CVE-2026-10255

A vulnerability has been found in SourceCodester Pharmacy Sales and Inventory System 1.0. Affected by this vulnerability is the function sell_statement of the file application/controllers/ShowForm.php. Such manipulation leads to improper access controls. The attack can be launched remotely. The exploit has been disclosed to the public and may be used.
Configurations

No configuration.

History

22 Jul 2026, 07:10

Type Values Removed Values Added
Summary
  • (es) Una vulnerabilidad ha sido encontrada en SourceCodester Pharmacy Sales and Inventory System 1.0. Afectada por esta vulnerabilidad es la función sell_statement del archivo application/controllers/ShowForm.PHP. Tal manipulación lleva a controles de acceso impropios. El ataque puede ser lanzado remotamente. El exploit ha sido divulgado al público y puede ser usado.

01 Jun 2026, 13:16

Type Values Removed Values Added
New CVE

Information

Published : 2026-06-01 13:16

Updated : 2026-07-22 07:10


NVD link : CVE-2026-10255

Mitre link : CVE-2026-10255

CVE.ORG link : CVE-2026-10255


JSON object : View

Products Affected

No product.

CWE
CWE-266

Incorrect Privilege Assignment

CWE-284

Improper Access Control