A vulnerability, which was classified as critical, was found in itsourcecode School Management System 1.0. This impacts an unknown function of the file /ramonsys/faculty/index.php. Such manipulation of the argument ID leads to sql injection.
This vulnerability is uniquely identified as CVE-2026-1590. The attack can be launched remotely. Moreover, an exploit is present.