CVE-2026-4991
QDOCS Smart School Management System Admission Enquiry enquiry cross site scripting
CVSS Score
3.5
EPSS Score
0.0%
EPSS Percentile
7th
A vulnerability was detected in QDOCS Smart School Management System up to 7.2. The impacted element is an unknown function of the file /admin/enquiry of the component Admission Enquiry Module. Performing a manipulation of the argument Note results in cross site scripting. The attack is possible to be carried out remotely.
| CWE | CWE-79 CWE-94 |
| Vendor | qdocs |
| Product | smart school management system |
| Published | Mar 27, 2026 |
| Last Updated | Mar 30, 2026 |
Stay Ahead of the Next One
Get instant alerts for qdocs smart school management system
Be the first to know when new low vulnerabilities affecting qdocs smart school management system are published โ delivered to Slack, Telegram or Discord.
Get Free Alerts โ
Free ยท No credit card ยท 60 sec setup
CVSS v3 Breakdown
CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:U/C:N/I:L/A:N/E:X/RL:X/RC:X Attack Vector
Attack Complexity
Privileges Required
User Interaction
Scope
Confidentiality
Integrity
Availability
Affected Versions
QDOCS / Smart School Management System
7.0 7.1 7.2
References
Credits
๐ Casmit2004 (VulDB User) VulDB