PT-2026-30410 · Unknown · Simple Laundry System

Weining Xiao

·

Published

2026-04-05

·

Updated

2026-04-05

·

CVE-2026-5539

CVSS v2.0

5.0

Medium

VectorAV:N/AC:L/Au:N/C:N/I:P/A:N
Name of the Vulnerable Software and Affected Versions Simple Laundry System version 1.0
Description A flaw exists in the /modifymember.php file within the Parameter Handler component, allowing for cross site scripting through manipulation of the firstName argument. This attack can be initiated remotely. The exploit has been published.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Exploit

XSS

Code Injection

Weakness Enumeration

Related Identifiers

CVE-2026-5539

Affected Products

Simple Laundry System