A vulnerability was found in itsourcecode Construction Management System 1.0 and classified as critical. This affects an unknown function of the file /borrowedtool.php. Executing a manipulation of the argument code can lead to sql injection.
This vulnerability is registered as CVE-2026-5719. It is possible to launch the attack remotely. Furthermore, an exploit is available.