VYPR
Medium severity6.3NVD Advisory· Published Jun 5, 2026

CVE-2026-10876

CVE-2026-10876

Description

SourceCodester Ship Ferry Ticket Reservation System 1.0 has an improper authorization vulnerability in the admin panel, allowing remote exploitation.

AI Insight

LLM-synthesized narrative grounded in this CVE's description and references.

SourceCodester Ship Ferry Ticket Reservation System 1.0 has an improper authorization vulnerability in the admin panel, allowing remote exploitation.

Vulnerability

A weakness exists in SourceCodester Ship Ferry Ticket Reservation System version 1.0, specifically within an unknown function in the /admin/ file. This vulnerability stems from improper authorization due to manipulation of the page argument.

Exploitation

Remote exploitation is possible by manipulating the page argument in the /admin/ path. The exploit has been made publicly available, indicating that attackers can leverage this to compromise the system.

Impact

Successful exploitation allows an attacker to bypass authorization controls, potentially leading to unauthorized access or modification of administrative functions within the system. The exact scope of compromise is not detailed in the available references.

Mitigation

No specific mitigation or patched version information is available in the provided references. The vulnerability is present in version 1.0. Further information may be available on the vendor's website [1].

AI Insight generated on Jun 5, 2026. Synthesized from this CVE's description and the cited reference URLs; citations are validated against the source bundle.

Affected products

1

Patches

0

No patches discovered yet.

Vulnerability mechanics

No source-code context for this CVE — mechanics is only generated when we can read the actual fix diff. Without that, the four sections (root cause, attack vector, affected code, fix) would be speculation rather than analysis.

References

6

News mentions

0

No linked articles in our index yet.