A vulnerability was determined in SourceCodester Sales and Inventory System 1.0. This vulnerability affects unknown code of the file sales_invoice1.php of the component GET Parameter Handler. This manipulation of the argument sellid causes sql injection. It is possible to initiate the attack remotely. The exploit has been publicly disclosed and may be utilized.
Metrics
Affected Vendors & Products
References
History
Mon, 09 Mar 2026 15:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Ahsanriaz26gmailcom
Ahsanriaz26gmailcom sales And Inventory System |
|
| CPEs | cpe:2.3:a:ahsanriaz26gmailcom:sales_and_inventory_system:1.0:*:*:*:*:*:*:* | |
| Vendors & Products |
Ahsanriaz26gmailcom
Ahsanriaz26gmailcom sales And Inventory System |
Mon, 09 Mar 2026 02:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | A vulnerability was determined in SourceCodester Sales and Inventory System 1.0. This vulnerability affects unknown code of the file sales_invoice1.php of the component GET Parameter Handler. This manipulation of the argument sellid causes sql injection. It is possible to initiate the attack remotely. The exploit has been publicly disclosed and may be utilized. | |
| Title | SourceCodester Sales and Inventory System GET Parameter sales_invoice1.php sql injection | |
| Weaknesses | CWE-74 CWE-89 |
|
| References |
| |
| Metrics |
cvssV2_0
|
Status: PUBLISHED
Assigner: VulDB
Published: 2026-03-09T01:32:08.428Z
Updated: 2026-03-09T01:32:08.428Z
Reserved: 2026-03-08T07:24:05.096Z
Link: CVE-2026-3793
No data.
Status : Analyzed
Published: 2026-03-09T03:15:49.070
Modified: 2026-03-09T15:04:07.067
Link: CVE-2026-3793
No data.