PT-2026-32284 · Code Projects · Vehicle Showroom Management System

Wfcht-Sy

·

Published

2026-04-13

·

Updated

2026-04-13

·

CVE-2026-6166

CVSS v2.0

7.5

High

AV:N/AC:L/Au:N/C:P/I:P/A:P
A security vulnerability has been detected in code-projects Vehicle Showroom Management System 1.0. This issue affects some unknown processing of the file /util/UpdateVehicleFunction.php. The manipulation of the argument VEHICLE ID leads to sql injection. The attack may be initiated remotely. The exploit has been disclosed publicly and may be used.

Exploit

Fix

Special Elements Injection

SQL injection

Weakness Enumeration

Related Identifiers

CVE-2026-6166

Affected Products

Vehicle Showroom Management System