在 CodeAstro Simple Pharmacy Management System 1.0 中发现了一个漏洞。该漏洞影响文件 /SimplePharmacy-PHP/product/view.php 中的未知代码。对参数 ID 的操作导致了 SQL 注入。该攻击可以远程发起。漏洞利用代码已被公开披露,且可被利用。
| Vendor | Product | Version Range | Status |
|---|---|---|---|
| CodeAstro | Simple Pharmacy Management System | 1.0 |
affected |
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| CodeAstro | Simple Pharmacy Management System | 1.0 |
cpe:2.3:a:codeastro:simple_pharmacy_management_system:*:*:*:*:*:*:*:*
|
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2026-104614 | 6.3 MEDIUM | CodeAstro Simple Pharmacy Management System delete.php sql injection |
| CVE-2026-104625 | 6.3 MEDIUM | CodeAstro Simple Loan Management System index.php sql injection |
No comments yet