Sourcecodester Class Exam Timetabling System
Don't miss out!
Thousands of developers use stack.watch to stay informed.Get an email whenever new security vulnerabilities are reported in Sourcecodester Class Exam Timetabling System.
By the Year
In 2026 there have been 39 vulnerabilities in Sourcecodester Class Exam Timetabling System with an average score of 6.5 out of ten.
| Year | Vulnerabilities | Average Score |
|---|---|---|
| 2026 | 39 | 6.53 |
It may take a day or so for new Class Exam Timetabling System vulnerabilities to show up in the stats or in the list of recent security vulnerabilities. Additionally vulnerabilities may be tagged under a different product or component name.
Recent Sourcecodester Class Exam Timetabling System Security Vulnerabilities
CVE-2026-16486 XSS in SRC Class/Exam Timetabling System 1.0 (BSIS.php)
CVE-2026-16486
4.3 - Medium
- July 21, 2026
A vulnerability was found in SourceCodester Class and Exam Timetabling System 1.0. This affects an unknown part of the file /BSIS.php. Performing a manipulation of the argument day results in cross site scripting. The attack may be initiated remotely. The exploit has been made public and could be used.
XSS
XSS in SourceCodester Class and Exam Timetabling System 1.0 (/class.php)
CVE-2026-16485
4.3 - Medium
- July 21, 2026
A vulnerability has been found in SourceCodester Class and Exam Timetabling System 1.0. Affected by this issue is some unknown functionality of the file /class.php. Such manipulation of the argument day leads to cross site scripting. The attack can be launched remotely. The exploit has been disclosed to the public and may be used.
XSS
A flaw has been found in SourceCodester Class and Exam Timetabling System 1.0
CVE-2026-16484
7.3 - High
- July 21, 2026
A flaw has been found in SourceCodester Class and Exam Timetabling System 1.0. Affected by this vulnerability is an unknown functionality of the file /edit_subjecta.php. This manipulation of the argument ID causes sql injection. The attack can be initiated remotely. The exploit has been published and may be used.
SQL Injection
SQLi in SRC Class & Exam Timetabling System 1.0 (edit_schoolyr.php)
CVE-2026-16228
7.3 - High
- July 19, 2026
A vulnerability was detected in SourceCodester Class and Exam Timetabling System 1.0. Affected is an unknown function of the file /edit_schoolyr.php. Performing a manipulation of the argument ID results in sql injection. It is possible to initiate the attack remotely. The exploit is now public and may be used.
SQL Injection
SQLi in SourceCodester Class & Exam Timetabling 1.0 via edit_subject.php ID param
CVE-2026-16227
7.3 - High
- July 19, 2026
A security vulnerability has been detected in SourceCodester Class and Exam Timetabling System 1.0. This impacts an unknown function of the file /edit_subject.php. Such manipulation of the argument ID leads to sql injection. The attack may be performed from remote. The exploit has been disclosed publicly and may be used.
SQL Injection
SourceCodester Class & Exam Timetabling Sys 1.0 XSS via /forCYS.php (course param)
CVE-2026-16203
3.5 - Low
- July 19, 2026
A vulnerability was identified in SourceCodester Class and Exam Timetabling System 1.0. Affected by this issue is some unknown functionality of the file /forCYS.php. Such manipulation of the argument course leads to cross site scripting. The attack may be performed from remote. The exploit is publicly available and might be used.
XSS
XSS in SourceCodester Class & Exam Timetabling System 1.0 via /CYS.php
CVE-2026-16202
3.5 - Low
- July 19, 2026
A vulnerability was determined in SourceCodester Class and Exam Timetabling System 1.0. Affected by this vulnerability is an unknown functionality of the file /CYS.php. This manipulation of the argument course causes cross site scripting. The attack is possible to be carried out remotely. The exploit has been publicly disclosed and may be utilized.
XSS
SourceCodester CEXTS 1.0 XSS via day param in forexam.php
CVE-2026-16156
3.5 - Low
- July 18, 2026
A security flaw has been discovered in SourceCodester Class and Exam Timetabling System 1.0. This affects an unknown part of the file /forexam.php. The manipulation of the argument day results in cross site scripting. It is possible to launch the attack remotely. The exploit has been released to the public and may be used for attacks.
XSS
XSS in SourceCodester Class/Exam Timetabling System 1.0 via /schoolyr.php sy
CVE-2026-16155
3.5 - Low
- July 18, 2026
A vulnerability was identified in SourceCodester Class and Exam Timetabling System 1.0. Affected by this issue is some unknown functionality of the file /schoolyr.php. The manipulation of the argument sy leads to cross site scripting. It is possible to initiate the attack remotely. The exploit is publicly available and might be used.
