CVE-2026-2867 - itsourcecode Vehicle Management System billaction.php sql injection

CVE-2026-2867 - itsourcecode Vehicle Management System billaction.php sql injection

CVE ID : CVE-2026-2867 Published : Feb. 21, 2026, 2:15 p.m. | 1 hour ago Description : A vulnerability was determined in itsourcecode Vehicle Management System 1.0. Affected is an unknown function of the file /billaction.php. Executing a manipulation of the argument ID can lead to sql injection. The attack may be launched remotely. The exploit has been publicly disclosed and may be utilized. Severity: 7.5 | HIGH Visit the link for more details, such as CVSS details, affected products, timeline, and more...

CVE Details

Severity
HIGH
Published
Feb. 21, 2026
Affected Product: php
Impact: sql injection