CVE-2026-9583

MEDIUM

SourceCodester CET Automated Grading System with AI Predictive Analytics SQL index.php information exposure

Title source: cna
STIX 2.1

Description

A weakness has been identified in SourceCodester CET Automated Grading System with AI Predictive Analytics 1.0. This impacts an unknown function of the file /index.php of the component SQL Handler. Executing a manipulation can lead to information exposure through error message. The attack may be performed from remote. The exploit has been made available to the public and could be used for attacks.

References (6)

Core 6
Core References
Vdb Entry vdb-entry
VDB-365639 | SourceCodester CET Automated Grading System with AI Predictive Analytics SQL index.php information exposure
https://vuldb.com/vuln/365639
Signature, Permissions Required signature permissions-required
VDB-365639 | CTI Indicators (IOB, IOC, TTP, IOA)
https://vuldb.com/vuln/365639/cti
Third Party Advisory third-party-advisory
Submit #817932 | SourceCodester CET Automated Grading System with AI Predictive Analytics in PHP and MySQL 1.0 Information Disclosure
https://vuldb.com/submit/817932

Scores

CVSS v3 4.3
EPSS 0.0024
EPSS Percentile 15.1%
Attack Vector NETWORK
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:N/A:N

CISA SSVC

Vulnrichment
Exploitation poc
Automatable no
Technical Impact partial

Details

CWE
CWE-200 CWE-209
Status published
Products (1)
SourceCodester/CET Automated Grading System with AI Predictive Analytics 1.0
Published May 26, 2026
Tracked Since May 27, 2026