CVE-2026-6035
MEDIUM
NVD
CVSS Score
4.3
Severity
MEDIUM
Published
Apr 10, 2026
Vendor
unknown
Description
A vulnerability has been found in code-projects Vehicle Showroom Management System 1.0. The affected element is an unknown function of the file /BranchManagement/ServiceAndSalesReport.php. The manipulation of the argument BRANCH_ID leads to cross site scripting. Remote exploitation of the attack is possible. The exploit has been disclosed to the public and may be used.