CVE-2026-15672: itsourcecode Electronic Judging System add_judges.php sql injection
A vulnerability was determined in itsourcecode Electronic Judging System 1.0. Impacted is an unknown function of the file /intrams/admin/addjudges.php. This manipulation of the argument fname causes sql injection. The attack may be initiated remotely. The exploit has been publicly disclosed and may be utilized.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2026-15672?
The severity of CVE-2026-15672 is rated as medium with a score of 6.3.
What type of vulnerability is CVE-2026-15672?
CVE-2026-15672 is a SQL injection vulnerability affecting the add_judges.php file in itsourcecode Electronic Judging System.
How can I mitigate the risk of CVE-2026-15672?
To mitigate CVE-2026-15672, ensure that user inputs are properly sanitized and use prepared statements for database queries.
Which software is affected by CVE-2026-15672?
CVE-2026-15672 affects the itsourcecode Electronic Judging System version 1.0.
Can CVE-2026-15672 be exploited remotely?
Yes, CVE-2026-15672 can be exploited remotely, allowing attackers to manipulate SQL queries.