CVE-2026-3762: SourceCodester Client Database Management System Endpoint superadmin_delete_manager.php improper authorization
A vulnerability has been found in SourceCodester Client Database Management System 1.0/3.1. Impacted is an unknown function of the file /superadmindeletemanager.php of the component Endpoint. The manipulation of the argument managerid leads to improper authorization. It is possible to initiate the attack remotely. The exploit has been disclosed to the public and may be used.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2026-3762?
CVE-2026-3762 has been classified as a serious security vulnerability due to improper authorization in the endpoint 'superadmin_delete_manager.php'.
How do I fix CVE-2026-3762?
To fix CVE-2026-3762, implement proper authentication and authorization checks in the 'superadmin_delete_manager.php' file to limit access.
What versions of SourceCodester Client Database Management System are affected by CVE-2026-3762?
CVE-2026-3762 affects SourceCodester Client Database Management System versions between 1.0 and 3.1.
What type of attack can exploit CVE-2026-3762?
CVE-2026-3762 can be exploited through unauthorized access, allowing malicious users to delete database managers without proper credentials.
Is CVE-2026-3762 remotely exploitable?
Yes, CVE-2026-3762 is remotely exploitable, making it critical for administrators to apply security patches or workarounds immediately.