CyberRota Analysis
AI-GeneratedThe Online Medicine Delivery System 1.0 is vulnerable to SQL injection through the Product Search Interface, specifically in the loadResultList function of the /index.php?q=product endpoint. This vulnerability allows remote attackers to manipulate search arguments, potentially leading to unauthorized access to sensitive data. Organizations utilizing this system should prioritize immediate remediation to mitigate the risk of exploitation.
Public Exploit Signal
A public exploit, PoC, GitHub repository or Metasploit reference was detected for this CVE.
Note: these links are listed for security research and verification purposes only.
Original NVD Description
A vulnerability was detected in itsourcecode Online Medicine Delivery System 1.0. This affects the function loadResultList of the file /index.php?q=product of the component Product Search Interface. Performing a manipulation of the argument Search results in sql injection. The attack may be initiated remotely. The exploit is now public and may be used.