CVE-2026-4991: Qdocs Smart School Management System
Low severity, CVSS 3.5. EPSS: 0.3% chance of exploitation in the next 30 days.
A vulnerability was detected in QDOCS Smart School Management System up to 7.2. The impacted element is an unknown function of the file /admin/enquiry of the component Admission Enquiry Module. Performing a manipulation of the argument Note results in cross site scripting. The attack is possible to be carried out remotely.
Affected products
- Qdocs Smart School Management System: version 7.0 only; version 7.1 only; version 7.2 only
Published 2026-03-27. Last modified 2026-06-17.