Project Worlds Simple Web-Based Chat Application是Project Worlds公司的一个简单的基于Web的聊天应用程序。 Project Worlds Simple Web-Based Chat Application 1.0版本存在SQL注入漏洞,该漏洞源于/index.php页面中的username参数包含一个SQL注入漏洞。
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| Project Worlds | Simple Web-Based Chat Application | 1.0 | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|
| CVE-2024-10423 | 6.3 MEDIUM | Project Worlds Student Project Allocation System Project Selection Page project_selection. |
| CVE-2024-10425 | 6.3 MEDIUM | Project Worlds Student Project Allocation System Project Selection Page move_up_project.ph |
| CVE-2024-10424 | 6.3 MEDIUM | Project Worlds Student Project Allocation System Project Selection Page remove_project.php |
No comments yet