CVE-2026-5634
- EPSS 0.04%
- Veröffentlicht 06.04.2026 08:16:39
- Zuletzt bearbeitet 07.04.2026 13:20:35
A vulnerability was identified in projectworlds Car Rental Project 1.0. Affected by this vulnerability is an unknown functionality of the file /book_car.php of the component Parameter Handler. The manipulation of the argument fname leads to sql injec...
CVE-2026-5368
- EPSS 0.04%
- Veröffentlicht 02.04.2026 17:15:13
- Zuletzt bearbeitet 15.04.2026 17:41:49
A vulnerability was determined in projectworlds Car Rental Project 1.0. The affected element is an unknown function of the file /login.php of the component Parameter Handler. This manipulation of the argument uname causes sql injection. Remote exploi...
CVE-2025-4457
- EPSS 0.22%
- Veröffentlicht 09.05.2025 03:00:07
- Zuletzt bearbeitet 11.07.2025 15:02:39
A vulnerability classified as critical was found in Project Worlds Car Rental Project 1.0. Affected by this vulnerability is an unknown functionality of the file /admin/approve.php. The manipulation of the argument ID leads to sql injection. The atta...
CVE-2025-4456
- EPSS 0.22%
- Veröffentlicht 09.05.2025 03:00:06
- Zuletzt bearbeitet 11.07.2025 15:05:13
A vulnerability classified as critical has been found in Project Worlds Car Rental Project 1.0. Affected is an unknown function of the file /signup.php. The manipulation of the argument fname leads to sql injection. It is possible to launch the attac...
CVE-2020-24199
- EPSS 3.39%
- Veröffentlicht 09.09.2020 15:15:10
- Zuletzt bearbeitet 21.11.2024 05:14:29
Arbitrary File Upload in the Vehicle Image Upload component in Project Worlds Car Rental Management System v1.0 allows attackers to conduct remote code execution.