


Perceptive Security
SOC/SIEM Consultancy

A vulnerability has been found in code-projects Real State Services 1.0. This impacts an unknown function of the file /loginuser.php of the component Login. The…
Published:
31 mei 2026 om 22:00:00
Alert date:
1 juni 2026 om 16:08:13
Source:
nvd.nist.gov
Web Technologies
A SQL injection vulnerability has been discovered in code-projects Real State Services version 1.0. The vulnerability affects the /loginuser.php file in the Login component, specifically through manipulation of the Username argument. The attack can be executed remotely and the exploit has been publicly disclosed, making it available for potential misuse. This represents a significant security risk as SQL injection attacks can lead to unauthorized database access and data compromise.
Technical details
Mitigation steps:
Affected products:
Real State Services 1.0
Related links:
https://nvd.nist.gov/vuln/detail/CVE-2026-10262
https://code-projects.org/
https://github.com/6Justdododo6/CVE/issues/20
https://vuldb.com/cve/CVE-2026-10262
https://vuldb.com/submit/824877
https://vuldb.com/vuln/367542
https://vuldb.com/vuln/367542/cti
Related CVE's:
Related threat actors:
IOC's:
This article was created with the assistance of AI technology by Perceptive.
