PT-2026-23939 · Unknown · Sourcecodester Client Database Management System

Adarsh007

·

Published

2026-03-08

·

Updated

2026-03-13

·

CVE-2026-3734

CVSS v2.0

7.5

High

VectorAV:N/AC:L/Au:N/C:P/I:P/A:P
Name of the Vulnerable Software and Affected Versions SourceCodester Client Database Management System version 1.0
Description A flaw exists in SourceCodester Client Database Management System that allows improper authorization. The issue is related to the manipulation of the manager id argument in the /fetch manager details.php file. This manipulation occurs within an unknown function. The attack can be initiated remotely. The exploit has been published.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Exploit

Incorrect Privilege Assignment

Improper Authorization

Weakness Enumeration

Related Identifiers

CVE-2026-3734

Affected Products

Sourcecodester Client Database Management System