PT-2026-31903 · Code Projects · Vehicle Showroom Management System

125Hzb

·

Published

2026-04-10

·

Updated

2026-04-10

·

CVE-2026-6038

CVSS v2.0

7.5

High

AV:N/AC:L/Au:N/C:P/I:P/A:P
A vulnerability was identified in code-projects Vehicle Showroom Management System 1.0. This impacts an unknown function of the file /util/RegisterCustomerFunction.php. Such manipulation of the argument BRANCH ID leads to sql injection. The attack may be performed from remote. The exploit is publicly available and might be used.

Exploit

Fix

SQL injection

Special Elements Injection

Weakness Enumeration

Related Identifiers

CVE-2026-6038

Affected Products

Vehicle Showroom Management System