← Retour à la recherche de CVE

CVE-2026-5985

Simple IT Discussion Forum

Description

A security flaw has been discovered in code-projects Simple IT Discussion Forum 1.0. The affected element is an unknown function of the file /crud.php. The manipulation of the argument user_Id results in sql injection. The attack may be performed from remote. The exploit has been released to the public and may be used for attacks.

CVSS 7.3EPSS 0.254%Risque 0.75
Voir la source
Publication
2026-04-09 23:17:01
Versions concernées
unknown
Type
Package
Vecteur
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:L