Analysis and contextual insights are available on OpenCVE Cloud.
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
No advisories yet.
Mon, 31 Aug 2026 04:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | A vulnerability has been found in itsourcecode Online Medicine Delivery System 1.0. This issue affects the function Customer::find_phone of the file /passwordrecover.php of the component Password Recovery Interface. The manipulation of the argument phonenumber leads to sql injection. Remote exploitation of the attack is possible. The exploit has been disclosed to the public and may be used. | |
| Title | itsourcecode Online Medicine Delivery System Password Recovery passwordrecover.php find_phone sql injection | |
| First Time appeared |
Itsourcecode
Itsourcecode online Medicine Delivery System |
|
| Weaknesses | CWE-74 CWE-89 |
|
| CPEs | cpe:2.3:a:itsourcecode:online_medicine_delivery_system:*:*:*:*:*:*:*:* | |
| Vendors & Products |
Itsourcecode
Itsourcecode online Medicine Delivery System |
|
| References |
| |
| Metrics |
cvssV2_0
|
Status: PUBLISHED
Assigner: VulDB
Published:
Updated: 2026-08-31T04:30:10.673Z
Reserved: 2026-08-30T07:43:51.960Z
Link: CVE-2026-82615
No data.
Status : Received
Published: 2026-08-31T05:17:06.217
Modified: 2026-08-31T05:17:06.217
Link: CVE-2026-82615
No data.
OpenCVE Enrichment
Updated: 2026-08-31T06:30:05Z