CVE-2026-85512
Last modified
CVE-2026-85512 is a high-severity vulnerability rated 7.3/10 on the CVSS scale. A security flaw has been discovered in SourceCodester Class and Exam Timetabling System 1.0. This vulnerability affects unknown code of the file /admin/session.php.
Description
A security flaw has been discovered in SourceCodester Class and Exam Timetabling System 1.0. This vulnerability affects unknown code of the file /admin/session.php. The manipulation of the argument ID results in missing authorization. The attack can be executed remotely. The exploit has been released to the public and may be used for attacks.
Metrics
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:L
CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:L/VI:L/VA:L/SC:N/SI:N/SA:N/E:P/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X
Weakness Enumeration
Affected Software
Source: CNA advisory (CVE.org). NVD analysis pending.
| Vendor | Product | Versions |
|---|---|---|
| SourceCodester | Class and Exam Timetabling System | 1.0 |
References
Timeline
- Published
- Last Modified
- Status
- Deferred
Frequently Asked Questions
What is CVE-2026-85512?
How severe is CVE-2026-85512?
How do I fix CVE-2026-85512?
How Strix Helps
- Uncovering a hidden BOLA in Appsmith's snapshot logicStrix autonomously discovered a BOLA/IDOR vulnerability in Appsmith's snapshot deletion path.
- Autonomous PentestingAI agents that find and validate exploitable vulnerabilities like this one across your applications.
- PR ReviewsPentest every pull request so vulnerable code is caught before it ships to production.
- AI Penetration TestingHow AI-driven penetration testing continuously covers your attack surface.
Related CVEs from 2026
- CVE-2026-85505ipmi-oem in FreeIPMI before 1.6.19 has a stack-based buffer …7.5
- CVE-2026-85506ipmi-oem in FreeIPMI before 1.6.19 has a stack-based buffer …9.8
- CVE-2026-85507ipmi-oem in FreeIPMI before 1.6.19 has a stack-based buffer …9.8
- CVE-2026-85508ipmi-oem in FreeIPMI before 1.6.19 has a stack-based buffer …9.8
- CVE-2026-85509FreeIPMI before 1.6.19 has a stack-based buffer overflow in …9.8
- CVE-2026-8551Use after free in Downloads in Google Chrome prior to 148.0.…8.8
- CVE-2026-85513A weakness has been identified in StackStorm st2 up to 3.9.0…6.3
- CVE-2026-85514A security vulnerability has been detected in StackStorm st2…6.3
- CVE-2026-85516A vulnerability was detected in code-projects Vehicle Manage…7.3
- CVE-2026-85517A flaw has been found in code-projects Vehicle Management Sy…5.3
- CVE-2026-8552Heap buffer overflow in GPU in Google Chrome on Android prio…4.3
- CVE-2026-85522A vulnerability was detected in valkey-io valkey up to 9.5.4…5.3
Are you affected by CVE-2026-85512?
Run a free Strix scan to check your systems for this vulnerability.
Scan your code nowSource: NVD / NIST
