Analysis and contextual insights are available on OpenCVE Cloud.
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
No advisories yet.
Tue, 08 Sep 2026 19:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Tue, 08 Sep 2026 18:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | A vulnerability was determined in ningzichun Student Management System up to 98760f5711cf6dc8b4adca53a9e207ca49b02ebf. Affected by this issue is the function mysqli_connect of the file config/database.php of the component Database Connection. This manipulation causes hard-coded credentials. The attack may be initiated remotely. The exploit has been publicly disclosed and may be utilized. This product uses a rolling release model to deliver continuous updates. As a result, specific version information for affected or updated releases is not available. The project was informed of the problem early through an issue report but has not responded yet. | |
| Title | ningzichun Student Management System Database Connection database.php mysqli_connect hard-coded credentials | |
| First Time appeared |
Ningzichun
Ningzichun student Management System |
|
| Weaknesses | CWE-259 CWE-798 |
|
| CPEs | cpe:2.3:a:ningzichun:student_management_system:*:*:*:*:*:*:*:* | |
| Vendors & Products |
Ningzichun
Ningzichun student Management System |
|
| References |
| |
| Metrics |
cvssV2_0
|
Status: PUBLISHED
Assigner: VulDB
Published:
Updated: 2026-09-08T18:11:42.177Z
Reserved: 2026-09-08T09:36:15.259Z
Link: CVE-2026-86673
Updated: 2026-09-08T18:11:38.581Z
Status : Deferred
Published: 2026-09-08T18:21:17.727
Modified: 2026-09-08T19:20:16.413
Link: CVE-2026-86673
No data.
OpenCVE Enrichment
No data.
