A security vulnerability has been detected in code-projects Simple Food Order System 1.0. Affected by this vulnerability is an unknown functionality of the file all-orders.php of the component Parameter Handler. The manipulation of the argument Status leads to sql injection. The attack may be initiated remotely. The exploit has been disclosed publicly and may be used.
Metrics
Affected Vendors & Products
References
History
Sun, 29 Mar 2026 02:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | A security vulnerability has been detected in code-projects Simple Food Order System 1.0. Affected by this vulnerability is an unknown functionality of the file all-orders.php of the component Parameter Handler. The manipulation of the argument Status leads to sql injection. The attack may be initiated remotely. The exploit has been disclosed publicly and may be used. | |
| Title | code-projects Simple Food Order System Parameter all-orders.php sql injection | |
| Weaknesses | CWE-74 CWE-89 |
|
| References |
| |
| Metrics |
cvssV2_0
|
Status: PUBLISHED
Assigner: VulDB
Published:
Updated: 2026-03-28T23:30:12.263Z
Reserved: 2026-03-27T14:14:13.126Z
Link: CVE-2026-5019
No data.
Status : Received
Published: 2026-03-29T00:16:13.673
Modified: 2026-03-29T00:16:13.673
Link: CVE-2026-5019
No data.
OpenCVE Enrichment
No data.