CVE-2026-76799CWE-425CWE-552

CVE-2026-76799

Medium · published August 20, 2026

CVSS v3.1
5.3
EPSS
0%
Percentile
32.9
In the wild
Unconfirmed
What it is

A weakness has been identified in code-projects Login Registration System 1.0. This affects an unknown function of the file /loginsystem/database/login_registration_system.sql of the component SQL Database Backup Handler. This manipulation causes files or directories accessible. The attack may be initiated remotely. The exploit has been made available to the public and could be used for attacks.

The record
Technical detail
CVSS v3.1
5.3 · MEDIUM
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N
CVSS v4.0
6.9 · CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:L/VI:N/VA:N/SC:N/SI:N/SA:N/E:P
EPSS
0.00396 · 32.9th percentile
Weaknesses
CWE-425 · Direct Request ('Forced Browsing'); CWE-552 · Files or Directories Accessible to External Parties
Published
2026-08-20T06:16Z
References (6)
EPSS history
Timeline
  • 20 AUG 01:15Z
    code-projects Login Registration System SQL Database Backup login_registration_system.sql file access
    cvelistv5