Description
A security vulnerability has been detected in itsourcecode E-Logbook with Health Monitoring System for COVID-19 1.0. This vulnerability affects unknown code of the file /check_profile_old.php. The manipulation of the argument profile_id leads to sql injection. Remote exploitation of the attack is possible. The exploit has been disclosed publicly and may be used.
Problem types
Product status
Timeline
| 2026-02-23: | Advisory disclosed |
| 2026-02-23: | VulDB entry created |
| 2026-02-23: | VulDB entry last update |
Credits
Zhi C (VulDB User)
References
vuldb.com/?id.347406 (VDB-347406 | itsourcecode E-Logbook with Health Monitoring System for COVID-19 check_profile_old.php sql injection)
vuldb.com/?ctiid.347406 (VDB-347406 | CTI Indicators (IOB, IOC, TTP, IOA))
vuldb.com/?submit.757247 (Submit #757247 | itsourcecode E-Logbook with Health Monitoring System V1.0 SQL Injection)
github.com/ltranquility/cve_submit/issues/3
itsourcecode.com/