CVE-2026-86235 | itsourcecode Sales and Inventory System 1.0 pos_transac.php?action=add Customer sql injection
A vulnerability classified as critical has been found in itsourcecode Sales and Inventory System 1.0. This vulnerability affects unknown code of the file /pages/pos_transac.php?action=add. This manipulation of the argument Customer causes sql injection.
This vulnerability is handled as CVE-2026-86235. The attack can be initiated remotely. Additionally, an exploit exists.