itsourcecode Content Management System是itsourcecode开源的一个内容管理系统。 itsourcecode Content Management System 1.0版本存在SQL注入漏洞,该漏洞源于文件/admin/add_sub_topic.php中参数topic_id操作不当,可能导致SQL注入攻击。
| Vendor | Product | Version Range | Status |
|---|---|---|---|
| itsourcecode | Content Management System | 1.0 |
affected |
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
10-question deep dive: root cause, exploitation, mitigation, urgency. Read summary free, full version requires login.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| itsourcecode | Content Management System | 1.0 |
cpe:2.3:a:itsourcecode:content_management_system:*:*:*:*:*:*:*:*
|
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2026-10249 | 7.3 HIGH | itsourcecode Online Blood Bank Management System viewrequest.php sql injection |
| CVE-2026-10250 | 7.3 HIGH | itsourcecode Online Blood Bank Management System campsdetails.php sql injection |
| CVE-2026-10251 | 7.3 HIGH | itsourcecode Online House Rental System ajax.php login sql injection |
| CVE-2026-10252 | 7.3 HIGH | itsourcecode Online House Rental System manage_tenant.php sql injection |
| CVE-2026-10253 | 7.3 HIGH | itsourcecode Online House Rental System manage_payment.php sql injection |
| CVE-2026-10242 | 6.3 MEDIUM | itsourcecode Content Management System instructions.php sql injection |
| CVE-2026-10256 | 6.3 MEDIUM | itsourcecode Content Management System save_comment.php sql injection |
| CVE-2026-10257 | 6.3 MEDIUM | itsourcecode Content Management System update_ss_img.php sql injection |
| CVE-2026-10265 | 6.3 MEDIUM | itsourcecode Content Management System edit_topic.php sql injection |
| CVE-2026-10296 | 6.3 MEDIUM | itsourcecode Fees Management System ajax.php sql injection |
| CVE-2026-10297 | 6.3 MEDIUM | itsourcecode Fees Management System manage_course.php sql injection |
| CVE-2026-10302 | 6.3 MEDIUM | itsourcecode Fees Management System manage_fee.php sql injection |
| CVE-2026-10301 | 4.3 MEDIUM | itsourcecode Fees Management System index.php cross site scripting |
No comments yet