Description
A vulnerability was determined in Campcodes Complete Online Beauty Parlor Management System 1.0. This vulnerability affects unknown code of the file /admin/search-invoices.php. Executing manipulation of the argument searchdata can lead to cross site scripting. The attack can be launched remotely. The exploit has been publicly disclosed and may be utilized.
Problem types
Product status
Timeline
| 2025-12-28: | Advisory disclosed |
| 2025-12-28: | VulDB entry created |
| 2025-12-28: | VulDB entry last update |
Credits
BUPT_2025201 (VulDB User)
References
vuldb.com/?id.338573 (VDB-338573 | Campcodes Complete Online Beauty Parlor Management System search-invoices.php cross site scripting)
vuldb.com/?ctiid.338573 (VDB-338573 | CTI Indicators (IOB, IOC, TTP, IOA))
vuldb.com/?submit.721868 (Submit #721868 | campcodes Complete Online Beauty Parlor Management System V1.0 Cross Site Scripting)
github.com/BUPT2025201/CVE/issues/1
www.campcodes.com/
Data based on CVE®. Copyright © 1999-2025, The MITRE Corporation. All rights reserved.