CVE-2026-6010
MEDIUM
NVD
CVSS Score
6.3
Severity
MEDIUM
Published
Apr 10, 2026
Vendor
unknown
Description
A security flaw has been discovered in CodeAstro Online Classroom 1.0/2.php. Affected by this vulnerability is an unknown functionality of the file /OnlineClassroom/takeassessment2.php?exid=14. Performing a manipulation of the argument Q1 results in sql injection. Remote exploitation of the attack is possible. The exploit has been released to the public and may be used for attacks.