Description
A vulnerability was found in Comsenz Discuz! X5.0-20260801/X5.0-20260820/X5.0-20260910. Affected by this issue is the function modmedalsubmit of the file upload/source/app/admin/child/medals/mod.php of the component Admin Medal Moderation. The manipulation of the argument delete results in sql injection. It is possible to launch the attack remotely. The exploit has been made public and could be used. The vendor was contacted early about this disclosure but did not respond in any way.
Published: 2026-10-04
Score: 5.1 Medium
EPSS: n/a
KEV: No
Impact: Remote SQL Injection
Action: Patching
AI Analysis

Impact

A flaw in the Admin Medal Moderation module of Comsenz Discuz! allows an attacker to manipulate the delete argument and inject arbitrary SQL into queries. The vulnerability is a classic injection issue that can lead to unauthorized data disclosure or modification, potentially exposing sensitive user information or enabling further attacks on the underlying database. The flaw is limited to this administrative functionality and does not provide code execution but can alter data integrity and confidentiality.

Affected Systems

Comsenz Discuz! versions X5.0-20260801, X5.0-20260820, and X5.0-20260910 are affected. The vulnerability resides specifically in the modmedalsubmit function within upload/source/app/admin/child/medals/mod.php of the Admin Medal Moderation component.

Risk and Exploitability

The CVSS base score of 5.1 indicates a moderate impact, and the EPSS score is unavailable, meaning the historic exploitation probability cannot be assessed; however, the exploit is publicly available, implying that an attacker could deploy it with relative ease. The vulnerability is not listed in CISA’s KEV catalog. Attackers can reach the vulnerable interface remotely, likely by accessing the admin URLs from an external network, which means an unauthenticated or low‑privilege attacker could potentially craft malicious input if the admin panel is exposed.

Generated by OpenCVE AI on October 4, 2026 at 12:50 UTC.

Remediation

No solution or workaround provided in the CVE record.

OpenCVE Recommended Actions

  • Apply any available vendor patch or upgrade to a newer Discuz! release that addresses the login or admin module vulnerabilities.
  • If a patch is not yet released, restrict access to the administrative interface using network firewalls or IP whitelisting to limit exposure to trusted IPs.
  • Deploy a web application firewall or intrusion prevention system configured to detect and block SQL injection patterns targeting the delete parameter in modmedalsubmit.

Generated by OpenCVE AI on October 4, 2026 at 12:50 UTC.

Tracking

Sign in to view the affected projects.

Advisories

No advisories yet.

History

Sun, 04 Oct 2026 11:00:00 +0000

Type Values Removed Values Added
Description A vulnerability was found in Comsenz Discuz! X5.0-20260801/X5.0-20260820/X5.0-20260910. Affected by this issue is the function modmedalsubmit of the file upload/source/app/admin/child/medals/mod.php of the component Admin Medal Moderation. The manipulation of the argument delete results in sql injection. It is possible to launch the attack remotely. The exploit has been made public and could be used. The vendor was contacted early about this disclosure but did not respond in any way.
Title Comsenz Discuz! Admin Medal Moderation mod.php modmedalsubmit sql injection
First Time appeared Comsenz
Comsenz discuz
Weaknesses CWE-74
CWE-89
CPEs cpe:2.3:a:comsenz:discuz:*:*:*:*:*:*:*:*
Vendors & Products Comsenz
Comsenz discuz
References
Metrics cvssV2_0

{'score': 5.8, 'vector': 'AV:N/AC:L/Au:M/C:P/I:P/A:P/E:POC/RL:ND/RC:C'}

cvssV3_0

{'score': 4.7, 'vector': 'CVSS:3.0/AV:N/AC:L/PR:H/UI:N/S:U/C:L/I:L/A:L/E:P/RL:X/RC:C'}

cvssV3_1

{'score': 4.7, 'vector': 'CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:L/I:L/A:L/E:P/RL:X/RC:C'}

cvssV4_0

{'score': 5.1, 'vector': 'CVSS:4.0/AV:N/AC:L/AT:N/PR:H/UI:N/VC:L/VI:L/VA:L/SC:N/SI:N/SA:N/E:P'}


cve-icon MITRE

Status: PUBLISHED

Assigner: VulDB

Published:

Updated: 2026-10-04T09:30:12.188Z

Reserved: 2026-10-03T17:07:00.624Z

Link: CVE-2026-105146

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Received

Published: 2026-10-04T11:16:32.857

Modified: 2026-10-04T11:16:32.857

Link: CVE-2026-105146

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

Updated: 2026-10-04T13:00:08Z

Weaknesses
  • CWE-74

    Improper Neutralization of Special Elements in Output Used by a Downstream Component ('Injection')

  • CWE-89

    Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')