โ† Back to all CVEs

CVE-2026-4780

MEDIUM NVD
CVSS Score 6.3
Severity MEDIUM
Published Mar 25, 2026
Vendor unknown

Description

A vulnerability was detected in SourceCodester Sales and Inventory System 1.0. Impacted is an unknown function of the file update_out_standing.php of the component HTTP GET Parameter Handler. Performing a manipulation of the argument sid results in sql injection. The attack is possible to be carried out remotely. The exploit is now public and may be used.

References