Home
Home
Trends
Trends
Vulnerabilities
Vulnerabilities
News
News
Researchers
Researchers
Why dbugs?
Why dbugs?
Settings

David_12

#21382of 56,328
13Total CVSS
Vulnerabilities · 2
Medium
2
PT-2026-86476
6.5
2026-09-06
Itsourcecode · Sales/Inventory System · CVE-2026-86163
🚨 CVE-2026-86163 A vulnerability was identified in itsourcecode Sales and Inventory System 1.0. This impacts an unknown function of the file /pages/pro del.php. The manipulation of the argument ID leads to sql injection. The attack is possible to be carried out remotely. The exploit is publicly available and might be used. 🎖@cveNotify
PT-2026-76896
6.5
2026-08-18
Itsourcecode · Hospital Management System · CVE-2026-75088
**Name of the Vulnerable Software and Affected Versions** itsourcecode Hospital Management System version 1.0 **Description** A remote SQL injection is possible due to improper handling of the `delid` argument within the `/viewbilling.php` endpoint. SQL injection is a technique where an attacker inserts malicious SQL code into a query, allowing them to manipulate the database. **Recommendations** As a temporary workaround, restrict access to the `/viewbilling.php` endpoint or avoid using the `delid` argument until a fix is applied. At the moment, there is no information about a newer version that contains a fix for this vulnerability.