CVE-2024-51327

Publication date

2024-11-04 00:00:00

Family

mitre

State

PUBLISHED

Description

SQL Injection in loginform.php in ProjectWorlds Travel Management System v1.0 allows remote attackers to bypass authentication via SQL Injection in the username and password fields.