Unrated severityNVD Advisory· Published Jul 4, 2026· Updated Jul 6, 2026
code-projects Online Voting System Login authentication.php test_input sql injection
CVE-2026-14648
Description
A security vulnerability has been detected in code-projects Online Voting System up to 0.x/1.0. This issue affects the function test_input of the file /authentication.php of the component Login. Such manipulation of the argument adminUserName/adminPassword leads to sql injection. It is possible to launch the attack remotely. The exploit has been disclosed publicly and may be used.
Affected products
1- Range: <=0.x/1.0
Patches
Vulnerability mechanics
References
6- gist.github.com/c4ttr4ck/ed954dc2e3da968eb460a18385146f4cmitreexploit
- vuldb.com/cve/CVE-2026-14648mitrethird-party-advisory
- vuldb.com/submit/846328mitrethird-party-advisory
- code-projects.orgmitreproduct
- vuldb.com/vuln/376161mitrevdb-entrytechnical-description
- vuldb.com/vuln/376161/ctimitresignaturepermissions-required
News mentions
0No linked articles in our index yet.