XSS
SQL Injection in SourceCodester C&E Timetabling System v1.0 /edit_room1.php
CVE-2026-16154
7.3 - High
- July 18, 2026
A vulnerability was determined in SourceCodester Class and Exam Timetabling System 1.0/1.php. Affected by this vulnerability is an unknown functionality of the file /edit_room1.php. Executing a manipulation of the argument ID can lead to sql injection. The attack may be performed from remote. The exploit has been publicly disclosed and may be utilized.
SQL Injection
SQL Injection in SourceCodester Class/Exam 1.0 /edit_rooma.php
CVE-2026-16152
7.3 - High
- July 18, 2026
A vulnerability was found in SourceCodester Class and Exam Timetabling System 1.0. Affected is an unknown function of the file /edit_rooma.php. Performing a manipulation of the argument ID results in sql injection. The attack is possible to be carried out remotely. The exploit has been made public and could be used.
SQL Injection
XSS in /exam.php of SourceCodester Class & Exam Timetabling System 1.0
CVE-2026-15715
4.3 - Medium
- July 14, 2026
A vulnerability was identified in SourceCodester Class and Exam Timetabling System 1.0. Affected by this vulnerability is an unknown functionality of the file /exam.php. Such manipulation of the argument day leads to cross site scripting. It is possible to launch the attack remotely. The exploit is publicly available and might be used.
XSS
SQLi in SourceCodester Exam Timetabling 1.0 via edit_exam2.php
CVE-2026-15597
7.3 - High
- July 13, 2026
A security flaw has been discovered in SourceCodester Class and Exam Timetabling System 1.0/2.php. This affects an unknown function of the file /edit_exam2.php. Performing a manipulation of the argument ID results in sql injection. The attack can be initiated remotely. The exploit has been released to the public and may be used for attacks.
SQL Injection
XSS in subject.php (sc) Class & Exam Timetabling System 1.0
CVE-2026-15596
4.3 - Medium
- July 13, 2026
A vulnerability was identified in SourceCodester Class and Exam Timetabling System 1.0. The impacted element is an unknown function of the file /subject.php. Such manipulation of the argument subject leads to cross site scripting. It is possible to launch the attack remotely. The exploit is publicly available and might be used.
XSS
XSS in SourceCodester Class & Exam Timetabling System 1.0 - /forsubject.php
CVE-2026-15595
4.3 - Medium
- July 13, 2026
A vulnerability was determined in SourceCodester Class and Exam Timetabling System 1.0. The affected element is an unknown function of the file /forsubject.php. This manipulation of the argument subject causes cross site scripting. It is possible to initiate the attack remotely. The exploit has been publicly disclosed and may be utilized.
XSS
SourceCodester Class Timetabling 1.0 PHP: Remote SQLi via ID in edit_course1.php
CVE-2026-14772
7.3 - High
- July 05, 2026
A vulnerability has been found in SourceCodester Class and Exam Timetabling System 1.0/1.php. The impacted element is an unknown function of the file /edit_course1.php. The manipulation of the argument ID leads to sql injection. The attack can be initiated remotely. The exploit has been disclosed to the public and may be used.
SQL Injection
SQLi in SourceCodester Class & Exam Timetabling System 1.0 edit_exam1.php
CVE-2026-14771
7.3 - High
- July 05, 2026
A flaw has been found in SourceCodester Class and Exam Timetabling System 1.0/1.php. The affected element is an unknown function of the file /edit_exam1.php. Executing a manipulation of the argument ID can lead to sql injection. It is possible to launch the attack remotely. The exploit has been published and may be used.
SQL Injection
SQLi in SourceCodester Class & Exam Timetabling 1.0 /edit_room.php
CVE-2026-14770
7.3 - High
- July 05, 2026
A vulnerability was detected in SourceCodester Class and Exam Timetabling System 1.0. Impacted is an unknown function of the file /edit_room.php. Performing a manipulation of the argument ID results in sql injection. It is possible to initiate the attack remotely. The exploit is now public and may be used.
SQL Injection
SQLi in SourceCodester Class & Exam Timetabling System 1.0 via /edit_product.php
CVE-2026-14734
7.3 - High
- July 05, 2026
A flaw has been found in SourceCodester Class and Exam Timetabling System 1.0. Impacted is an unknown function of the file /edit_product.php. This manipulation of the argument ID causes sql injection. Remote exploitation of the attack is possible. The exploit has been published and may be used.
