CVE-2026-11584
Last modified
CVE-2026-11584 is a medium-severity vulnerability rated 6.3/10 on the CVSS scale. A vulnerability was found in CodeAstro Student Attendance Management System 1.0. This impacts an unknown function of the file /attendance-php/Admin/createClass.php?action=edit. EPSS estimates a 0.20% chance of exploitation in the next 30 days.
Description
A vulnerability was found in CodeAstro Student Attendance Management System 1.0. This impacts an unknown function of the file /attendance-php/Admin/createClass.php?action=edit. The manipulation of the argument ID results in sql injection. It is possible to launch the attack remotely. The exploit has been made public and could be used.
Metrics
Weakness Enumeration
References
Timeline
- Published
- Last Modified
- Status
- Deferred
Frequently Asked Questions
What is CVE-2026-11584?
How severe is CVE-2026-11584?
How do I fix CVE-2026-11584?
How Strix Helps
- How Strix found a critical auth bypass in etcdStrix autonomously discovered a critical authentication bypass in etcd, later designated CVE-2026-33413.
- Autonomous PentestingAI agents that find and validate exploitable vulnerabilities like this one across your applications.
- PR ReviewsPentest every pull request so vulnerable code is caught before it ships to production.
- AI Penetration TestingHow AI-driven penetration testing continuously covers your attack surface.
Related CVEs from 2026
- CVE-2026-11579The Kali Forms — Contact Form & Drag-and-Drop Builder WordPr…5.3
- CVE-2026-1158A security flaw has been discovered in Totolink LR350 9.3.5u…8.8
- CVE-2026-11580The Kali Forms — Contact Form & Drag-and-Drop Builder WordPr…5.5
- CVE-2026-11581The Kali Forms — Contact Form & Drag-and-Drop Builder WordPr…5.9
- CVE-2026-11582A flaw has been found in CodeAstro Student Attendance Manage…7.3
- CVE-2026-11583A vulnerability has been found in CodeAstro Student Attendan…6.3
- CVE-2026-11585A vulnerability was determined in CodeAstro Student Attendan…6.3
- CVE-2026-11586By default, curl automatically responds to WebSocket PING fr…7.5
- CVE-2026-11588The EONSR AEO Agent WordPress plugin through 3.7.9 does not …6.1
- CVE-2026-11589The WP Support Plus Responsive Ticket System WordPress plugi…8.8
- CVE-2026-1159A weakness has been identified in itsourcecode Online Frozen…9.8
- CVE-2026-11590The WP Support Plus Responsive Ticket System WordPress plugi…8.6
Are you affected by CVE-2026-11584?
Run a free Strix scan to check your systems for this vulnerability.
Scan your code nowSource: NVD / NIST
