Description
A flaw has been found in itsourcecode News Portal Project 1.0. This vulnerability affects unknown code of the file /admin/index.php of the component Administrator Login. This manipulation of the argument email causes sql injection. The attack can be initiated remotely. The exploit has been published and may be used.
Problem types
Product status
Timeline
| 2026-02-08: | Advisory disclosed |
| 2026-02-08: | VulDB entry created |
| 2026-02-08: | VulDB entry last update |
Credits
wanyan (VulDB User)
References
vuldb.com/?id.344942 (VDB-344942 | itsourcecode News Portal Project Administrator Login index.php sql injection)
vuldb.com/?ctiid.344942 (VDB-344942 | CTI Indicators (IOB, IOC, TTP, IOA))
vuldb.com/?submit.753402 (Submit #753402 | itsourcecode News Portal Project v1.0 SQL Injection)
github.com/wan1yan/cve/issues/2
itsourcecode.com/