MEDIUM 5.5 NVD
CVE-2026-77020
A vulnerability was identified in CodeAstro Apartment Visitor Management System 1.0. Affected by this vulnerability is an unknown functionality of the file pass
A vulnerability was identified in CodeAstro Apartment Visitor Management System 1.0. Affected by this vulnerability is an unknown functionality of the file password-recovery.php. The manipulation of the argument email leads to sql injection. Remote exploitation of the attack is possible. The exploit is publicly available and might be used.
References
- https://codeastro.com/
- https://github.com/Witiers/CVEs/issues/2
- https://vuldb.com/cve/CVE-2026-77020
- https://vuldb.com/submit/880596
- https://vuldb.com/vuln/393636
This medium severity vulnerability with a CVSS score of 5.5 was published on 2026-08-20 via NVD.
vulnfeed aggregates 11796 vulnerabilities from NVD, CISA KEV,
Ubuntu, Debian, Red Hat, Kubernetes, Exploit-DB, OSS-Security, GitHub and OpenStack — updated every 4 hours.