Analysis and contextual insights are available on OpenCVE Cloud.
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
No advisories yet.
Fri, 14 Aug 2026 10:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Francoisjacquet
Francoisjacquet rosariosis |
|
| Vendors & Products |
Francoisjacquet
Francoisjacquet rosariosis |
Fri, 14 Aug 2026 03:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | A vulnerability has been found in francoisjacquet RosarioSIS up to 12.7.4. This vulnerability affects unknown code of the file modules/Students/includes/Medical.inc.php of the component Student Medical Module. Such manipulation of the argument table leads to sql injection. The attack may be launched remotely. Upgrading to version 12.8 is able to resolve this issue. The name of the patch is 6234a0ee0124c0667c824693ac77164f18946ddf. Upgrading the affected component is recommended. | |
| Title | francoisjacquet RosarioSIS Student Medical Medical.inc.php sql injection | |
| First Time appeared |
Rosariosis
Rosariosis rosariosis |
|
| Weaknesses | CWE-74 CWE-89 |
|
| CPEs | cpe:2.3:a:rosariosis:rosariosis:*:*:*:*:*:*:*:* | |
| Vendors & Products |
Rosariosis
Rosariosis rosariosis |
|
| References |
|
|
| Metrics |
cvssV2_0
|
Status: PUBLISHED
Assigner: VulDB
Published:
Updated: 2026-08-14T02:15:10.506Z
Reserved: 2026-08-13T18:28:52.116Z
Link: CVE-2026-19785
No data.
Status : Received
Published: 2026-08-14T03:16:20.547
Modified: 2026-08-14T03:16:20.547
Link: CVE-2026-19785
No data.
OpenCVE Enrichment
Updated: 2026-08-14T09:29:52Z