SQL Injection Vulnerability in Simple Student Alumni System by Code-Projects
CVE-2026-26697
4.9MEDIUM
What is CVE-2026-26697?
The Simple Student Alumni System by Code-Projects is susceptible to an SQL Injection vulnerability. This issue arises in the 'recordteacher_view.php' file when it processes the 'teacherID' parameter, allowing attackers to execute arbitrary SQL queries. Exploiting this vulnerability could lead to unauthorized database access, data manipulation, or leakage of sensitive information, posing significant risks to the integrity and confidentiality of the system.
