Itsourcecode Online Medicine Delivery System
Don't miss out!
Thousands of developers use stack.watch to stay informed.Get an email whenever new security vulnerabilities are reported in Itsourcecode Online Medicine Delivery System.
By the Year
In 2026 there have been 11 vulnerabilities in Itsourcecode Online Medicine Delivery System with an average score of 6.4 out of ten.
| Year | Vulnerabilities | Average Score |
|---|---|---|
| 2026 | 11 | 6.45 |
It may take a day or so for new Online Medicine Delivery System vulnerabilities to show up in the stats or in the list of recent security vulnerabilities. Additionally vulnerabilities may be tagged under a different product or component name.
Recent Itsourcecode Online Medicine Delivery System Security Vulnerabilities
CVE-2026-85208
CVE-2026-85208
6.9 - Medium
- September 03, 2026
A security flaw has been discovered in itsourcecode Online Medicine Delivery System 1.0. The affected element is the function doInsert of the file /rider/orders/controller.php?action=add of the component Order Management Controller. Performing a manipulation of the argument image results in unrestricted upload. Remote exploitation of the attack is possible. The exploit has been released to the public and may be used for attacks.
Unrestricted File Upload
CVE-2026-85207
CVE-2026-85207
5.1 - Medium
- September 03, 2026
A vulnerability was identified in itsourcecode Online Medicine Delivery System 1.0. Impacted is an unknown function of the file /index.php?q=orderdetails. Such manipulation of the argument location leads to cross site scripting. The attack may be launched remotely. The exploit is publicly available and might be used.
XSS
CVE-2026-85205
CVE-2026-85205
5.3 - Medium
- September 03, 2026
A vulnerability was determined in itsourcecode Online Medicine Delivery System 1.0. This issue affects the function addwishlist of the file /customer/controller.php?action=addwish of the component Wishlist. This manipulation of the argument proid causes sql injection. The attack may be initiated remotely.
SQL Injection
CVE-2026-85187
CVE-2026-85187
6.9 - Medium
- September 03, 2026
A security vulnerability has been detected in itsourcecode Online Medicine Delivery System 1.0. Affected by this issue is the function Order::pupdate of the file /rider/orders/controller.php?action=edit&actions=confirm of the component Order Status Update. The manipulation of the argument ID leads to sql injection. It is possible to initiate the attack remotely. The exploit has been disclosed publicly and may be used.
SQL Injection
CVE-2026-85186
CVE-2026-85186
5.3 - Medium
- September 03, 2026
A weakness has been identified in itsourcecode Online Medicine Delivery System 1.0. Affected by this vulnerability is the function doupdateimage of the file /customer/controller.php?action=photos of the component Customer Controller. Executing a manipulation of the argument photo can lead to unrestricted upload. The attack may be performed from remote. The exploit has been made available to the public and could be used for attacks.
Unrestricted File Upload
CVE-2026-82615
CVE-2026-82615
6.9 - Medium
- August 31, 2026
A vulnerability has been found in itsourcecode Online Medicine Delivery System 1.0. This issue affects the function Customer::find_phone of the file /passwordrecover.php of the component Password Recovery Interface. The manipulation of the argument phonenumber leads to sql injection. Remote exploitation of the attack is possible. The exploit has been disclosed to the public and may be used.
SQL Injection
CVE-2026-82614
CVE-2026-82614
6.9 - Medium
- August 31, 2026
A flaw has been found in itsourcecode Online Medicine Delivery System 1.0. This vulnerability affects the function loadResultList of the file /index.php?q=product of the component Product Category Filter Interface. Executing a manipulation of the argument Category can lead to sql injection. The attack may be launched remotely. The exploit has been published and may be used.
SQL Injection
CVE-2026-82613
CVE-2026-82613
6.9 - Medium
- August 31, 2026
A vulnerability was detected in itsourcecode Online Medicine Delivery System 1.0. This affects the function loadResultList of the file /index.php?q=product of the component Product Search Interface. Performing a manipulation of the argument Search results in sql injection. The attack may be initiated remotely. The exploit is now public and may be used.
SQL Injection
CVE-2026-82612
CVE-2026-82612
6.9 - Medium
- August 31, 2026
A security vulnerability has been detected in itsourcecode Online Medicine Delivery System 1.0. Affected by this issue is the function loadResultList of the file /index.php?q=single-item of the component Product Detail Page. Such manipulation of the argument ID leads to sql injection. The attack can be launched remotely. The exploit has been disclosed publicly and may be used.
SQL Injection
CVE-2026-82611
CVE-2026-82611
6.9 - Medium
- August 31, 2026
A weakness has been identified in itsourcecode Online Medicine Delivery System 1.0. Affected by this vulnerability is the function Customer::cusAuthentication of the file /login.php of the component Customer Login Interface. This manipulation of the argument U_USERNAME causes sql injection. The attack can be initiated remotely. The exploit has been made available to the public and could be used for attacks.
SQL Injection
CVE-2026-82610
CVE-2026-82610
6.9 - Medium
- August 31, 2026
A security flaw has been discovered in itsourcecode Online Medicine Delivery System 1.0. Affected is the function Employee::employeeAuthentication of the file /rider/login.php of the component Login Interface. The manipulation of the argument emp_email results in sql injection. It is possible to launch the attack remotely. The exploit has been released to the public and may be used for attacks.
SQL Injection
Stay on top of Security Vulnerabilities
Want an email whenever new vulnerabilities are published for Itsourcecode Online Medicine Delivery System or by Itsourcecode? Click the Watch button to subscribe.