CVE-2026-85208 | itsourcecode Online Medicine Delivery System 1.0 Order Management Controller controller.php?action=add doInsert image unrestricted upload

SecurityVulns

A vulnerability has been found in itsourcecode Online Medicine Delivery System 1.0 and classified as critical. The affected element is the function doInsert of the file /rider/orders/controller.php?action=add of the component Order Management Controller. Performing a manipulation of the argument image results in unrestricted upload.

This vulnerability is known as CVE-2026-85208. Remote exploitation of the attack is possible. Furthermore, an exploit is available.VulDB Recent EntriesRead More