A vulnerability was detected in code-projects Vehicle Showroom Management System 1.0. Affected by this vulnerability is an unknown functionality of the file /util/MonthTotalReportUpdateFunction.php. Performing a manipulation of the argument BRANCH_ID results in sql injection. The attack is possible to be carried out remotely. The exploit is now public and may be used.
References
Configurations
No configuration.
History
13 Apr 2026, 02:16
| Type | Values Removed | Values Added |
|---|---|---|
| New CVE |
Information
Published : 2026-04-13 02:16
Updated : 2026-06-17 11:00
NVD link : CVE-2026-6148
Mitre link : CVE-2026-6148
CVE.ORG link : CVE-2026-6148
JSON object : View
Products Affected
No product.
