CVE-2026-76799CWE-425CWE-552
CVE-2026-76799
Medium · published August 20, 2026
What it is
A weakness has been identified in code-projects Login Registration System 1.0. This affects an unknown function of the file /loginsystem/database/login_registration_system.sql of the component SQL Database Backup Handler. This manipulation causes files or directories accessible. The attack may be initiated remotely. The exploit has been made available to the public and could be used for attacks.
The record
Technical detail
- CVSS v3.1
- 5.3 · MEDIUM
- Vector
- CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N
- CVSS v4.0
- 6.9 · CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:L/VI:N/VA:N/SC:N/SI:N/SA:N/E:P
- EPSS
- 0.00396 · 32.9th percentile
- Weaknesses
- CWE-425 · Direct Request ('Forced Browsing'); CWE-552 · Files or Directories Accessible to External Parties
- Published
- 2026-08-20T06:16Z
References (6)
EPSS history
Timeline