← Back

Projectworlds

projectworlds

223 CVEs • 45 products

Products (45)

Click to collapse
Toggle
House Rental
house_rental

CVEs (223)

CVE
VENDORS
PRODUCTS
UPDATED
PUBLISHED
CVSS
1Projectworlds
1Online Job Portal
Nov 21, 2024
Nov 7, 2023
N/A· v4
9.8 CRITICAL· v3
N/A· v2
Online Job Portal v1.0 is vulnerable to multiple Unauthenticated SQL Injection vulnerabilities. The 'txt_uname' parameter of the sign-up.php resource does not validate the characters received and they are sent unfiltered...Show more
Online Job Portal v1.0 is vulnerable to multiple Unauthenticated SQL Injection vulnerabilities. The 'txt_uname' parameter of the sign-up.php resource does not validate the characters received and they are sent unfiltered to the database. Show less
1Projectworlds
1Online Food Ordering Script
Nov 21, 2024
Nov 2, 2023
N/A· v4
9.8 CRITICAL· v3
N/A· v2
Online Food Ordering System v1.0 is vulnerable to multiple Unauthenticated SQL Injection vulnerabilities. The '*_verified' parameter of the routers/user-router.php resource does not validate the characters received and t...Show more
Online Food Ordering System v1.0 is vulnerable to multiple Unauthenticated SQL Injection vulnerabilities. The '*_verified' parameter of the routers/user-router.php resource does not validate the characters received and they are sent unfiltered to the database. Show less
1Projectworlds
1Online Food Ordering Script
Nov 21, 2024
Nov 2, 2023
N/A· v4
9.8 CRITICAL· v3
N/A· v2
Online Food Ordering System v1.0 is vulnerable to multiple Unauthenticated SQL Injection vulnerabilities. The '*_role' parameter of the routers/user-router.php resource does not validate the characters received and they...Show more
Online Food Ordering System v1.0 is vulnerable to multiple Unauthenticated SQL Injection vulnerabilities. The '*_role' parameter of the routers/user-router.php resource does not validate the characters received and they are sent unfiltered to the database. Show less
1Projectworlds
1Online Food Ordering Script
Nov 21, 2024
Nov 2, 2023
N/A· v4
9.8 CRITICAL· v3
N/A· v2
Online Food Ordering System v1.0 is vulnerable to multiple Unauthenticated SQL Injection vulnerabilities. The '*_deleted' parameter of the routers/user-router.php resource does not validate the characters received and th...Show more
Online Food Ordering System v1.0 is vulnerable to multiple Unauthenticated SQL Injection vulnerabilities. The '*_deleted' parameter of the routers/user-router.php resource does not validate the characters received and they are sent unfiltered to the database. Show less
1Projectworlds
1Online Food Ordering Script
Nov 21, 2024
Nov 2, 2023
N/A· v4
9.8 CRITICAL· v3
N/A· v2
Online Food Ordering System v1.0 is vulnerable to multiple Unauthenticated SQL Injection vulnerabilities. The 'id' parameter of the routers/add-ticket.php resource does not validate the characters received and they are s...Show more
Online Food Ordering System v1.0 is vulnerable to multiple Unauthenticated SQL Injection vulnerabilities. The 'id' parameter of the routers/add-ticket.php resource does not validate the characters received and they are sent unfiltered to the database. Show less
1Projectworlds
1Online Food Ordering System
Nov 21, 2024
Nov 2, 2023
N/A· v4
9.8 CRITICAL· v3
N/A· v2
Online Food Ordering System v1.0 is vulnerable to multiple Unauthenticated SQL Injection vulnerabilities. The '*_balance' parameter of the routers/user-router.php resource does not validate the characters received and th...Show more
Online Food Ordering System v1.0 is vulnerable to multiple Unauthenticated SQL Injection vulnerabilities. The '*_balance' parameter of the routers/user-router.php resource does not validate the characters received and they are sent unfiltered to the database. Show less
1Projectworlds
1Online Food Ordering System
Nov 21, 2024
Nov 2, 2023
N/A· v4
9.8 CRITICAL· v3
N/A· v2
Online Food Ordering System v1.0 is vulnerable to multiple Unauthenticated SQL Injection vulnerabilities. The 'ticket_id' parameter of the routers/ticket-message.php resource does not validate the characters received and...Show more
