Vulnerabilities
Vulnerable Software
Projectworlds:  Security Vulnerabilities
In ProjectWorlds Online Shopping System PHP 1.0, a CSRF vulnerability in cart_remove.php allows a remote attacker to remove any product in the customer's cart.
CVSS Score
4.3
EPSS Score
0.005
Published
2021-12-22
Projectworlds Hospital Management System v1.0 is vulnerable to SQL injection via the email parameter in hms-staff.php.
CVSS Score
9.8
EPSS Score
0.011
Published
2021-12-22
Projectworlds Hospital Management System v1.0 is vulnerable to SQL injection via multiple parameters in admin_home.php.
CVSS Score
9.8
EPSS Score
0.011
Published
2021-12-22
Projectworlds Hospital Management System v1.0 is vulnerable to SQL injection via multiple parameters in add_patient.php. As a result, an authenticated malicious user can compromise the databases system and in some cases leverage this vulnerability to get remote code execution on the remote web server.
CVSS Score
8.8
EPSS Score
0.02
Published
2021-12-22
Projectworlds Hospital Management System v1.0 is vulnerable to SQL injection via the appointment_no parameter in payment.php.
CVSS Score
9.8
EPSS Score
0.011
Published
2021-12-22
XSS in signup form in Project Worlds Online Examination System 1.0 allows remote attacker to inject arbitrary code via the name field
CVSS Score
6.1
EPSS Score
0.015
Published
2021-05-17
SQL Injection vulnerability in Online Book Store v1.0 via the pubid parameter to bookPerPub.php, which could let a remote malicious user execute arbitrary code.
CVSS Score
9.8
EPSS Score
0.019
Published
2021-05-06
SQL Injection vulnerability in Online Book Store v1.0 via the bookisbn parameter to admin_edit.php, which could let a remote malicious user execute arbitrary code.
CVSS Score
9.8
EPSS Score
0.019
Published
2021-05-06
SQL Injection vulnerability in Online Book Store v1.0 via the bookisbn parameter to book.php parameter, which could let a remote malicious user execute arbitrary code.
CVSS Score
9.8
EPSS Score
0.016
Published
2021-05-06
Incorrect Access Control vulnerability in Online Book Store v1.0 via admin_verify.php, which could let a remote mailicious user bypass authentication and obtain sensitive information.
CVSS Score
9.8
EPSS Score
0.019
Published
2021-05-06


Contact Us

Shodan ® - All rights reserved