Contact Zero

CVE-2026-92406

A vulnerability was detected in SourceCodester Inventory and Monitoring System 1.0. The impacted element is an unknown f

score 0MEDIUM 5.5

Summary

A vulnerability was detected in SourceCodester Inventory and Monitoring System 1.0. The impacted element is an unknown function of the file /admins/assessments/databank/btn_functions.php?action=add. Performing a manipulation of the argument difficulty_id results in sql injection. Remote exploitation of the attack is possible. The exploit is now public and may be used.

Published 2026-09-16 · first seen here 2026-10-10

Hunt & detect

Threat hunt brief, Sigma rule and Splunk / Sentinel / CrowdStrike queries are not available for this item yet.

References