VYPR
Unrated severityNVD Advisory· Published Jul 5, 2026· Updated Jul 6, 2026

code-projects Internship Management System Password Change Endpoint change_password.php sql injection

CVE-2026-14701

Description

A vulnerability was detected in code-projects Internship Management System 1.0. This affects an unknown function of the file employer/details/change_password.php of the component Password Change Endpoint. The manipulation of the argument Current results in sql injection. The attack can be executed remotely. The exploit is now public and may be used.

Patches

Vulnerability mechanics

References

6

News mentions

0

No linked articles in our index yet.