Description
A flaw has been found in SourceCodester Gas Agency Management System 1.0. This issue affects some unknown processing of the file /gasmark/php_action/createUser.php. Executing a manipulation can lead to improper access controls. It is possible to launch the attack remotely. The exploit has been published and may be used.
Problem types
Incorrect Privilege Assignment
Product status
Timeline
| 2026-02-05: | Advisory disclosed |
| 2026-02-05: | VulDB entry created |
| 2026-02-05: | VulDB entry last update |
Credits
moasim (VulDB User)
References
vuldb.com/?id.344591 (VDB-344591 | SourceCodester Gas Agency Management System createUser.php access control)
vuldb.com/?ctiid.344591 (VDB-344591 | CTI Indicators (IOB, IOC, TTP, IOA))
vuldb.com/?submit.743459 (Submit #743459 | SourceCodester Gas Agency Management System 1.0 Improper Access Controls)
github.com/...in-SourceCodester-Gas-Agency-Management-System
www.sourcecodester.com/