CVE-2026-90525 | itsourcecode Sales and Inventory System 1.0 cust_pos_trans.php firstname sql injection
A vulnerability described as critical has been identified in itsourcecode Sales and Inventory System 1.0. This affects an unknown function of the file /pages/cust_pos_trans.php. Executing a manipulation of the argument firstname can lead to sql injection.
The identification of this vulnerability is CVE-2026-90525. The attack may be launched remotely. Furthermore, there is an exploit available.VulDB Recent EntriesRead More