CVE-2026-7073: itsourcecode Construction Management System execute.php sql injection
A flaw has been found in itsourcecode Construction Management System 1.0. This affects an unknown part of the file /execute.php. This manipulation of the argument code causes sql injection. The attack is possible to be carried out remotely. The exploit has been published and may be used.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2026-7073?
CVE-2026-7073 has been classified as a high severity vulnerability due to the potential for SQL injection attacks.
How do I fix CVE-2026-7073?
To fix CVE-2026-7073, ensure that user inputs are properly sanitized and parameterized queries are implemented in the execute.php file.
What type of vulnerability is CVE-2026-7073?
CVE-2026-7073 is an SQL injection vulnerability that allows attackers to manipulate database queries through user input.
Which software is affected by CVE-2026-7073?
CVE-2026-7073 affects version 1.0 of the itsourcecode Construction Management System.
What is the potential impact of CVE-2026-7073?
The potential impact of CVE-2026-7073 includes unauthorized access to the database, data manipulation, and potential data leakage.