CVE-2026-105178Medium· 4.7▾ SunlitA security flaw has been discovered in SourceCodester Drug Recommendation System 1.0. The impacted element is the function mysqli_real_escape_string of the file /Admin/add_symptom.php of the component Symptom Creation. Performing a manip…
▾ Sunlit zone — Low / medium · no exploitation signal
impact 25.9 · likelihood 0 · exploitation 0
Need a working PoC? Pro members can cast a request and our team develops one — it lands right here.
A security flaw has been discovered in SourceCodester Drug Recommendation System 1.0. The impacted element is the function mysqli_real_escape_string of the file /Admin/add_symptom.php of the component Symptom Creation. Performing a manipulation of the argument txtname results in sql injection. It is possible to initiate the attack remotely. The exploit has been released to the public and may be used for attacks.
drug_recommendation_system 1.0Refer to the linked advisories for vendor-supplied fixes and affected version ranges.
Connected by shared product, vendor, weakness, or advisory.
CVE-2026-105177Medium· 4.7SourceCodester Drug Recommendation System Drug Creation add_drug.php sql injection
CVE-2026-105176Medium· 4.7SourceCodester Drug Recommendation System edit_class.php sql injection
CVE-2026-105175High· 7.3A vulnerability was found in SourceCodester Drug Recommendation System 1.0
CVE-2026-94015High· 7.3A vulnerability was identified in SourceCodester Drug Recommendation System 1.0
CVE-2026-93997High· 7.3A weakness has been identified in SourceCodester Drug Recommendation System 1.0
CVE-2026-104123High· 7.3A vulnerability was detected in SourceCodester Online Reviewer Management System 1.0