MEDIUMVulnerability

CVE-2026-82696

A weakness has been identified in itsourcecode Sales and Inventory System 1.0. The affected element is an unknown function of the file /pages/inv_searchfrm.php. This manipulation of the argument ID causes sql injection. The attack may be initiated remotely. The exploit has been made available to the public and could be used for attacks.

Properties

severity
MEDIUM
score
6.3
epss_score
0.002
cve_id
CVE-2026-82696
vector
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:L
published_at
2026-08-31T13:18:30.140
last_modified
2026-09-02T14:17:15.443
epss_percentile
0.09907

Related Entities (4)

ENRICHED_BY (1)

[Source]FIRST EPSS

DESCRIBED_BY (1)

[Source]NVD

HAS_WEAKNESS (2)

[Weakness]Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')
[Weakness]Improper Neutralization of Special Elements in Output Used by a Downstream Component ('Injection')

Explore deeper with Ninja Signal's threat intelligence graph

CVE-2026-82696 — Ninja Signal Threat Intelligence | Ninja Signal