在 code-projects Simple Inventory System 1.0 中发现了一个漏洞。受此问题影响的是文件 /delete.php 的某些未知功能。对参数 ID 的此类操纵可导致 SQL 注入。该漏洞可通过远程方式发起攻击。该漏洞已被公开披露,且可能被利用。
| Vendor | Product | Version Range | Status |
|---|---|---|---|
| code-projects | Simple Inventory System | 1.0 |
affected |
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| code-projects | Simple Inventory System | 1.0 |
cpe:2.3:a:code-projects:simple_inventory_system:*:*:*:*:*:*:*:*
|
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2026-76764 | 7.3 HIGH | code-projects Employee Management System Admin Login Endpoint aprocess.php sql injection |
| CVE-2026-76799 | 5.3 MEDIUM | code-projects Login Registration System SQL Database Backup login_registration_system.sql |
No comments yet