Medium severity4.7NVD Advisory· Published Mar 22, 2026· Updated Apr 29, 2026
CVE-2026-4550
CVE-2026-4550
Description
A vulnerability has been found in code-projects Simple Gym Management System up to 1.0. This affects an unknown part of the file /gym/func.php. Such manipulation of the argument Trainer_id/fname leads to sql injection. The attack can be executed remotely. The exploit has been disclosed to the public and may be used.
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
7- code-projects.orgnvd
- github.com/ahmadmarz10-hub/CVEsMarz/blob/main/Time-Based%20Blind%20SQL%20Injection%20in%20%20Simple%20Gym%20Management%20System%20in%20PHP%20Product.mdnvd
- github.com/ahmadmarz10-hub/CVEsMarz/blob/main/Time-Based%20Blind%20SQL%20Injection%20in%20Simple%20Gym%20Management%20System%20in%20PHP.mdnvd
- vuldb.comnvd
- vuldb.comnvd
- vuldb.comnvd
- vuldb.comnvd
News mentions
0No linked articles in our index yet.