CVE-2026-82698CWE-1393

CVE-2026-82698

Medium · published August 31, 2026

CVSS v3.1
5.3
EPSS
0%
Percentile
23.5
In the wild
Unconfirmed
What it is

A vulnerability was detected in sambitraj Student-Management-System up to 56ba287f2e9031523ccb4244cb6e3fe530e4e5d5. This affects an unknown function of the file aca.sql. Performing a manipulation results in use of default password. Remote exploitation of the attack is possible. The exploit is now public and may be used. This product follows a rolling release approach for continuous delivery, so version details for affected or updated releases are not provided. The project was informed of the problem early through an issue report but has not responded yet.

The record
Technical detail
CVSS v3.1
5.3 · MEDIUM
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N
CVSS v4.0
6.9 · CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:L/VI:N/VA:N/SC:N/SI:N/SA:N/E:P
EPSS
0.00311 · 23.5th percentile
Weakness
CWE-1393 · Use of Default Password
Published
2026-08-31T18:17Z
References (6)
EPSS history
Timeline
  • 02 SEP 03:40Z
    EPSS moved — → 0%
    epss
  • 31 AUG 13:30Z
    sambitraj Student-Management-System aca.sql default password
    cvelistv5