CVE WATCH / VULNERABILITY DETAIL

CVE-2026-96777

MEDIUMCVSS 6.3NVD feed

Published 24 September 2026 · tracked since 25 September 2026

Description

A vulnerability was determined in Forma LMS up to 4.1.43. This impacts the function UserselectorAdmController::getDataTask of the file /appCore/ajax.adm_server.php?r=adm/userselector/getData of the component Multi-User-Selector AJAX Endpoint. This manipulation of the argument Name causes sql injecti

References

Latest tracked vulnerabilities

→ Open the live CVE board · all tools

CVE-2026-96777 — Vulnerability Details | Logic Encoder
CVE WATCH / VULNERABILITY DETAIL

CVE-2026-96777

MEDIUMCVSS 6.3NVD feed

Published 24 September 2026 · tracked since 25 September 2026

Description

A vulnerability was determined in Forma LMS up to 4.1.43. This impacts the function UserselectorAdmController::getDataTask of the file /appCore/ajax.adm_server.php?r=adm/userselector/getData of the component Multi-User-Selector AJAX Endpoint. This manipulation of the argument Name causes sql injecti

References

Latest tracked vulnerabilities

→ Open the live CVE board · all tools

[an error occurred while processing this directive]