CVE-2024-22922: Critical severity Projectworlds Visitor Management System vulnerability
Published Jan 25, 2024
·Updated
An issue in Projectworlds Vistor Management Systemin PHP v.1.0 allows a remtoe attacker to escalate privileges via a crafted script to the login page in the POST/index.php
Affected Software
1 affected component
Projectworlds Visitor Management System=1.0
Event History
Jan 25, 2024
CVE Published
via MITRE·12:00 AM
Data Sourced
via MITRE·12:00 AM
Description
Data Sourced
via NVD·10:15 PM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2024-22922?
CVE-2024-22922 is classified as a high-severity vulnerability due to the potential for privilege escalation.
2
How do I fix CVE-2024-22922?
To mitigate CVE-2024-22922, apply security patches provided by Projectworlds for Visitor Management System version 1.0.
3
Who is affected by CVE-2024-22922?
Users of Projectworlds Visitor Management System in PHP version 1.0 are at risk of CVE-2024-22922.
4
What type of attack does CVE-2024-22922 allow?
CVE-2024-22922 allows a remote attacker to escalate privileges via a crafted script sent to the login page.
5
When was CVE-2024-22922 disclosed?
CVE-2024-22922 was disclosed in 2024, highlighting a critical vulnerability affecting web application security.