CVE-2026-5719: itsourcecode Construction Management System borrowedtool.php sql injection
A flaw has been found in itsourcecode Construction Management System 1.0. This affects an unknown function of the file /borrowedtool.php. Executing a manipulation of the argument code can lead to sql injection. It is possible to launch the attack remotely. The exploit has been published and may be used.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2026-5719?
CVE-2026-5719 is classified as a high severity vulnerability due to the potential for SQL injection attacks.
How do I fix CVE-2026-5719?
To fix CVE-2026-5719, you should validate and sanitize user inputs in the borrowedtool.php file to prevent SQL injection.
What type of vulnerability is CVE-2026-5719?
CVE-2026-5719 is an SQL injection vulnerability affecting the itsourcecode Construction Management System.
Who is affected by CVE-2026-5719?
CVE-2026-5719 affects users of the itsourcecode Construction Management System version 1.0.
What can attackers do with CVE-2026-5719?
Attackers can exploit CVE-2026-5719 to execute unauthorized SQL queries, potentially compromising the database.