PT-2026-30410 · Unknown · Simple Laundry System
Weining Xiao
·
Published
2026-04-05
·
Updated
2026-04-05
·
CVE-2026-5539
CVSS v2.0
5.0
Medium
| Vector | AV:N/AC:L/Au:N/C:N/I:P/A:N |
Name of the Vulnerable Software and Affected Versions
Simple Laundry System version 1.0
Description
A flaw exists in the /modifymember.php file within the Parameter Handler component, allowing for cross site scripting through manipulation of the
firstName argument. This attack can be initiated remotely. The exploit has been published.Recommendations
At the moment, there is no information about a newer version that contains a fix for this vulnerability.
Exploit
XSS
Code Injection
Found an issue in the description? Have something to add? Feel free to write us 👾
Related Identifiers
Affected Products
Simple Laundry System