PT-2025-43952 · Code Projects · Client Details System

Liujiying

·

Published

2025-10-27

·

Updated

2025-11-03

·

CVE-2025-12280

CVSS v3.1

5.4

Medium

VectorAV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N
Name of the Vulnerable Software and Affected Versions code-projects Client Details System version 1.0
Description A security issue exists in code-projects Client Details System 1.0 related to the processing of the /update-clients.php file. Manipulation of this file can lead to cross site scripting, allowing for remote attacks. The exploit for this issue has been publicly released.
Recommendations Apply updates to address the processing of the /update-clients.php file.

Exploit

Fix

XSS

Code Injection

Weakness Enumeration

Related Identifiers

CVE-2025-12280

Affected Products

Client Details System