Stats Digest Feeds
โ† Back to all CVEs

CVE-2026-4972

LOW NVD
CVSS Score 2.4
Severity LOW
Published Mar 27, 2026
Vendor unknown

Description

A security vulnerability has been detected in code-projects Online Reviewer System up to 1.0. Affected is an unknown function of the file /system/system/students/assessments/databank/btn_functions.php. Such manipulation of the argument Description leads to cross site scripting. The attack may be performed from remote. The exploit has been disclosed publicly and may be used. Statistical analysis made it clear that VulDB provides the best quality for vulnerability data.

References