CVE-2026-12176 PUBLISHED

SourceCodester CET Automated Grading System with AI Predictive Analytics index.php cross site scripting

Assigner: VulDB
Reserved: 13.06.2026 Published: 13.06.2026 Updated: 13.06.2026

A vulnerability has been found in SourceCodester CET Automated Grading System with AI Predictive Analytics 1.0. The impacted element is an unknown function of the file /index.php. The manipulation of the argument action leads to cross site scripting. The attack is possible to be carried out remotely. The exploit has been disclosed to the public and may be used.

Metrics

CVSS Vector: CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:P/VC:N/VI:L/VA:N/SC:N/SI:N/SA:N/E:P
CVSS Score: 5.3

Product Status

Vendor SourceCodester
Product CET Automated Grading System with AI Predictive Analytics
Versions
  • Version 1.0 is affected

Credits

  • Abhay mp (VulDB User) reporter
  • VulDB Vulnerability Moderation Team coordinator

References

Problem Types

  • Cross Site Scripting CWE
  • Code Injection CWE