A vulnerability has been found in code-projects Exam Form Submission 1.0 and classified as problematic. This impacts an unknown function of the file /admin/update_s1.php. Performing a manipulation of the argument sname results in cross site scripting.

This vulnerability was named CVE-2026-4557. The attack may be initiated remotely. In addition, an exploit is available.