CVE-2025-6133: Projectworlds Life Insurance Management System insertagent.php sql injection
A vulnerability was found in Projectworlds Life Insurance Management System 1.0 and classified as critical. Affected by this issue is some unknown functionality of the file /insertagent.php. The manipulation of the argument agentid leads to sql injection. The attack may be launched remotely. The exploit has been disclosed to the public and may be used.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2025-6133?
CVE-2025-6133 is classified as a critical severity vulnerability.
How does CVE-2025-6133 affect the Projectworlds Life Insurance Management System?
CVE-2025-6133 affects the functionality of the file /insertagent.php, leading to SQL injection through the manipulation of the agent_id argument.
How do I fix CVE-2025-6133?
To fix CVE-2025-6133, sanitize and validate all user inputs to prevent SQL injection vulnerabilities.
Can CVE-2025-6133 be exploited remotely?
Yes, CVE-2025-6133 can potentially be exploited remotely by an attacker who manipulates the agent_id parameter.
What versions of Projectworlds Life Insurance Management System are affected by CVE-2025-6133?
CVE-2025-6133 affects Projectworlds Life Insurance Management System version 1.0.