Monitor vulnerabilities like this one. Sign up free to get alerted when software you use is affected.
6.9

SourceCodester Client Database Management System: Unauthorized User Update Risk

CVE-2026-3764
Summary

An unknown function in the SourceCodester Client Database Management System version 1.0 allows attackers to access user information without permission. This could lead to sensitive data being altered or stolen. Update to the latest version to prevent unauthorized access.

What to do

No fix is available yet. Check with your software vendor for updates.

Affected software
VendorProductAffected versionsFix available
lerouxyxchire client_database_management_system 1.0 –
Original title
A vulnerability was determined in SourceCodester Client Database Management System 1.0. The impacted element is an unknown function of the file /superadmin_user_update.php. This manipulation causes...
Original description
A vulnerability was determined in SourceCodester Client Database Management System 1.0. The impacted element is an unknown function of the file /superadmin_user_update.php. This manipulation causes improper authorization. The attack can be initiated remotely. The exploit has been publicly disclosed and may be utilized.
nvd CVSS2.0 7.5
nvd CVSS3.1 7.3
nvd CVSS4.0 6.9
Vulnerability type
CWE-266 Incorrect Privilege Assignment
CWE-285 Improper Authorization
Published: 8 Mar 2026 · Updated: 13 Mar 2026 · First seen: 8 Mar 2026