CVE-2026-0697: code-projects Intern Membership Management System edit_admin.php sql injection
A flaw has been found in code-projects Intern Membership Management System 1.0. The impacted element is an unknown function of the file /intern/admin/editadmin.php. This manipulation of the argument adminid causes sql injection. The attack may be initiated remotely. The exploit has been published and may be used.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2026-0697?
CVE-2026-0697 has been classified as a high severity vulnerability due to its potential for remote exploitation via SQL injection.
How do I fix CVE-2026-0697?
To fix CVE-2026-0697, developers should sanitize and validate all user inputs in the affected admin functionality to prevent SQL injection.
What software is affected by CVE-2026-0697?
CVE-2026-0697 affects version 1.0 of the Code-projects Intern Membership Management System.
Can CVE-2026-0697 be exploited remotely?
Yes, CVE-2026-0697 can be exploited remotely, making it a critical vulnerability for exposed applications.
What impact can CVE-2026-0697 have on a system?
Exploitation of CVE-2026-0697 can lead to unauthorized access and manipulation of the database through SQL injection.