cve/2024/CVE-2024-51327.md
2025-09-29 21:09:30 +02:00

804 B

CVE-2024-51327

Description

SQL Injection in loginform.php in ProjectWorld's Travel Management System v1.0 allows remote attackers to bypass authentication via SQL Injection in the 'username' and 'password' fields.

POC

Reference

Github