Metrics
Affected Vendors & Products
Mon, 12 Jan 2026 16:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Mon, 12 Jan 2026 14:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Code-projects
Code-projects online Music Site |
|
| Vendors & Products |
Code-projects
Code-projects online Music Site |
Mon, 12 Jan 2026 00:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | A security flaw has been discovered in code-projects Online Music Site 1.0. The impacted element is an unknown function of the file /Administrator/PHP/AdminUpdateUser.php. The manipulation of the argument ID results in sql injection. The attack can be executed remotely. The exploit has been released to the public and may be used for attacks. | |
| Title | code-projects Online Music Site AdminUpdateUser.php sql injection | |
| Weaknesses | CWE-74 CWE-89 |
|
| References |
| |
| Metrics |
cvssV2_0
|
Status: PUBLISHED
Assigner: VulDB
Published: 2026-01-12T00:02:06.128Z
Updated: 2026-01-12T15:58:49.390Z
Reserved: 2026-01-11T09:11:00.474Z
Link: CVE-2026-0852
Updated: 2026-01-12T15:55:10.585Z
Status : Received
Published: 2026-01-12T01:15:49.950
Modified: 2026-01-12T01:15:49.950
Link: CVE-2026-0852
No data.