PT-2026-32378 · Code Projects · Simple Client Management System

Imad Alvi

·

Published

2026-04-13

·

Updated

2026-04-13

·

CVE-2026-6184

CVSS v2.0

3.3

Low

VectorAV:N/AC:L/Au:M/C:N/I:P/A:N
Name of the Vulnerable Software and Affected Versions code-projects Simple Content Management System version 1.0
Description A cross-site scripting issue exists in the file '/web/admin/welcome.php'. This occurs when the News Title argument is manipulated, allowing the attack to be executed remotely.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Exploit

Code Injection

XSS

Weakness Enumeration

Related Identifiers

CVE-2026-6184

Affected Products

Simple Client Management System