Security Advisory

CVE-2026-86171

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2026-09-06 06:15:09
Last updated 2026-09-08 13:26:41
Assigner VulDB
CVSS score 6.5
State PUBLISHED

Description

A security vulnerability has been detected in DefaultFuction CRM 1.0.0. This affects an unknown function of the file /modules/orders/delete.php. Such manipulation of the argument ID leads to sql injection. The attack may be performed from remote. The exploit has been disclosed publicly and may be used.