Metrics
Affected Vendors & Products
Tue, 06 Jan 2026 14:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Code-projects
Code-projects online Product Reservation System |
|
| Vendors & Products |
Code-projects
Code-projects online Product Reservation System |
Tue, 06 Jan 2026 00:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Mon, 05 Jan 2026 12:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | A vulnerability was determined in code-projects Online Product Reservation System 1.0. The affected element is an unknown function of the file /app/checkout/delete.php of the component POST Parameter Handler. This manipulation of the argument ID causes sql injection. It is possible to initiate the attack remotely. The exploit has been publicly disclosed and may be utilized. | |
| Title | code-projects Online Product Reservation System POST Parameter delete.php sql injection | |
| Weaknesses | CWE-74 CWE-89 |
|
| References |
|
|
| Metrics |
cvssV2_0
|
Status: PUBLISHED
Assigner: VulDB
Published: 2026-01-05T12:32:06.031Z
Updated: 2026-01-05T20:08:54.622Z
Reserved: 2026-01-04T18:06:36.738Z
Link: CVE-2026-0590
Updated: 2026-01-05T20:08:44.907Z
Status : Undergoing Analysis
Published: 2026-01-05T13:15:55.643
Modified: 2026-01-08T18:09:49.800
Link: CVE-2026-0590
No data.