CVE-2026-2088: PHPGurukul Beauty Parlour Management System accepted-appointment.php sql injection
A vulnerability has been found in PHPGurukul Beauty Parlour Management System 1.1. This affects an unknown part of the file /admin/accepted-appointment.php. Such manipulation of the argument delid leads to sql injection. The attack may be launched remotely. The exploit has been disclosed to the public and may be used.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2026-2088?
CVE-2026-2088 is considered a critical vulnerability due to its exploitation potential through SQL injection.
How can I fix CVE-2026-2088?
To fix CVE-2026-2088, you should sanitize and parameterize SQL queries in the accepted-appointment.php file to prevent SQL injection.
What software is affected by CVE-2026-2088?
CVE-2026-2088 affects PHPGurukul Beauty Parlour Management System version 1.1.
What type of vulnerability is CVE-2026-2088?
CVE-2026-2088 is a SQL injection vulnerability that allows an attacker to manipulate SQL queries.
Where is the CVE-2026-2088 vulnerability located?
The CVE-2026-2088 vulnerability is located in the /admin/accepted-appointment.php file of the PHPGurukul Beauty Parlour Management System.