在 SourceCodester Drug Recommendation System 1.0 中发现了一个安全漏洞。该漏洞影响了 Admin/add_drug.php 文件中的某个未知函数。通过精心构造的恶意操作,可导致跨站脚本攻击(XSS)。攻击者可远程实施该攻击。目前相关利用代码已公开,可能被攻击者用于实际攻击。
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| SourceCodester | Drug Recommendation System | 1.0 |
cpe:2.3:a:sourcecodester:drug_recommendation_system:*:*:*:*:*:*:*:*
|
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2026-105704 | 7.3 HIGH | SourceCodester Drug Recommendation System Auth Guard improper authentication |
| CVE-2026-105706 | 4.3 MEDIUM | SourceCodester Drug Recommendation System cross-site request forgery |
No comments yet