CVE-2026-9583
בינונית 4.3
תיאור (מקור, אנגלית)
A weakness has been identified in SourceCodester CET Automated Grading System with AI Predictive Analytics 1.0. This impacts an unknown function of the file /index.php of the component SQL Handler. Executing a manipulation can lead to information exposure through error message. The attack may be performed from remote. The exploit has been made available to the public and could be used for attacks.
מדדים
- CVSS 3.1
-
4.3 (MEDIUM)
מקור הציון: CNA
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:N/A:N - CVSS 4.0
-
2.1 (LOW)
מקור הציון: CNA
CVSS:4.0/AV:N/AC:L/AT:N/PR:L/UI:N/VC:L/VI:N/VA:N/SC:N/SI:N/SA:N/E:P/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X - EPSS — סבירות ניצול
- 0% (אחוזון 000) נכון ל-6/8/2026
- CWE
- CWE-200, CWE-209
קישורים
- https://github.com/NARKHEDE-VAIBHAV/poc/blob/main/CVE-2026-9583-Information-Di…
- https://github.com/NARKHEDE-VAIBHAV/poc/blob/main/CVE-2026-9583-Information-Di…
- https://vuldb.com/submit/817932
- https://vuldb.com/vuln/365639
- https://vuldb.com/vuln/365639/cti
- https://www.sourcecodester.com/
- https://github.com/NARKHEDE-VAIBHAV/poc/blob/main/CVE-2026-9583-Information-Di…