CVE-2026-4972

Published
View on NVD ↗
CVSS v3
2.4
LOW
CVSS v2
3.3
LOW
Affected
1
PROJECT

Description

A security vulnerability has been detected in code-projects Online Reviewer System up to 1.0. Affected is an unknown function of the file /system/system/students/assessments/databank/btn_functions.php. Such manipulation of the argument Description leads to cross site scripting. The attack may be performed from remote. The exploit has been disclosed publicly and may be used.