SEPTEMBER 18, 2026
Live Feed
Back to database
Case File

CVE-2026-76999

MEDIUM · CVSS 6.3 EPSS 0.26%

Source: NVD + CISA KEV + EPSS · Published 2026-08-20 · Last synced 2026-09-18

CyberRota Analysis

AI-Generated

The SourceCodester CET Automated Grading System with AI Predictive Analytics 1.0 is vulnerable due to improper authorization in the add_grade function of /index.php, which can be exploited by manipulating the student_id argument. This vulnerability allows remote attackers to potentially alter grades, posing a risk to the integrity of the grading system. Educational institutions and organizations using this software should prioritize addressing this issue to safeguard against unauthorized access and data manipulation.

CVE
CVE-2026-76999
Severity
MEDIUM
CVSS
6.3
EPSS
0.26%

Original NVD Description

A vulnerability was detected in SourceCodester CET Automated Grading System with AI Predictive Analytics 1.0. This affects the function add_grade of the file /index.php. Performing a manipulation of the argument student_id results in improper authorization. The attack can be initiated remotely.