PT-2026-31902 · Code Projects · Vehicle Showroom Management System

Tnn2026

·

Published

2026-04-10

·

Updated

2026-04-10

·

CVE-2026-6037

CVSS v2.0

7.5

High

AV:N/AC:L/Au:N/C:P/I:P/A:P
A vulnerability was determined in code-projects Vehicle Showroom Management System 1.0. This affects an unknown function of the file /util/AddVehicleFunction.php. This manipulation of the argument BRANCH ID causes sql injection. The attack is possible to be carried out remotely. The exploit has been publicly disclosed and may be utilized.

Exploit

Fix

SQL injection

Special Elements Injection

Weakness Enumeration

Related Identifiers

CVE-2026-6037

Affected Products

Vehicle Showroom Management System