CVE-2026-2114: itsourcecode Society Management System edit_admin.php sql injection
A vulnerability was detected in itsourcecode Society Management System 1.0. This vulnerability affects unknown code of the file /admin/editadmin.php. The manipulation of the argument adminid results in sql injection. The attack may be performed from remote. The exploit is now public and may be used.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2026-2114?
CVE-2026-2114 has a high severity rating due to its potential for SQL injection exploitation.
How do I fix CVE-2026-2114?
To fix CVE-2026-2114, validate and sanitize the input for the admin_id parameter in the /admin/edit_admin.php file.
What systems are affected by CVE-2026-2114?
CVE-2026-2114 affects the itsourcecode Society Management System version 1.0.
What kind of attack can be performed using CVE-2026-2114?
CVE-2026-2114 allows attackers to execute SQL injection attacks through the manipulation of the admin_id parameter.
Is CVE-2026-2114 easy to exploit?
Yes, CVE-2026-2114 is considered easy to exploit if proper input validation is not implemented.