NONE · 0

CVE-2026-76176

SQL injection vulnerability in the endpoint /ocsreports/index.php?function=admin_double due to improper processing of the values in the ID field included in the selected_grp_dupli[] parameter. An auth...

Vulnerability Description

SQL injection vulnerability in the endpoint /ocsreports/index.php?function=admin_double due to improper processing of the values in the ID field included in the selected_grp_dupli[] parameter. An authenticated user with operator privileges can manipulate these values to alter the SQL queries executed by the application and retrieve information stored in the database.

Related Weaknesses (CWE)

References

FAQ

What is CVE-2026-76176?

CVE-2026-76176 is a documented vulnerability. SQL injection vulnerability in the endpoint /ocsreports/index.php?function=admin_double due to improper processing of the values in the ID field included in the selected_grp_dupli[] parameter. An auth...

How severe is CVE-2026-76176?

CVSS scoring is not yet available for CVE-2026-76176. Check NVD for updates.

Is there a patch for CVE-2026-76176?

Check the references section above for vendor advisories and patch information. Review vendor security bulletins for remediation guidance.