PT-2026-26560 · Itsourcecode · Online Frozen Foods Ordering System

Onechicken

·

Published

2026-03-20

·

Updated

2026-03-20

·

CVE-2026-4470

CVSS v2.0

5.8

Medium

AV:N/AC:L/Au:M/C:P/I:P/A:P
A security flaw has been discovered in itsourcecode Online Frozen Foods Ordering System 1.0. Affected by this issue is some unknown functionality of the file /admin/admin edit menu.php. Performing a manipulation of the argument product name results in sql injection. It is possible to initiate the attack remotely. The exploit has been released to the public and may be used for attacks.

Exploit

Fix

SQL injection

Special Elements Injection

Weakness Enumeration

Related Identifiers

CVE-2026-4470

Affected Products

Online Frozen Foods Ordering System