A vulnerability, which was classified as critical, has been found in code-projects Online Product Reservation System 1.0. This affects an unknown function of the file /handgunner-administrator/register_code.php of the component User Registration Handler. Performing a manipulation of the argument fname/lname/address/city/province/country/zip/tel_no/email/username results in sql injection.
This vulnerability is identified as CVE-2026-0592. The attack can be initiated remotely. Additionally, an exploit exists.