Metrics
Affected Vendors & Products
Sun, 13 Jul 2025 13:45:00 +0000
| Type | Values Removed | Values Added | 
|---|---|---|
| Metrics | 
        
        
        epss
         
  | 
    
        
        
        epss
         
  | 
Tue, 29 Oct 2024 13:30:00 +0000
| Type | Values Removed | Values Added | 
|---|---|---|
| CPEs | cpe:2.3:a:projectworlds:student_project_allocation_system:1.0:*:*:*:*:*:*:* | |
| Vendors & Products | 
        
        Phpgurukul
         Phpgurukul student Project Allocation System  | 
    
Tue, 29 Oct 2024 01:15:00 +0000
| Type | Values Removed | Values Added | 
|---|---|---|
| First Time appeared | 
        
        Phpgurukul
         Phpgurukul student Project Allocation System  | 
|
| CPEs | cpe:2.3:a:phpgurukul:student_project_allocation_system:1.0:*:*:*:*:*:*:* | |
| Vendors & Products | 
        
        Phpgurukul
         Phpgurukul student Project Allocation System  | 
Mon, 28 Oct 2024 13:15:00 +0000
| Type | Values Removed | Values Added | 
|---|---|---|
| First Time appeared | 
        
        Projectworlds
         Projectworlds student Project Allocation System  | 
|
| CPEs | cpe:2.3:a:projectworlds:student_project_allocation_system:*:*:*:*:*:*:*:* | |
| Vendors & Products | 
        
        Projectworlds
         Projectworlds student Project Allocation System  | 
|
| Metrics | 
        
        ssvc
         
  | 
Sun, 27 Oct 2024 19:15:00 +0000
| Type | Values Removed | Values Added | 
|---|---|---|
| Description | A vulnerability was found in Project Worlds Student Project Allocation System 1.0 and classified as critical. Affected by this issue is some unknown functionality of the file /student/project_selection/move_up_project.php of the component Project Selection Page. The manipulation of the argument up leads to sql injection. The attack may be launched remotely. The exploit has been disclosed to the public and may be used. | |
| Title | Project Worlds Student Project Allocation System Project Selection Page move_up_project.php sql injection | |
| Weaknesses | CWE-89 | |
| References | 
         | |
| Metrics | 
        
        cvssV2_0
         
 
 
 
  | 
Status: PUBLISHED
Assigner: VulDB
Published: 2024-10-27T19:00:06.059Z
Updated: 2024-10-28T13:09:38.668Z
Reserved: 2024-10-26T14:07:16.436Z
Link: CVE-2024-10425
Updated: 2024-10-28T13:09:33.745Z
Status : Analyzed
Published: 2024-10-27T19:15:04.537
Modified: 2024-10-29T13:14:31.863
Link: CVE-2024-10425
No data.