Vulnerabilities > Projectworlds > Critical

DATE CVE VULNERABILITY TITLE RISK
2023-11-02 CVE-2023-45334 SQL Injection vulnerability in Projectworlds Online Food Ordering System 1.0
Online Food Ordering System v1.0 is vulnerable to multiple Unauthenticated SQL Injection vulnerabilities.
network
low complexity
projectworlds CWE-89
critical
9.8
2023-11-02 CVE-2023-45336 SQL Injection vulnerability in Projectworlds Online Food Ordering System 1.0
Online Food Ordering System v1.0 is vulnerable to multiple Unauthenticated SQL Injection vulnerabilities.
network
low complexity
projectworlds CWE-89
critical
9.8
2023-11-02 CVE-2023-45340 SQL Injection vulnerability in Projectworlds Online Food Ordering System 1.0
Online Food Ordering System v1.0 is vulnerable to multiple Unauthenticated SQL Injection vulnerabilities.
network
low complexity
projectworlds CWE-89
critical
9.8
2023-11-02 CVE-2023-45341 SQL Injection vulnerability in Projectworlds Online Food Ordering System 1.0
Online Food Ordering System v1.0 is vulnerable to multiple Unauthenticated SQL Injection vulnerabilities.
network
low complexity
projectworlds CWE-89
critical
9.8
2023-11-02 CVE-2023-45342 SQL Injection vulnerability in Projectworlds Online Food Ordering System 1.0
Online Food Ordering System v1.0 is vulnerable to multiple Unauthenticated SQL Injection vulnerabilities.
network
low complexity
projectworlds CWE-89
critical
9.8
2023-11-02 CVE-2023-45343 SQL Injection vulnerability in Projectworlds Online Food Ordering System 1.0
Online Food Ordering System v1.0 is vulnerable to multiple Unauthenticated SQL Injection vulnerabilities.
network
low complexity
projectworlds CWE-89
critical
9.8
2023-11-02 CVE-2023-45344 SQL Injection vulnerability in Projectworlds Online Food Ordering System 1.0
Online Food Ordering System v1.0 is vulnerable to multiple Unauthenticated SQL Injection vulnerabilities.
network
low complexity
projectworlds CWE-89
critical
9.8
2023-10-26 CVE-2023-44267 SQL Injection vulnerability in Projectworlds Online ART Gallery 1.0
Online Art Gallery v1.0 is vulnerable to multiple Unauthenticated SQL Injection vulnerabilities.
network
low complexity
projectworlds CWE-89
critical
9.8
2023-09-28 CVE-2023-44163 SQL Injection vulnerability in Projectworlds Online Movie Ticket Booking System 1.0
The 'search' parameter of the process_search.php resource does not validate the characters received and they are sent unfiltered to the database.
network
low complexity
projectworlds CWE-89
critical
9.8
2023-09-28 CVE-2023-44164 SQL Injection vulnerability in Projectworlds Online Movie Ticket Booking System 1.0
The 'Email' parameter of the process_login.php resource does not validate the characters received and they are sent unfiltered to the database.
network
low complexity
projectworlds CWE-89
critical
9.8