CVE-2026-2196 | code-projects Online Reviewer System 1.0 exam-update.php test_id sql injection (CNNVD-202602-1400)
A vulnerability categorized as critical has been discovered in code-projects Online Reviewer System 1.0. This issue affects some unknown processing of the file /system/system/admins/assessments/pretest/exam-update.php. The manipulation of the argument test_id results in sql injection.
This vulnerability was named CVE-2026-2196. The attack may be performed from remote. In addition, an exploit is available.