CVE-2026-5546
MEDIUMCampcodes Complete Online Learning Management System Crud_model.php add_lesson unrestricted upload
Title source: cnaDescription
A flaw has been found in Campcodes Complete Online Learning Management System 1.0. This impacts the function add_lesson of the file /application/models/Crud_model.php. This manipulation causes unrestricted upload. It is possible to initiate the attack remotely. The exploit has been published and may be used.
References (5)
Scores
CVSS v3
6.3
EPSS
0.0001
EPSS Percentile
2.4%
Attack Vector
NETWORK
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:L
Details
CWE
CWE-284
CWE-434
Status
published
Products (1)
Campcodes/Complete Online Learning Management System
1.0
Published
Apr 05, 2026
Tracked Since
Apr 05, 2026