code-projects Matrimonial System Regular Search search.php sql injection
33Vexday Risk Score
No sign of exploitation. It has a public proof of concept.
ssvc Attendcvss 6.9epss 0.5%
exploitation probability
0.5%top 60% of all CVEs
observed exploitation
nono source reports it
1 public exploit(s)
A vulnerability was determined in code-projects Matrimonial System 1.0. This affects an unknown part of the file /search.php of the component Regular Search. This manipulation of the argument sex/mothertongue/maritialstatus/country/state/religion/agemin/agemax causes sql injection. The attack can be initiated remotely. The exploit has been publicly disclosed and may be utilized.
CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:L/VI:L/VA:L/SC:N/SI:N/SA:N/E:P
Affected products
code-projects · Matrimonial Systempublic PoCs found — 1
cve_referencegithub.com/KaranParelkar/Matrimonial_system_search_sqli/blob/main/sqli_mothertongue_parameter/Readme.mdunverified⚠ Public resources, to assess the exposure of systems you control or are authorized to test. Test only with authorization.
References
https://code-projects.org/https://github.com/KaranParelkar/Matrimonial_system_search_sqli/blob/main/sqli%20sex%20parameter/Readme.mdhttps://github.com/KaranParelkar/Matrimonial_system_search_sqli/blob/main/sqli_mothertongue_parameter/Readme.mdhttps://vuldb.com/cve/CVE-2026-92366https://vuldb.com/submit/935075https://vuldb.com/submit/935112https://vuldb.com/submit/935144https://vuldb.com/submit/935583https://vuldb.com/submit/935715https://vuldb.com/submit/935749https://vuldb.com/submit/935795https://vuldb.com/submit/935924