Skip to main content

CVE-2024-22922

Description

An issue in Projectworlds Vistor Management Systemin PHP v.1.0 allows a remtoe attacker to escalate privileges via a crafted script to the login page in the POST/index.php

NVD
Severity: CRITICAL
CVE ID: CVE-2024-22922
CVSS Score: 9.8
CVSS Metrics: CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

Refrence: NVDMITRE

Proof Of Concept

keru6k

A Broken Authentication Vulnerability found in Projectworlds' Visitor Management System

Refrence: GitHub