A vulnerability, which was classified as problematic, has been found in SourceCodester Inventory System 1.0. Affected by this issue is some unknown functionality of the file header.php. This manipulation causes cross site scripting.
The identification of this vulnerability is CVE-2026-11520. It is possible to initiate the attack remotely. Furthermore, there is an exploit available.
Multiple parameters might be affected.
A vulnerability classified as critical was found in SourceCodester Inventory System 1.0. Affected by this vulnerability is an unknown functionality of the file /Product_Inventory/api/users_handler.php of the component Account Creation Handler. The manipulation of the argument ROLE results in improper authorization.
This vulnerability was named CVE-2026-11519. The attack may be performed from remote. In addition, an exploit is available.
A vulnerability classified as problematic has been found in SourceCodester Inventory System 1.0. Affected is an unknown function of the file /users.php of the component User Management Page. The manipulation of the argument fullname/username leads to cross site scripting.
This vulnerability is uniquely identified as CVE-2026-11518. The attack is possible to be carried out remotely. Moreover, an exploit is present.
A vulnerability described as critical has been identified in UTT HiPER 2610G up to 3.0.0-171107. This impacts the function strcpy of the file /goform/formConfigDnsFilterGlobal. Executing a manipulation of the argument GroupName can lead to buffer overflow.
This vulnerability is handled as CVE-2026-11517. The attack can be executed remotely. Additionally, an exploit exists.
A vulnerability marked as critical has been reported in UTT HiPER 2610G up to 3.0.0-171107. This affects the function strcpy of the file /goform/formNatStaticMap. Performing a manipulation of the argument NatBinds results in buffer overflow.
This vulnerability is known as CVE-2026-11516. Access to the local network is required for this attack. Furthermore, an exploit is available.
A vulnerability labeled as critical has been found in SourceCodester Barangay Resident Profiling and Information Management System 1.0. The impacted element is an unknown function of the file passsword_reset.php of the component Password Reset Handler. Such manipulation of the argument new_password with the input password123 leads to use of hard-coded password.
This vulnerability is traded as CVE-2026-11515. The attack may be launched remotely. Furthermore, there is an exploit available.
A vulnerability identified as critical has been detected in itsourcecode Hospital Management System 1.0. The affected element is an unknown function of the file /addpatient.php. This manipulation of the argument admissiontme causes sql injection.
This vulnerability appears as CVE-2026-11514. The attack may be initiated remotely. In addition, an exploit is available.
A vulnerability categorized as critical has been discovered in itsourcecode Hospital Management System 1.0. Impacted is an unknown function of the file /adminaccount.php. The manipulation of the argument Date results in sql injection.
This vulnerability is reported as CVE-2026-11513. The attack can be launched remotely. Moreover, an exploit is present.
A vulnerability was found in itsourcecode Hospital Management System 1.0. It has been rated as problematic. This issue affects some unknown processing of the file /billing.php. The manipulation of the argument patientid leads to cross site scripting.
This vulnerability is documented as CVE-2026-11512. The attack can be initiated remotely. Additionally, an exploit exists.