CVE-2026-0575: code-projects Online Product Reservation System Administrator Login adminlogin.php sql injection
A security vulnerability has been detected in code-projects Online Product Reservation System 1.0. This impacts an unknown function of the file /handgunner-administrator/adminlogin.php of the component Administrator Login. Such manipulation of the argument emailadd/pass leads to sql injection. The attack may be performed from remote. The exploit has been disclosed publicly and may be used.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2026-0575?
The severity of CVE-2026-0575 is currently classified as critical due to the potential for SQL injection leading to unauthorized data access.
How do I fix CVE-2026-0575?
To fix CVE-2026-0575, it is recommended to sanitize user input by using prepared statements or parameterized queries in the affected login functionality.
What software is affected by CVE-2026-0575?
CVE-2026-0575 affects the Online Product Reservation System version 1.0 by Code-projects.
What type of vulnerability is CVE-2026-0575?
CVE-2026-0575 is classified as an SQL injection vulnerability impacting the Administrator Login functionality.
How can CVE-2026-0575 impact my application?
CVE-2026-0575 can allow attackers to manipulate database queries, potentially leading to data leakage or complete system compromise.