Vulnerability Description
A Remote Code Execution vulnerability was found in CODEASTRO Membership Management System v1.0 in /add_members.php. This vulnerability affects the file upload functionality, where improper file sanitization allows attackers to inject malicious files which leads RCE.
CVSS Score
MEDIUM
Related Weaknesses (CWE)
References
- http://codeastro.com
- https://github.com/raneishajustin/CVE/tree/main/CVE-2026-36387
- https://github.com/raneishajustin/CVE/tree/main/CVE-2026-36387
FAQ
What is CVE-2026-36387?
CVE-2026-36387 is a vulnerability with a CVSS score of 6.5 (MEDIUM). A Remote Code Execution vulnerability was found in CODEASTRO Membership Management System v1.0 in /add_members.php. This vulnerability affects the file upload functionality, where improper file saniti...
How severe is CVE-2026-36387?
CVE-2026-36387 has been rated MEDIUM with a CVSS base score of 6.5/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2026-36387?
Check the references section above for vendor advisories and patch information. Review vendor security bulletins for remediation guidance.