Description
A security flaw has been discovered in code-projects Simple Laundry System 1.0. This impacts an unknown function of the file /checkupdatestatus.php of the component Parameters Handler. The manipulation of the argument serviceId results in sql injection. The attack can be executed remotely. The exploit has been released to the public and may be used for attacks.
Problem types
Product status
Timeline
| 2026-03-22: | Advisory disclosed |
| 2026-03-22: | VulDB entry created |
| 2026-03-22: | VulDB entry last update |
Credits
ysi6701 (VulDB User)
References
vuldb.com/?id.352417 (VDB-352417 | code-projects Simple Laundry System Parameters checkupdatestatus.php sql injection)
vuldb.com/?ctiid.352417 (VDB-352417 | CTI Indicators (IOB, IOC, TTP, IOA))
vuldb.com/?submit.775210 (Submit #775210 | code-projects Simple Laundry System V1.0 SQL injection)
github.com/anon387tdug/anon388/issues/2
code-projects.org/