CVE-2026-105175High· 7.3▾ TwilightA vulnerability was found in SourceCodester Drug Recommendation System 1.0. This issue affects some unknown processing of the file /Auth/add_student.php of the component Student Registration. The manipulation of the argument cmdschool re…
▾ Twilight zone — High severity, or a signal on a lesser flaw
impact 40.2 · likelihood 0 · exploitation 0
Need a working PoC? Pro members can cast a request and our team develops one — it lands right here.
A vulnerability was found in SourceCodester Drug Recommendation System 1.0. This issue affects some unknown processing of the file /Auth/add_student.php of the component Student Registration. The manipulation of the argument cmdschool results in sql injection. The attack can be executed remotely. The exploit has been made public and could be used.
Refer to the linked advisories for vendor-supplied fixes and affected version ranges.
Connected by shared product, vendor, weakness, or advisory.
CVE-2026-105177Medium· 4.7SourceCodester Drug Recommendation System Drug Creation add_drug.php sql injection
CVE-2026-105178Medium· 4.7SourceCodester Drug Recommendation System Symptom Creation add_symptom.php mysqli_real_escape_string sql injection
CVE-2026-105176Medium· 4.7SourceCodester Drug Recommendation System edit_class.php sql injection
CVE-2026-94015High· 7.3A vulnerability was identified in SourceCodester Drug Recommendation System 1.0
CVE-2026-93997High· 7.3A weakness has been identified in SourceCodester Drug Recommendation System 1.0
CVE-2026-104123High· 7.3A vulnerability was detected in SourceCodester Online Reviewer Management System 1.0