CVE-2024-12933
LOWCode-projects Simple Admin Panel - Code Injection
Title source: ruleDescription
A vulnerability was found in code-projects Simple Admin Panel 1.0. It has been rated as problematic. Affected by this issue is some unknown functionality of the file updateItemController.php. The manipulation of the argument p_name/p_desc leads to cross site scripting. The attack may be launched remotely.
References (5)
Scores
CVSS v3
3.5
EPSS
0.0013
EPSS Percentile
32.2%
Attack Vector
NETWORK
CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:U/C:N/I:L/A:N
Classification
CWE
CWE-94
CWE-79
Status
published
Affected Products (1)
code-projects/simple_admin_panel
Timeline
Published
Dec 26, 2024
Tracked Since
Feb 18, 2026