CVE-2025-8947
14.08.2025, 07:15
A vulnerability was found in projectworlds Visitor Management System 1.0. This issue affects some unknown processing of the file /query_data.php. The manipulation of the argument dateF/dateP leads to sql injection. The attack may be initiated remotely. The exploit has been disclosed to the public and may be used.
Vendor | Product | Version |
---|---|---|
projectworlds | visitor_management_system | 1.0 |
𝑥
= Vulnerable software versions