2024-11-04 00:00:00
mitre
PUBLISHED
SQL Injection in loginform.php in ProjectWorlds Travel Management System v1.0 allows remote attackers to bypass authentication via SQL Injection in the username and password fields.