Online Food Ordering System v1.0 is vulnerable to multiple Unauthenticated SQL Injection vulnerabilities. The 'ticket_id' parameter of the routers/ticket-message.php resource does not validate the characters received and they are sent unfiltered to the database. Show less
1Projectworlds
1Online Food Ordering System
Nov 21, 2024
Nov 2, 2023
N/A· v4
9.8 CRITICAL· v3
N/A· v2
Online Food Ordering System v1.0 is vulnerable to multiple Unauthenticated SQL Injection vulnerabilities. The 'phone' parameter of the routers/register-router.php resource does not validate the characters received and th...Show more
Online Food Ordering System v1.0 is vulnerable to multiple Unauthenticated SQL Injection vulnerabilities. The 'phone' parameter of the routers/register-router.php resource does not validate the characters received and they are sent unfiltered to the database. Show less
1Projectworlds
1Online Food Ordering System
Nov 21, 2024
Nov 2, 2023
N/A· v4
9.8 CRITICAL· v3
N/A· v2
Online Food Ordering System v1.0 is vulnerable to multiple Unauthenticated SQL Injection vulnerabilities. The '*_price' parameter of the routers/menu-router.php resource does not validate the characters received and they...Show more
Online Food Ordering System v1.0 is vulnerable to multiple Unauthenticated SQL Injection vulnerabilities. The '*_price' parameter of the routers/menu-router.php resource does not validate the characters received and they are sent unfiltered to the database. Show less
1Projectworlds
1Online Food Ordering System
Nov 21, 2024
Nov 2, 2023
N/A· v4
9.8 CRITICAL· v3
N/A· v2
Online Food Ordering System v1.0 is vulnerable to multiple Unauthenticated SQL Injection vulnerabilities. The 'phone' parameter of the routers/details-router.php resource does not validate the characters received and the...Show more
Online Food Ordering System v1.0 is vulnerable to multiple Unauthenticated SQL Injection vulnerabilities. The 'phone' parameter of the routers/details-router.php resource does not validate the characters received and they are sent unfiltered to the database. Show less
1Projectworlds
1Online Food Ordering System
Nov 21, 2024
Nov 2, 2023
N/A· v4
9.8 CRITICAL· v3
N/A· v2
Online Food Ordering System v1.0 is vulnerable to multiple Unauthenticated SQL Injection vulnerabilities. The 'password' parameter of the routers/router.php resource does not validate the characters received and they are...Show more
Online Food Ordering System v1.0 is vulnerable to multiple Unauthenticated SQL Injection vulnerabilities. The 'password' parameter of the routers/router.php resource does not validate the characters received and they are sent unfiltered to the database. Show less
1Projectworlds
1Online Food Ordering System
Nov 21, 2024
Nov 2, 2023
N/A· v4
9.8 CRITICAL· v3
N/A· v2
Online Food Ordering System v1.0 is vulnerable to multiple Unauthenticated SQL Injection vulnerabilities. The 'status' parameter of the routers/edit-orders.php resource does not validate the characters received and they...Show more
Online Food Ordering System v1.0 is vulnerable to multiple Unauthenticated SQL Injection vulnerabilities. The 'status' parameter of the routers/edit-orders.php resource does not validate the characters received and they are sent unfiltered to the database. Show less
1Projectworlds
1Online Food Ordering System
Nov 21, 2024
Nov 2, 2023
N/A· v4
9.8 CRITICAL· v3
N/A· v2
Online Food Ordering System v1.0 is vulnerable to multiple Unauthenticated SQL Injection vulnerabilities. The 'address' parameter of the routers/add-users.php resource does not validate the characters received and they a...Show more
Online Food Ordering System v1.0 is vulnerable to multiple Unauthenticated SQL Injection vulnerabilities. The 'address' parameter of the routers/add-users.php resource does not validate the characters received and they are sent unfiltered to the database. Show less
1Projectworlds
1Online Food Ordering System
Nov 21, 2024
Nov 2, 2023
N/A· v4
