CVE-2026-26702: SQL Injection
Published Mar 2, 2026
·Updated
sourcecodester Personnel Property Equipment System v1.0 is vulnerable to SQL Injection in /ppes/admin/myitemreuse.php.
Affected Software
2 affected components
Sourcecodester Personnel Property Equipment System
Jon-remus-sevellejo Personnel Property Equipment System=1.0
Event History
Mar 2, 2026
CVE Published
via MITRE·12:00 AM
Data Sourced
via MITRE·12:00 AM
Description
Data Sourced
via NVD·03:16 PM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2026-26702?
CVE-2026-26702 has a high severity rating due to its SQL Injection vulnerability that can lead to unauthorized data access.
2
How do I fix CVE-2026-26702?
To fix CVE-2026-26702, validate and sanitize all user inputs in the myitem_reuse.php file to prevent SQL injection.
3
Which versions of Personal Property Equipment System are affected by CVE-2026-26702?
CVE-2026-26702 affects version 1.0 of the Personnel Property Equipment System.
4
What are the potential impacts of CVE-2026-26702?
The impacts of CVE-2026-26702 include exposure of sensitive data and potential full compromise of the database.
5
Who is the vendor of the software affected by CVE-2026-26702?
The vendor of the affected software, Personnel Property Equipment System, is Jon Remus Sevellejo.