CVE-2025-8947
14.08.2025, 07:15
A vulnerability was found in projectworlds Visitor Management System 1.0. This issue affects some unknown processing of the file /query_data.php. The manipulation of the argument dateF/dateP leads to sql injection. The attack may be initiated remotely. The exploit has been disclosed to the public and may be used.
Awaiting analysis
This vulnerability is currently awaiting analysis.