaffected releases are unavailable. The project was informed of the problem early through an issue report but has not responded yet. | |
| Title | Cyber-III Student-Management-System Class Schedule Deletion Endpoint delete_batch.php cross site scripting | |
| Weaknesses | CWE-79 CWE-94 |
|
| References |
| |
| Metrics |
cvssV2_0
|
Status: PUBLISHED
Assigner: VulDB
Published: 2026-04-06T17:15:11.400Z
Updated: 2026-04-07T14:08:29.827Z
Reserved: 2026-04-06T08:14:13.608Z
Link: CVE-2026-5671
Updated: 2026-04-07T14:08:25.666Z
Status : Awaiting Analysis
Published: 2026-04-06T18:16:45.933
Modified: 2026-04-07T13:20:11.643
Link: CVE-2026-5671
No data.