PT-2026-29733 · Sourcecodester+1 · Best Courier Management System

Zyyyy

·

Published

2026-04-02

·

Updated

2026-04-02

·

CVE-2026-5330

CVSS v2.0

6.4

Medium

AV:N/AC:L/Au:N/C:N/I:P/A:P
A vulnerability was found in SourceCodester/mayuri k Best Courier Management System 1.0. Affected by this issue is some unknown functionality of the file /ajax.php?action=delete user of the component User Delete Handler. Performing a manipulation of the argument ID results in improper access controls. The attack may be initiated remotely. The exploit has been made public and could be used.

Exploit

Fix

Improper Access Control

Incorrect Privilege Assignment

Weakness Enumeration

Related Identifiers

CVE-2026-5330

Affected Products

Best Courier Management System