PT-2026-30597 · Code Projects · Online Shop Store

Jacky_159

·

Published

2026-04-06

·

Updated

2026-04-06

·

CVE-2026-5647

CVSS v3.1

2.4

Low

AV:N/AC:L/PR:H/UI:R/S:U/C:N/I:L/A:N
A vulnerability was detected in code-projects Online Shoe Store 1.0. This affects an unknown part of the file /admin/admin feature.php of the component Add Product Page. The manipulation of the argument product name results in cross site scripting. The attack may be launched remotely. The exploit is now public and may be used.

Exploit

Fix

Code Injection

XSS

Weakness Enumeration

Related Identifiers

CVE-2026-5647

Affected Products

Online Shop Store