9.8 CRITICAL· v3
N/A· v2
Online Food Ordering System v1.0 is vulnerable to multiple Unauthenticated SQL Injection vulnerabilities. The 'name' parameter of the routers/add-item.php resource does not validate the characters received and they are s...Show more
Online Food Ordering System v1.0 is vulnerable to multiple Unauthenticated SQL Injection vulnerabilities. The 'name' parameter of the routers/add-item.php resource does not validate the characters received and they are sent unfiltered to the database. Show less
1Projectworlds
1Online Examination System
Nov 21, 2024
Nov 1, 2023
N/A· v4
6.1 MEDIUM· v3
N/A· v2
Online Examination System v1.0 is vulnerable to multiple Open Redirect vulnerabilities. The 'q' parameter of the login.php resource allows an attacker to redirect a victim user to an arbitrary web site using a crafted UR...Show more
Online Examination System v1.0 is vulnerable to multiple Open Redirect vulnerabilities. The 'q' parameter of the login.php resource allows an attacker to redirect a victim user to an arbitrary web site using a crafted URL. Show less
1Projectworlds
1Online Examination System
Nov 21, 2024
Nov 1, 2023
N/A· v4
6.1 MEDIUM· v3
N/A· v2
Online Examination System v1.0 is vulnerable to multiple Open Redirect vulnerabilities. The 'q' parameter of the feed.php resource allows an attacker to redirect a victim user to an arbitrary web site using a crafted URL...Show more
Online Examination System v1.0 is vulnerable to multiple Open Redirect vulnerabilities. The 'q' parameter of the feed.php resource allows an attacker to redirect a victim user to an arbitrary web site using a crafted URL. Show less
1Projectworlds
1Online Examination System
Nov 21, 2024
Nov 1, 2023
N/A· v4
6.1 MEDIUM· v3
N/A· v2
Online Examination System v1.0 is vulnerable to multiple Open Redirect vulnerabilities. The 'q' parameter of the admin.php resource allows an attacker to redirect a victim user to an arbitrary web site using a crafted UR...Show more
Online Examination System v1.0 is vulnerable to multiple Open Redirect vulnerabilities. The 'q' parameter of the admin.php resource allows an attacker to redirect a victim user to an arbitrary web site using a crafted URL. Show less
1Projectworlds
1Online Blood Donation Management System
Nov 21, 2024
Oct 31, 2023
N/A· v4
6.1 MEDIUM· v3
N/A· v2
Online Blood Donation Management System v1.0 is vulnerable to a Stored Cross-Site Scripting vulnerability. The 'firstName' parameter of the users/register.php resource is copied into the users/member.php document as plai...Show more
Online Blood Donation Management System v1.0 is vulnerable to a Stored Cross-Site Scripting vulnerability. The 'firstName' parameter of the users/register.php resource is copied into the users/member.php document as plain text between tags. Any input is echoed unmodified in the users/member.php response.Show less
1Projectworlds
1Leave Management System
Nov 21, 2024
Oct 27, 2023
N/A· v4
8.8 HIGH· v3
N/A· v2
Leave Management System Project v1.0 is vulnerable to multiple Authenticated SQL Injection vulnerabilities. The 'setcasualleave' parameter of the admin/setleaves.php resource does not validate the characters received and...Show more
Leave Management System Project v1.0 is vulnerable to multiple Authenticated SQL Injection vulnerabilities. The 'setcasualleave' parameter of the admin/setleaves.php resource does not validate the characters received and they are sent unfiltered to the database. Show less
1Projectworlds
1Online Art Gallery
Nov 21, 2024
Oct 26, 2023
N/A· v4
9.8 CRITICAL· v3
N/A· v2
Online Art Gallery v1.0 is vulnerable to multiple Unauthenticated SQL Injection vulnerabilities. The 'lnm' parameter of the header.php resource does not validate the characters received and they are sent unfiltered to th...Show more
Online Art Gallery v1.0 is vulnerable to multiple Unauthenticated SQL Injection vulnerabilities. The 'lnm' parameter of the header.php resource does not validate the characters received and they are sent unfiltered to the database. Show less