Description
A vulnerability was determined in code-projects Simple Laundry System 1.0. Impacted is an unknown function of the file /modstaffinfo.php of the component Parameter Handler. Executing a manipulation of the argument userid can lead to cross site scripting. The attack may be launched remotely. The exploit has been publicly disclosed and may be utilized.
Problem types
Product status
Timeline
| 2026-04-04: | Advisory disclosed |
| 2026-04-04: | VulDB entry created |
| 2026-04-04: | VulDB entry last update |
Credits
Weining Xiao (VulDB User)
References
vuldb.com/vuln/355295 (VDB-355295 | code-projects Simple Laundry System Parameter modstaffinfo.php cross site scripting)
vuldb.com/vuln/355295/cti (VDB-355295 | CTI Indicators (IOB, IOC, TTP, IOA))
vuldb.com/submit/782224 (Submit #782224 | code-projects Simple Laundry System V1.0 cross site scripting)
github.com/boyslikesports/vul-web/issues/2
code-projects.org/