SQL Injection
SQLi ID in /edit_coursea.php, SourceCodester Class & Exam Timetabling System 1.0
CVE-2026-14733
7.3 - High
- July 05, 2026
A vulnerability was detected in SourceCodester Class and Exam Timetabling System 1.0. This issue affects some unknown processing of the file /edit_coursea.php. The manipulation of the argument ID results in sql injection. The attack may be launched remotely. The exploit is now public and may be used.
SQL Injection
SQLi via ID in /edit_exam.php SourceCodester Class & Exam Timetabling Sys 1.0
CVE-2026-14732
7.3 - High
- July 05, 2026
A security vulnerability has been detected in SourceCodester Class and Exam Timetabling System 1.0. This vulnerability affects unknown code of the file /edit_exam.php. The manipulation of the argument ID leads to sql injection. The attack may be initiated remotely. The exploit has been disclosed publicly and may be used.
SQL Injection
CVE-2026-14642: SQLi in edit_class2.php (Class & Exam Timetabling 1.0)
CVE-2026-14642
7.3 - High
- July 04, 2026
A vulnerability was identified in SourceCodester Class and Exam Timetabling System 1.0. Affected by this issue is some unknown functionality of the file /edit_class2.php. The manipulation of the argument ID leads to sql injection. The attack is possible to be carried out remotely. The exploit is publicly available and might be used.
SQL Injection
SQLi in Class and Exam Timetabling System 1.0: /edit_course.php ID param
CVE-2026-14641
7.3 - High
- July 04, 2026
A vulnerability was determined in SourceCodester Class and Exam Timetabling System 1.0. Affected by this vulnerability is an unknown functionality of the file /edit_course.php. Executing a manipulation of the argument ID can lead to sql injection. The attack can be executed remotely. The exploit has been publicly disclosed and may be utilized.
SQL Injection
SQLi via course_year_section in /preview3.php (1.0) SourceCodester Class & Exam Timetbl Sys
CVE-2026-13566
7.3 - High
- June 29, 2026
A vulnerability was identified in SourceCodester Class and Exam Timetabling System 1.0. Affected by this issue is some unknown functionality of the file /preview3.php. The manipulation of the argument course_year_section leads to sql injection. The attack may be initiated remotely. The exploit is publicly available and might be used.
SQL Injection
SrcCodester Class/Exam Timetabling 1.0 SQLi via ID in edit_class1.php
CVE-2026-13565
7.3 - High
- June 29, 2026
A vulnerability was determined in SourceCodester Class and Exam Timetabling System 1.0/1.php. Affected by this vulnerability is an unknown functionality of the file /edit_class1.php. Executing a manipulation of the argument ID can lead to sql injection. The attack can be launched remotely. The exploit has been publicly disclosed and may be utilized.
SQL Injection
SQLi in SourceCodester Class & Exam Timetabling Sys 1.0 /preview4.php
CVE-2026-13527
7.3 - High
- June 29, 2026
A vulnerability has been found in SourceCodester Class and Exam Timetabling System 1.0. The affected element is an unknown function of the file /preview4.php. Such manipulation of the argument course_year_section leads to sql injection. The attack may be launched remotely. The exploit has been disclosed to the public and may be used.
SQL Injection
SQLi in SourceCodester Class & Exam Timetabling System 1.0 edit_class.php
CVE-2026-13526
7.3 - High
- June 29, 2026
A flaw has been found in SourceCodester Class and Exam Timetabling System 1.0. Impacted is an unknown function of the file /edit_class.php. This manipulation of the argument ID causes sql injection. The attack may be initiated remotely. The exploit has been published and may be used.
SQL Injection
SQLi in SourceCodester Class & Exam Timetabling System 1.0 preview5.php
CVE-2026-13521
7.3 - High
- June 29, 2026
A vulnerability was identified in SourceCodester Class and Exam Timetabling System 1.0/5.php. Affected by this vulnerability is an unknown functionality of the file /preview5.php. Such manipulation of the argument course_year_section leads to sql injection. The attack may be performed from remote. The exploit is publicly available and might be used.
SQL Injection
SQL Injection in preview7.php of SourceCodester Class and Exam Timetabling 1.0
CVE-2026-13488
7.3 - High
- June 28, 2026
A security flaw has been discovered in SourceCodester Class and Exam Timetabling System 1.0/7.php. Affected by this vulnerability is an unknown functionality of the file /preview7.php. The manipulation of the argument course_year_section results in sql injection. The attack may be launched remotely. The exploit has been released to the public and may be used for attacks.
