---
id: CVE-2026-82553
title: >-
  A vulnerability was detected in sambitraj Student Management System up to
  56ba287f2e9031523ccb4244cb6e3fe530e4e5d5
summary: >-
  A vulnerability was detected in sambitraj Student Management System up to
  56ba287f2e9031523ccb4244cb6e3fe530e4e5d5. Affected by this issue is the
  function mysqli_query of the file student_dashboard.php of the component
  Student Dashboard.…
severity: medium
cvss: 6.3
cvssVector: 'CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:L'
cwe:
  - CWE-266
  - CWE-285
published: '2026-08-30'
updated: '2026-08-30'
source: NVD
sourceUrl: 'https://nvd.nist.gov/vuln/detail/CVE-2026-82553'
references:
  - url: 'https://github.com/sambitraj/STUDENT-MANAGEMENT-SYSTEM/issues/6'
    label: cna@vuldb.com
  - url: 'https://vuldb.com/cve/CVE-2026-82553'
    label: cna@vuldb.com
  - url: 'https://vuldb.com/submit/891600'
    label: cna@vuldb.com
  - url: 'https://vuldb.com/vuln/397069'
    label: cna@vuldb.com
  - url: 'https://vuldb.com/vuln/397069/cti'
    label: cna@vuldb.com
tags:
  - nvd
ingestedAt: '2026-08-31T02:00:57.295Z'
epss: 0.00347
epssPercentile: 0.25622
---

## Overview

A vulnerability was detected in sambitraj Student Management System up to 56ba287f2e9031523ccb4244cb6e3fe530e4e5d5. Affected by this issue is the function mysqli_query of the file student_dashboard.php of the component Student Dashboard. The manipulation of the argument roll_no results in improper authorization. The attack may be performed from remote. The exploit is now public and may be used. This product utilizes a rolling release system for continuous delivery, and as such, version information for affected or updated releases is not disclosed. The project was informed of the problem early through an issue report but has not responded yet.

## Remediation

Refer to the linked advisories for vendor-supplied fixes and affected version ranges.
