PT-2026-30597 · Code Projects · Online Shop Store
Jacky_159
·
Published
2026-04-06
·
Updated
2026-04-06
·
CVE-2026-5647
CVSS v3.1
2.4
Low
| AV:N/AC:L/PR:H/UI:R/S:U/C:N/I:L/A:N |
A vulnerability was detected in code-projects Online Shoe Store 1.0. This affects an unknown part of the file /admin/admin feature.php of the component Add Product Page. The manipulation of the argument product name results in cross site scripting. The attack may be launched remotely. The exploit is now public and may be used.
Exploit
Fix
Code Injection
XSS
Found an issue in the description? Have something to add? Feel free to write us 👾
Related Identifiers
Affected Products
Online Shop Store