Description
A vulnerability was determined in SourceCodester Indian Invoicing System 1.0. Impacted is an unknown function of the component Backend Endpoint. Executing a manipulation can lead to improper access controls. The attack can be launched remotely. The exploit has been publicly disclosed and may be utilized. Multiple endpoints are affected.
Problem types
Incorrect Privilege Assignment
Product status
Timeline
| 2026-05-24: | Advisory disclosed |
| 2026-05-24: | VulDB entry created |
| 2026-05-24: | VulDB entry last update |
Credits
c4ttr4ck (VulDB User)
References
vuldb.com/vuln/365393 (VDB-365393 | SourceCodester Indian Invoicing System Backend Endpoint access control)
vuldb.com/vuln/365393/cti (VDB-365393 | CTI Indicators (IOB, IOC, TTP))
vuldb.com/submit/813608 (Submit #813608 | SourceCodester Invoice-System 1.0 Broken Access Control)
gist.github.com/c4ttr4ck/db84fc2af3e542acf1eab685264bcfc1
www.sourcecodester.com/