Online Medicine Delivery System Itsourcecode Online Medicine Delivery System

Don't miss out!

Thousands of developers use stack.watch to stay informed.
Get an email whenever new security vulnerabilities are reported in Itsourcecode Online Medicine Delivery System.

By the Year

In 2026 there have been 11 vulnerabilities in Itsourcecode Online Medicine Delivery System with an average score of 6.4 out of ten.

Year Vulnerabilities Average Score
2026 11 6.45

It may take a day or so for new Online Medicine Delivery System vulnerabilities to show up in the stats or in the list of recent security vulnerabilities. Additionally vulnerabilities may be tagged under a different product or component name.

Recent Itsourcecode Online Medicine Delivery System Security Vulnerabilities

CVE-2026-85208
CVE-2026-85208 6.9 - Medium - September 03, 2026

A security flaw has been discovered in itsourcecode Online Medicine Delivery System 1.0. The affected element is the function doInsert of the file /rider/orders/controller.php?action=add of the component Order Management Controller. Performing a manipulation of the argument image results in unrestricted upload. Remote exploitation of the attack is possible. The exploit has been released to the public and may be used for attacks.

Unrestricted File Upload

CVE-2026-85207
CVE-2026-85207 5.1 - Medium - September 03, 2026

A vulnerability was identified in itsourcecode Online Medicine Delivery System 1.0. Impacted is an unknown function of the file /index.php?q=orderdetails. Such manipulation of the argument location leads to cross site scripting. The attack may be launched remotely. The exploit is publicly available and might be used.

XSS

CVE-2026-85205
CVE-2026-85205 5.3 - Medium - September 03, 2026

A vulnerability was determined in itsourcecode Online Medicine Delivery System 1.0. This issue affects the function addwishlist of the file /customer/controller.php?action=addwish of the component Wishlist. This manipulation of the argument proid causes sql injection. The attack may be initiated remotely.

SQL Injection

CVE-2026-85187
CVE-2026-85187 6.9 - Medium - September 03, 2026

A security vulnerability has been detected in itsourcecode Online Medicine Delivery System 1.0. Affected by this issue is the function Order::pupdate of the file /rider/orders/controller.php?action=edit&actions=confirm of the component Order Status Update. The manipulation of the argument ID leads to sql injection. It is possible to initiate the attack remotely. The exploit has been disclosed publicly and may be used.

SQL Injection

CVE-2026-85186
CVE-2026-85186 5.3 - Medium - September 03, 2026

A weakness has been identified in itsourcecode Online Medicine Delivery System 1.0. Affected by this vulnerability is the function doupdateimage of the file /customer/controller.php?action=photos of the component Customer Controller. Executing a manipulation of the argument photo can lead to unrestricted upload. The attack may be performed from remote. The exploit has been made available to the public and could be used for attacks.

Unrestricted File Upload

CVE-2026-82615
CVE-2026-82615 6.9 - Medium - August 31, 2026

A vulnerability has been found in itsourcecode Online Medicine Delivery System 1.0. This issue affects the function Customer::find_phone of the file /passwordrecover.php of the component Password Recovery Interface. The manipulation of the argument phonenumber leads to sql injection. Remote exploitation of the attack is possible. The exploit has been disclosed to the public and may be used.

SQL Injection

CVE-2026-82614
CVE-2026-82614 6.9 - Medium - August 31, 2026

A flaw has been found in itsourcecode Online Medicine Delivery System 1.0. This vulnerability affects the function loadResultList of the file /index.php?q=product of the component Product Category Filter Interface. Executing a manipulation of the argument Category can lead to sql injection. The attack may be launched remotely. The exploit has been published and may be used.

SQL Injection

CVE-2026-82613
CVE-2026-82613 6.9 - Medium - August 31, 2026

A vulnerability was detected in itsourcecode Online Medicine Delivery System 1.0. This affects the function loadResultList of the file /index.php?q=product of the component Product Search Interface. Performing a manipulation of the argument Search results in sql injection. The attack may be initiated remotely. The exploit is now public and may be used.

SQL Injection

CVE-2026-82612
CVE-2026-82612 6.9 - Medium - August 31, 2026

A security vulnerability has been detected in itsourcecode Online Medicine Delivery System 1.0. Affected by this issue is the function loadResultList of the file /index.php?q=single-item of the component Product Detail Page. Such manipulation of the argument ID leads to sql injection. The attack can be launched remotely. The exploit has been disclosed publicly and may be used.

SQL Injection

CVE-2026-82611
CVE-2026-82611 6.9 - Medium - August 31, 2026

A weakness has been identified in itsourcecode Online Medicine Delivery System 1.0. Affected by this vulnerability is the function Customer::cusAuthentication of the file /login.php of the component Customer Login Interface. This manipulation of the argument U_USERNAME causes sql injection. The attack can be initiated remotely. The exploit has been made available to the public and could be used for attacks.

SQL Injection

CVE-2026-82610
CVE-2026-82610 6.9 - Medium - August 31, 2026

A security flaw has been discovered in itsourcecode Online Medicine Delivery System 1.0. Affected is the function Employee::employeeAuthentication of the file /rider/login.php of the component Login Interface. The manipulation of the argument emp_email results in sql injection. It is possible to launch the attack remotely. The exploit has been released to the public and may be used for attacks.

SQL Injection

Stay on top of Security Vulnerabilities

Want an email whenever new vulnerabilities are published for Itsourcecode Online Medicine Delivery System or by Itsourcecode? Click the Watch button to subscribe.

subscribe