CVE-2026-1535: code-projects Online Music Site AdminReply.php sql injection
A security vulnerability has been detected in code-projects Online Music Site 1.0. This impacts an unknown function of the file /Administrator/PHP/AdminReply.php. Such manipulation of the argument ID leads to sql injection. It is possible to launch the attack remotely. The exploit has been disclosed publicly and may be used.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2026-1535?
CVE-2026-1535 is considered a high severity vulnerability due to the potential for SQL injection.
How do I fix CVE-2026-1535?
To fix CVE-2026-1535, validate and sanitize user inputs in the AdminReply.php file to prevent SQL injection.
Which versions of Online Music Site are affected by CVE-2026-1535?
CVE-2026-1535 affects code-projects Online Music Site version 1.0.
What type of vulnerability is CVE-2026-1535?
CVE-2026-1535 is an SQL injection vulnerability that affects an admin functionality.
What is the impact of CVE-2026-1535 exploitation?
Exploiting CVE-2026-1535 allows attackers to execute arbitrary SQL commands, potentially leading to data theft or manipulation.