PT-2026-29733 · Sourcecodester · Mayuri K Best Courier Management System

Zyyyy

·

Published

2026-04-02

·

Updated

2026-04-02

·

CVE-2026-5330

CVSS v3.1

6.5

Medium

VectorAV:N/AC:L/PR:N/UI:N/S:U/C:N/I:L/A:L
Name of the Vulnerable Software and Affected Versions SourceCodester/mayuri k Best Courier Management System version 1.0
Description A flaw exists in the User Delete Handler component of SourceCodester/mayuri k Best Courier Management System 1.0. Manipulation of the ID argument in the '/ajax.php?action=delete user' endpoint can lead to improper access controls. This issue can be exploited remotely. The exploit has been made public.
Recommendations Update to a newer version that contains a fix for this vulnerability.

Exploit

Fix

Incorrect Privilege Assignment

Improper Access Control

Weakness Enumeration

Related Identifiers

CVE-2026-5330

Affected Products

Mayuri K Best Courier Management System