Unknown · Core-Php-Admin-Panel · CVE-2026-18766
**Name of the Vulnerable Software and Affected Versions**
chetans9 core-php-admin-panel versions up to 90d07ed5aac5e0f09b6a5828d7bb2eb83010763f
**Description**
A flaw in the processing of the file `/Applications/MAMP/htdocs/core-php-admin-panel-master/customers.php` allows for a remote attack. By manipulating the `filter col` argument, an attacker can perform SQL injection, which is a technique used to interfere with the queries that an application makes to its database.
**Recommendations**
At the moment, there is no information about a newer version that contains a fix for this vulnerability.
As a temporary workaround, restrict access to the file `/Applications/MAMP/htdocs/core-php-admin-panel-master/customers.php` or avoid using the `filter col` argument.