在 SourceCodester 库存管理系统 1.0 中发现了一个漏洞,该漏洞位于 文件的某个未知部分。通过操纵参数 ,攻击者可绕过授权验证(授权绕过)。该攻击可远程发起。利用该漏洞的补丁(exploit)已公开,且可能已被利用。
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
10-question deep dive: root cause, exploitation, mitigation, urgency. Read summary free, full version requires login.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| SourceCodester | Inventory Management System | 1.0 |
cpe:2.3:a:sourcecodester:inventory_management_system:*:*:*:*:*:*:*:*
|
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2026-90615 | 4.3 MEDIUM | SourceCodester Class and Exam Timetabling System subject1.php cross site scripting |
| CVE-2026-90696 | 3.5 LOW | SourceCodester Inventory Management System Product Management products_handler.php cross s |
| CVE-2026-90695 | 3.5 LOW | SourceCodester Inventory Management System Vendor Management vendors_handler.php cross sit |
| CVE-2026-90694 | 3.5 LOW | SourceCodester Inventory Management System Customer Management customers_handler.php cross |
No comments yet