A vulnerability was found in itsourcecode sanitize or validate this input 1.0. It has been classified as critical. This impacts an unknown function of the file /borrowedequip.php of the component Parameter Handler. This manipulation of the argument emp_id causes sql injection.

This vulnerability is tracked as CVE-2026-5681. The attack is possible to be carried out remotely. Moreover, an exploit is present.