A vulnerability was found in code-projects Online Music Site 1.0. It has been declared as critical. Affected by this vulnerability is an unknown functionality of the file /login.php. Such manipulation of the argument username/password leads to sql injection.
This vulnerability is listed as CVE-2026-0605. The attack may be performed from remote. In addition, an exploit is available.