Subscriptions
No data.
Tracking
Sign in to view the affected projects.
No advisories yet.
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
Wed, 25 Mar 2026 22:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | A vulnerability was found in SourceCodester Sales and Inventory System 1.0. This affects an unknown part of the file /update_sales.php of the component HTTP GET Parameter Handler. The manipulation of the argument sid results in sql injection. The attack may be launched remotely. The exploit has been made public and could be used. | |
| Title | SourceCodester Sales and Inventory System HTTP GET Parameter update_sales.php sql injection | |
| Weaknesses | CWE-74 CWE-89 |
|
| References |
| |
| Metrics |
cvssV2_0
|
Status: PUBLISHED
Assigner: VulDB
Published:
Updated: 2026-03-25T22:32:22.769Z
Reserved: 2026-03-25T14:04:28.460Z
Link: CVE-2026-4825
No data.
Status : Received
Published: 2026-03-25T23:17:10.817
Modified: 2026-03-25T23:17:10.817
Link: CVE-2026-4825
No data.
OpenCVE Enrichment
No data.