Description
A vulnerability was identified in code-projects Intern Membership Management System 1.0. Affected by this vulnerability is an unknown functionality of the file /intern/admin/add_admin.php. The manipulation of the argument Username leads to sql injection. The attack is possible to be carried out remotely. The exploit is publicly available and might be used.
References
Product
https://vuldb.com/?ctiid.339978
Permissions RequiredVDB Entry
Third Party AdvisoryVDB Entry
https://vuldb.com/?submit.733002
Third Party AdvisoryVDB Entry
CVSS impact metrics
CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:L/I:L/A:L
4.7 · Medium
Information
Source identifier
Vulnerability status
Analyzed
Published
2026-01-08T08:15:45.450Z
1 week agoLast modified
2026-01-15T17:27:06.413Z
3 hours ago