PT-2026-35717 · Sourcecodester · Pharmacy Sales/Inventory System

Zulu

·

Published

2026-04-28

·

Updated

2026-04-28

·

CVE-2026-7269

CVSS v3.1

2.4

Low

AV:N/AC:L/PR:H/UI:R/S:U/C:N/I:L/A:N
A vulnerability was found in SourceCodester Pharmacy Sales and Inventory System 1.0. Affected is an unknown function of the file /index.php?page=product. Performing a manipulation of the argument ID results in cross site scripting. It is possible to initiate the attack remotely. The exploit has been made public and could be used.

Exploit

Fix

XSS

Code Injection

Weakness Enumeration

Related Identifiers

CVE-2026-7269

Affected Products

Pharmacy Sales/Inventory System