CVE-2026-14796: Codeastro Apartment Visitor Management System
Medium severity, CVSS 6.3. EPSS: 0.3% chance of exploitation in the next 30 days.
A vulnerability was found in CodeAstro Apartment Visitor Management System 1.0. This affects an unknown part of the file /apartment-visitor/report.php. Performing a manipulation of the argument fromdate results in sql injection. It is possible to initiate the attack remotely. The exploit has been made public and could be used.
Affected products
- Codeastro Apartment Visitor Management System: version 1.0 only
Published 2026-07-06. Last modified 2026-07-06.