CVE-2026-7555

HIGH

itsourcecode Electronic Judging System login.php sql injection

Title source: cna
STIX 2.1

Description

A vulnerability was identified in itsourcecode Electronic Judging System 1.0. This affects an unknown part of the file /intrams/login.php. Such manipulation of the argument Username leads to sql injection. The attack can be launched remotely. The exploit is publicly available and might be used.

Scores

CVSS v3 7.3
EPSS 0.0003
EPSS Percentile 8.5%
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:L/E:P/RL:X/RC:R

CISA SSVC

Vulnrichment
Exploitation poc
Automatable yes
Technical Impact partial

Details

CWE
CWE-74 CWE-89
Status published
Products (1)
itsourcecode/Electronic Judging System 1.0
Published May 01, 2026
Tracked Since May 01, 2026