{"id":"CVE-2026-105178","title":"SourceCodester Drug Recommendation System Symptom Creation add_symptom.php mysqli_real_escape_string sql injection","summary":"A security flaw has been discovered in SourceCodester Drug Recommendation System 1.0. The impacted element is the function mysqli_real_escape_string of the file /Admin/add_symptom.php of the component Symptom Creation. Performing a manip…","severity":"medium","cvss":4.7,"cvssVector":"CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:L/I:L/A:L/E:P/RL:X/RC:R","cvssSource":"cna","cwe":["CWE-89","CWE-74"],"vendor":"SourceCodester","product":"Drug Recommendation System","affected":["drug_recommendation_system 1.0"],"published":"2026-10-05","updated":"2026-10-05","sourceUpdated":"2026-10-05T01:30:24.602Z","source":"CVEORG","sourceUrl":"https://www.cve.org/CVERecord?id=CVE-2026-105178","references":[{"url":"https://vuldb.com/vuln/413410","label":"VDB-413410 | SourceCodester Drug Recommendation System Symptom Creation add_symptom.php mysqli_real_escape_string sql injection"},{"url":"https://vuldb.com/vuln/413410/cti","label":"VDB-413410 | CTI Indicators (IOB, IOC, TTP, IOA)"},{"url":"https://vuldb.com/cve/CVE-2026-105178","label":"CVE-2026-105178 | CVE Analysis and Report"},{"url":"https://vuldb.com/submit/970934","label":"Submit #970934 | SourceCodester Drug Recommendation System 1.0 SQL Injection"},{"url":"https://www.sourcecodester.com/"}],"tags":["cve.org"],"ingestedAt":"2026-10-05T02:10:36.197Z","slug":"CVE-2026-105178","body":"## Overview\n\nA security flaw has been discovered in SourceCodester Drug Recommendation System 1.0. The impacted element is the function mysqli_real_escape_string of the file /Admin/add_symptom.php of the component Symptom Creation. Performing a manipulation of the argument txtname results in sql injection. It is possible to initiate the attack remotely. The exploit has been released to the public and may be used for attacks.\n\n## Affected\n\n- `drug_recommendation_system 1.0`\n\n## Remediation\n\nRefer to the linked advisories for vendor-supplied fixes and affected version ranges.","depth":"sunlit","depthScore":26,"depthScoreParts":{"impact":25.9,"likelihood":0,"exploitation":0,"ransomware":0},"changes":[]}