CVE-2026-5240
MEDIUM
NVD
CVSS Score
4.3
Severity
MEDIUM
Published
Apr 01, 2026
Vendor
unknown
Description
A security vulnerability has been detected in code-projects BloodBank Managing System 1.0. This affects an unknown part of the file /admin_state.php. The manipulation of the argument statename leads to cross site scripting. It is possible to initiate the attack remotely. The exploit has been disclosed publicly and may be used.