CVE-2026-85205
MEDIUM
NVD
CVSS Score
6.3
Severity
MEDIUM
Published
Sep 03, 2026
Vendor
unknown
Description
A vulnerability was determined in itsourcecode Online Medicine Delivery System 1.0. This issue affects the function addwishlist of the file /customer/controller.php?action=addwish of the component Wishlist. This manipulation of the argument proid causes sql injection. The attack may be initiated remotely.