CVE-2026-3046: itsourcecode E-Logbook with Health Monitoring System for COVID-19 check_profile_old.php sql injection
A security vulnerability has been detected in itsourcecode E-Logbook with Health Monitoring System for COVID-19 1.0. This vulnerability affects unknown code of the file /checkprofileold.php. The manipulation of the argument profileid leads to sql injection. Remote exploitation of the attack is possible. The exploit has been disclosed publicly and may be used.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2026-3046?
CVE-2026-3046 is classified as a critical SQL injection vulnerability that could allow an attacker to execute arbitrary SQL commands.
How do I fix CVE-2026-3046?
To mitigate CVE-2026-3046, validate and sanitize user inputs in the check_profile_old.php file to prevent SQL injection attacks.
Who is affected by CVE-2026-3046?
CVE-2026-3046 affects users of the itsourcecode E-Logbook with Health Monitoring System for COVID-19 version 1.0.
What type of vulnerability is CVE-2026-3046?
CVE-2026-3046 is an SQL injection vulnerability that allows attackers to manipulate database queries.
When was CVE-2026-3046 disclosed?
CVE-2026-3046 was publicly disclosed in the security advisory detailing vulnerabilities affecting the itsourcecode E-Logbook.