CVE-2026-30576

A Business Logic vulnerability exists in SourceCodester Pharmacy Product Management System 1.0 in the add-stock.php file. The application fails to validate the "txtprice" and "txttotalcost" parameters during stock entry, allowing negative financial values to be submitted. This leads to corruption of financial records, allowing attackers to manipulate inventory asset values and procurement costs.
Configurations

No configuration.

History

No history.

Information

Published : 2026-03-27 17:16

Updated : 2026-03-30 13:26


NVD link : CVE-2026-30576

Mitre link : CVE-2026-30576

CVE.ORG link : CVE-2026-30576


JSON object : View

Products Affected

No product.

CWE
CWE-20

Improper Input Validation