A security flaw has been discovered in SourceCodester Sales and Inventory System 1.0. Affected by this vulnerability is an unknown functionality of the file /view_payments.php of the component HTTP POST Request Handler. Performing a manipulation of the argument searchtxt results in sql injection. The attack is possible to be carried out remotely. The exploit has been released to the public and may be used for attacks.
Metrics
Affected Vendors & Products
References
History
Mon, 23 Mar 2026 04:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | A security flaw has been discovered in SourceCodester Sales and Inventory System 1.0. Affected by this vulnerability is an unknown functionality of the file /view_payments.php of the component HTTP POST Request Handler. Performing a manipulation of the argument searchtxt results in sql injection. The attack is possible to be carried out remotely. The exploit has been released to the public and may be used for attacks. | |
| Title | SourceCodester Sales and Inventory System HTTP POST Request view_payments.php sql injection | |
| Weaknesses | CWE-74 CWE-89 |
|
| References |
| |
| Metrics |
cvssV2_0
|
Status: PUBLISHED
Assigner: VulDB
Published:
Updated: 2026-03-23T03:41:41.198Z
Reserved: 2026-03-22T08:42:44.397Z
Link: CVE-2026-4571
No data.
Status : Received
Published: 2026-03-23T05:16:07.193
Modified: 2026-03-23T05:16:07.193
Link: CVE-2026-4571
No data.
OpenCVE Enrichment
No data.