No advisories yet.
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
Fri, 14 Aug 2026 03:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | A vulnerability has been found in francoisjacquet RosarioSIS up to 12.7.4. This vulnerability affects unknown code of the file modules/Students/includes/Medical.inc.php of the component Student Medical Module. Such manipulation of the argument table leads to sql injection. The attack may be launched remotely. Upgrading to version 12.8 is able to resolve this issue. The name of the patch is 6234a0ee0124c0667c824693ac77164f18946ddf. Upgrading the affected component is recommended. | |
| Title | francoisjacquet RosarioSIS Student Medical Medical.inc.php sql injection | |
| First Time appeared |
Rosariosis
Rosariosis rosariosis |
|
| Weaknesses | CWE-74 CWE-89 |
|
| CPEs | cpe:2.3:a:rosariosis:rosariosis:*:*:*:*:*:*:*:* | |
| Vendors & Products |
Rosariosis
Rosariosis rosariosis |
|
| References |
|
|
| Metrics |
cvssV2_0
|
Projects
Sign in to view the affected projects.
Status: PUBLISHED
Assigner: VulDB
Published:
Updated: 2026-08-14T02:15:10.506Z
Reserved: 2026-08-13T18:28:52.116Z
Link: CVE-2026-19785
No data.
Status : Received
Published: 2026-08-14T03:16:20.547
Modified: 2026-08-14T03:16:20.547
Link: CVE-2026-19785
No data.
OpenCVE Enrichment
No data.