CVE-2026-82615 | itsourcecode Online Medicine Delivery System 1.0 Password Recovery Interface /passwordrecover.php Customer::find_phone phonenumber sql injection
A vulnerability was found in itsourcecode Online Medicine Delivery System 1.0. It has been classified as critical. This issue affects the function Customer::find_phone of the file /passwordrecover.php of the component Password Recovery Interface. The manipulation of the argument phonenumber leads to sql injection.
This vulnerability is referenced as CVE-2026-82615. Remote exploitation of the attack is possible. Furthermore, an exploit is available.VulDB Recent EntriesRead More