


Perceptive Security
SOC/SIEM Consultancy

A flaw has been found in code-projects Simple Laundry System 1.0. This vulnerability affects unknown code of the file /userfinishregister.php of the component P…
Published:
5 april 2026 om 22:00:00
Alert date:
6 april 2026 om 12:01:17
Source:
nvd.nist.gov
Web Technologies
A SQL injection vulnerability has been discovered in code-projects Simple Laundry System version 1.0. The flaw affects the Parameter Handler component, specifically in the /userfinishregister.php file. The vulnerability can be exploited by manipulating the firstName parameter, allowing for SQL injection attacks. Remote exploitation is possible, making this a significant security risk. The exploit code has been publicly disclosed and may be actively used by attackers. This affects the user registration functionality of the web application.
Technical details
Mitigation steps:
Affected products:
Simple Laundry System 1.0
Related links:
https://nvd.nist.gov/vuln/detail/CVE-2026-5648
https://code-projects.org/
https://github.com/yao536/cve/issues/2
https://vuldb.com/submit/786194
https://vuldb.com/vuln/355436
https://vuldb.com/vuln/355436/cti
Related CVE's:
Related threat actors:
IOC's:
This article was created with the assistance of AI technology by Perceptive.
