CVE-2026-26885

Sourcecodester Online Men's Salon Management System v1.0 is vulnerable to SQL Injection in /classes/Master.php?f=delete_service.
Configurations

Configuration 1 (hide)

cpe:2.3:a:oretnom23:simple_online_men\'s_salon_management_system:1.0:*:*:*:*:*:*:*

History

04 Mar 2026, 14:04

Type Values Removed Values Added
First Time Oretnom23 simple Online Men\'s Salon Management System
Oretnom23
CPE cpe:2.3:a:oretnom23:simple_online_men\'s_salon_management_system:1.0:*:*:*:*:*:*:*
References () https://github.com/shininadd/bug_report/blob/main/Sourcecodester/simple-online-mens-salon-management-system/SQL-2.md - () https://github.com/shininadd/bug_report/blob/main/Sourcecodester/simple-online-mens-salon-management-system/SQL-2.md - Exploit, Third Party Advisory

03 Mar 2026, 21:16

Type Values Removed Values Added
CVSS v2 : unknown
v3 : unknown
v2 : unknown
v3 : 2.7
CWE CWE-89

03 Mar 2026, 20:16

Type Values Removed Values Added
Summary (en) Sourcecodester Simple Online Men's Salon Management System v1.0 is vulnerable to SQL Injection in /classes/Master.php?f=delete_service. (en) Sourcecodester Online Men's Salon Management System v1.0 is vulnerable to SQL Injection in /classes/Master.php?f=delete_service.

03 Mar 2026, 17:16

Type Values Removed Values Added
New CVE

Information

Published : 2026-03-03 17:16

Updated : 2026-03-04 14:04


NVD link : CVE-2026-26885

Mitre link : CVE-2026-26885

CVE.ORG link : CVE-2026-26885


JSON object : View

Products Affected

oretnom23

  • simple_online_men\'s_salon_management_system
CWE
CWE-89

Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')