No advisories yet.
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
Thu, 02 Apr 2026 20:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Xiaopi
Xiaopi panel |
|
| Vendors & Products |
Xiaopi
Xiaopi panel |
Thu, 02 Apr 2026 13:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | A vulnerability was identified in Xiaopi Panel 1.0.0. This vulnerability affects unknown code of the file /demo.php of the component WAF Firewall. The manipulation of the argument param leads to cross site scripting. Remote exploitation of the attack is possible. The exploit is publicly available and might be used. The vendor was contacted early about this disclosure but did not respond in any way. | |
| Title | Xiaopi Panel WAF Firewall demo.php cross site scripting | |
| Weaknesses | CWE-79 CWE-94 |
|
| References |
| |
| Metrics |
cvssV2_0
|
Projects
Sign in to view the affected projects.
Status: PUBLISHED
Assigner: VulDB
Published:
Updated: 2026-04-02T13:15:11.183Z
Reserved: 2026-04-01T13:57:58.665Z
Link: CVE-2026-5332
No data.
Status : Received
Published: 2026-04-02T14:16:36.163
Modified: 2026-04-02T14:16:36.163
Link: CVE-2026-5332
No data.
OpenCVE Enrichment
Updated: 2026-04-02T20:21:15Z