CVE-2026-105170: fallo de gravedad media en kishor-23 food-waste-management-system
kishor-23 food-waste-management-system Admin Signup signup.php missing authentication
Publicada el · Actualizada el
33Vexday Risk Score
Sin señal de explotación. Ella tiene prueba de concepto pública.
ssvc Attendcvss 6.9epss 0.4%
probabilidad de explotación
0.4%top 68% de las CVE
explotación observada
noninguna fuente lo reporta
1 exploit(s) público(s)
A weakness has been identified in kishor-23 food-waste-management-system 411989e3ecb82895e53dca7865f72145f03d7d93/b3a70b2c492dc9904de5be1ad9389bd79b87f82c. Affected is an unknown function of the file admin/signup.php of the component Admin Signup. This manipulation of the argument sign causes missing authentication. The attack can be initiated remotely. The exploit has been made available to the public and could be used for attacks. Continious delivery with rolling releases is used by this product. Therefore, no version details of affected nor updated releases are available. The project was informed of the problem early through an issue report but has not responded yet.
CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:L/VI:L/VA:L/SC:N/SI:N/SA:N/E:P
Productos afectados
kishor-23 · food-waste-management-systemPoCs públicas encontradas — 1
cve_referencegithub.com/kishor-23/food-waste-management-system/issues/10no verificado⚠ Recursos públicos, para evaluar la exposición de sistemas que controlas o estás autorizado a probar. Prueba solo con autorización.
CVEs relacionadas — kishor-23 food-waste-management-system
En el mismo producto, de las más peligrosas a las menos.
CVE-2026-105167MEDIUMkishor-23 food-waste-management-system donate.php sql injectionEPSS 0.3%CVE-2026-105166MEDIUMkishor-23 food-waste-management-system Food Donation Form fooddonateform.php insert sql injectionEPSS 0.3%CVE-2026-105232MEDIUMkishor-23 food-waste-management-system Registration deliverysignup.php sql injectionEPSS 0.3%CVE-2026-105231MEDIUMkishor-23 food-waste-management-system Admin Registration signup.php sql injectionEPSS 0.3%CVE-2026-105230MEDIUMkishor-23 food-waste-management-system deliverymyord.php sql injectionEPSS 0.3%CVE-2026-105229MEDIUMkishor-23 food-waste-management-system User Registration Endpoint signup.php sql injectionEPSS 0.3%