CyberRota Analysis
AI-GeneratedA SQL injection vulnerability exists in the Customer Login Interface of the itsourcecode Online Medicine Delivery System 1.0, specifically within the cusAuthentication function in the /login.php file. This weakness allows remote attackers to manipulate the U_USERNAME argument, potentially leading to unauthorized access to sensitive data. Organizations using this system should prioritize patching this vulnerability to mitigate the risk of exploitation.
Public Exploit Signal
A public exploit, PoC, GitHub repository or Metasploit reference was detected for this CVE.
Note: these links are listed for security research and verification purposes only.
Original NVD Description
A weakness has been identified in itsourcecode Online Medicine Delivery System 1.0. Affected by this vulnerability is the function Customer::cusAuthentication of the file /login.php of the component Customer Login Interface. This manipulation of the argument U_USERNAME causes sql injection. The attack can be initiated remotely. The exploit has been made available to the public and could be used for attacks.