A vulnerability was found in CodeAstro Online Classroom 1.0. This vulnerability affects unknown code of the file /OnlineClassroom/addassessment.php of the component Parameter Handler. Performing a manipulation of the argument deleteid results in sql injection. The attack is possible to be carried out remotely. The exploit has been made public and could be used.
Metrics
Affected Vendors & Products
References
History
Sun, 05 Apr 2026 15:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | A vulnerability was found in CodeAstro Online Classroom 1.0. This vulnerability affects unknown code of the file /OnlineClassroom/addassessment.php of the component Parameter Handler. Performing a manipulation of the argument deleteid results in sql injection. The attack is possible to be carried out remotely. The exploit has been made public and could be used. | |
| Title | CodeAstro Online Classroom Parameter addassessment.php sql injection | |
| Weaknesses | CWE-74 CWE-89 |
|
| References |
| |
| Metrics |
cvssV2_0
|
Status: PUBLISHED
Assigner: VulDB
Published: 2026-04-05T15:45:11.471Z
Updated: 2026-04-05T15:45:11.471Z
Reserved: 2026-04-04T15:01:44.416Z
Link: CVE-2026-5578
No data.
Status : Received
Published: 2026-04-05T16:16:19.887
Modified: 2026-04-05T16:16:19.887
Link: CVE-2026-5578
No data.