Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2026-4781

Опубликовано: 25 мар. 2026
Источник: nvd
CVSS3: 6.3
CVSS2: 6.5
EPSS Низкий

Описание

A flaw has been found in SourceCodester Sales and Inventory System 1.0. The affected element is an unknown function of the file update_purchase.php of the component HTTP GET Parameter Handler. Executing a manipulation of the argument sid can lead to sql injection. The attack may be performed from remote. The exploit has been published and may be used.

EPSS

Процентиль: 9%
0.00031
Низкий

6.3 Medium

CVSS3

6.5 Medium

CVSS2

Дефекты

CWE-74

Связанные уязвимости

CVSS3: 6.3
github
15 дней назад

A flaw has been found in SourceCodester Sales and Inventory System 1.0. The affected element is an unknown function of the file update_purchase.php of the component HTTP GET Parameter Handler. Executing a manipulation of the argument sid can lead to sql injection. The attack may be performed from remote. The exploit has been published and may be used.

EPSS

Процентиль: 9%
0.00031
Низкий

6.3 Medium

CVSS3

6.5 Medium

CVSS2

Дефекты

CWE-74