CVE-2026-76799
6.9
CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:L/VI:N/VA:N/SC:N/SI:N/SA:N/E:P
Summary
A weakness has been identified in code-projects Login Registration System 1.0. This affects an unknown function of the file /loginsystem/database/login_registration_system.sql of the component SQL Database Backup Handler. This manipulation causes files or directories accessible. The attack may be initiated remotely. The exploit has been made available to the public and could be used for attacks.
Affected Software
| Vendor | Product | Version Range | Status |
|---|---|---|---|
| code-projects | Login Registration System | 1.0 | affected |
Weaknesses
- CWE-552: Files or Directories Accessible
- CWE-425: Direct Request
ADP Enrichment
CISA ADP Vulnrichment
- SSVC:
- Exploitation: poc
- Automatable: yes
- Technical Impact: partial
References
- https://vuldb.com/vuln/393314
- https://vuldb.com/vuln/393314/cti
- https://vuldb.com/cve/CVE-2026-76799
- https://vuldb.com/submit/880056
- https://raw.githubusercontent.com/anubhavv106/Security-Advisories/refs/heads/main/Login-Registration-System-login_registration_system.sql-Sensitive-Database-Disclosure.md
- https://code-projects.org/
Feedback
Was this page helpful?
Glad to hear it! Please tell us how we can improve.
Sorry to hear that. Please tell us how we can improve.