PT-2026-47008 · Code Projects · Vehicle Management System

·

CVE-2026-11344

·

Published

2026-06-05

·

Updated

2026-06-07

CVSS v2.0

7.5

High

VectorAV:N/AC:L/Au:N/C:P/I:P/A:P
Name of the Vulnerable Software and Affected Versions code-projects Vehicle Management System version 1.0
Description An unrestricted file upload issue exists within the New Driver Registration Form component in the file 'newdriver.php'. A remote attacker can achieve this by manipulating the photo argument, allowing the upload of unauthorized files.
Recommendations Update code-projects Vehicle Management System to a version that resolves this issue. As a temporary workaround, restrict access to the 'newdriver.php' file or the New Driver Registration Form component.

Exploit

Fix

Improper Access Control

Unrestricted File Upload

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2026-11344

Affected Products

Vehicle Management System