SQL Injection
SQL Injection in /archive.php of SourceCodester CET System 1.0
CVE-2026-13487
7.3 - High
- June 28, 2026
A vulnerability was identified in SourceCodester Class and Exam Timetabling System 1.0. Affected is an unknown function of the file /archive.php. The manipulation of the argument sy leads to sql injection. The attack may be initiated remotely. The exploit is publicly available and might be used.
SQL Injection
SQLi in Class and Exam Timetabling System 1.0 preview6.php
CVE-2026-13486
7.3 - High
- June 28, 2026
A vulnerability was determined in SourceCodester Class and Exam Timetabling System 1.0/6.php. This impacts an unknown function of the file /preview6.php. Executing a manipulation of the argument course_year_section can lead to sql injection. The attack can be launched remotely. The exploit has been publicly disclosed and may be utilized.
SQL Injection
SourceCodester Class&Exam Timetabling 1.0: PHP SQLi via preview.php
CVE-2026-13485
7.3 - High
- June 28, 2026
A vulnerability was found in SourceCodester Class and Exam Timetabling System 1.0. This affects an unknown function of the file /preview.php. Performing a manipulation of the argument course_year_section results in sql injection. The attack can be initiated remotely. The exploit has been made public and could be used.
SQL Injection
SourceCodester Class & Exam Timetabling Sys 1.0: Remote SQLi in /archive1.php
CVE-2026-11486
7.3 - High
- June 08, 2026
A vulnerability was detected in SourceCodester Class and Exam Timetabling System 1.0. Affected by this vulnerability is an unknown functionality of the file /archive1.php. Performing a manipulation of the argument sy results in sql injection. Remote exploitation of the attack is possible. The exploit is now public and may be used.
SQL Injection
SQLi in SourceCodester Class & Exam Timetabling System 1.0 (/archive2.php)
CVE-2026-11485
7.3 - High
- June 08, 2026
A security vulnerability has been detected in SourceCodester Class and Exam Timetabling System 1.0. Affected is an unknown function of the file /archive2.php. Such manipulation of the argument sy leads to sql injection. The attack may be launched remotely. The exploit has been disclosed publicly and may be used.
SQL Injection
SourceCodester Class & Exam Timetabling 1.0 Remote SQLi in archive3.php
CVE-2026-11484
7.3 - High
- June 08, 2026
A weakness has been identified in SourceCodester Class and Exam Timetabling System 1.0. This impacts an unknown function of the file /archive3.php. This manipulation of the argument sy causes sql injection. The attack may be initiated remotely. The exploit has been made available to the public and could be used for attacks.
SQL Injection
SQLi via /archive4.php (sy) in SourceCodester Class & Exam Timetabling Sys 1.0
CVE-2026-11483
7.3 - High
- June 08, 2026
A security flaw has been discovered in SourceCodester Class and Exam Timetabling System 1.0. This affects an unknown function of the file /archive4.php. The manipulation of the argument sy results in sql injection. The attack can be launched remotely. The exploit has been released to the public and may be used for attacks.
SQL Injection
SQLi via sy in SourceCodester Class & Exam Timetabling 1.0 /archive5.php
CVE-2026-11482
7.3 - High
- June 08, 2026
A vulnerability was identified in SourceCodester Class and Exam Timetabling System 1.0. The impacted element is an unknown function of the file /archive5.php. The manipulation of the argument sy leads to sql injection. The attack can be initiated remotely. The exploit is publicly available and might be used.
SQL Injection
SQLi in SourceCodester Class&Exam Timetabling 1.0 /index1.php
CVE-2026-11472
7.3 - High
- June 08, 2026
A vulnerability was determined in SourceCodester Class and Exam Timetabling System 1.0. This affects an unknown function of the file /index1.php. This manipulation of the argument Password causes sql injection. The attack can be initiated remotely. The exploit has been publicly disclosed and may be utilized.
SQL Injection
Remote SQLi via Password in SourceCodester Class & Exam Timetabling System 1.0
CVE-2026-11471
7.3 - High
- June 08, 2026
A vulnerability was found in SourceCodester Class and Exam Timetabling System 1.0. The impacted element is an unknown function of the file /index2.php. The manipulation of the argument Password results in sql injection. It is possible to launch the attack remotely. The exploit has been made public and could be used.
SQL Injection
Stay on top of Security Vulnerabilities
Want an email whenever new vulnerabilities are published for Sourcecodester Class Exam Timetabling System or by Sourcecodester? Click the Watch button to subscribe.