peteryang520

1 exploit Active since Nov 2024
CVE-2024-10734 WRITEUP MEDIUM WRITEUP
Project Worlds Life Insurance Management System 1.0 - SQL Injection via recipt_no Parameter in editPayment.php
A vulnerability was found in Project Worlds Life Insurance Management System 1.0. It has been classified as critical. This affects an unknown part of the file /editPayment.php. The manipulation of the argument recipt_no leads to sql injection. It is possible to initiate the attack remotely. The exploit has been disclosed to the public and may be used.
CVSS 6.3