CVE-2024-22922
Description
An issue in Projectworlds Vistor Management Systemin PHP v.1.0 allows a remtoe attacker to escalate privileges via a crafted script to the login page in the POST/index.php
NVD
Severity: CRITICAL
CVE ID: CVE-2024-22922
CVSS Score: 9.8
CVSS Metrics: CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Proof Of Concept
keru6k
A Broken Authentication Vulnerability found in Projectworlds' Visitor Management System
Refrence: GitHub