CVE-2026-5681

Severity CVSS v4.0:
LOW
Type:
CWE-74 Injection
Publication date:
06/04/2026
Last modified:
29/04/2026

Description

A flaw has been found in itsourcecode sanitize or validate this input 1.0. This impacts an unknown function of the file /borrowedequip.php of the component Parameter Handler. This manipulation of the argument emp_id causes sql injection. The attack is possible to be carried out remotely. The exploit has been published and may be used.