CVE-2026-5041
MEDIUM
NVD
CVSS Score
4.7
Severity
MEDIUM
Published
Mar 29, 2026
Vendor
unknown
Description
A vulnerability was identified in code-projects Chamber of Commerce Membership Management System 1.0. Impacted is the function fwrite of the file admin/pageMail.php. The manipulation of the argument mailSubject/mailMessage leads to command injection. The attack may be initiated remotely. The exploit is publicly available and might be used.