CVE-2024-51327 Information
Nov 06, 2024
cve
Description
SQL Injection in loginform.php in ProjectWorld’s Travel Management System v1.0 allows remote attackers to bypass authentication via SQL Injection in the ‘username’ and ‘password’ fields.
Reference
https://projectworlds.in/ https://github.com/redtrib3/CVEs/tree/main/CVE-2024-51327%20-%20SQLi%20Auth%20Bypass
Share on: