CVE-2026-1700: projectworlds House Rental and Property Listing sms.php cross site scripting
A weakness has been identified in projectworlds House Rental and Property Listing 1.0. This vulnerability affects unknown code of the file /app/sms.php. This manipulation of the argument Message causes cross site scripting. It is possible to initiate the attack remotely. The exploit has been made available to the public and could be used for attacks.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2026-1700?
CVE-2026-1700 has a high severity rating due to its potential for cross-site scripting (XSS) attacks.
How do I fix CVE-2026-1700?
To fix CVE-2026-1700, validate and sanitize user inputs in the sms.php file to prevent XSS.
Which version of Projectworlds House Rental and Property Listing is affected by CVE-2026-1700?
CVE-2026-1700 affects version 1.0 of Projectworlds House Rental and Property Listing.
What kind of attacks can CVE-2026-1700 lead to?
CVE-2026-1700 can lead to cross-site scripting (XSS) attacks which may compromise user data.
Is CVE-2026-1700 easy to exploit?
Yes, CVE-2026-1700 is relatively easy to exploit if proper input validation is not implemented.