Home
Trends
Vulnerabilities
News
Researchers
Why dbugs?

Qiu-Die

#26253of 53,633
9.8Total CVSS
Vulnerabilities · 1
PT-2025-41463
9.8
2025-10-09
Projectworlds · Gate Pass Management System · CVE-2025-11557
**Name of the Vulnerable Software and Affected Versions** ProjectWorlds Gate Pass Management System version 1.0 **Description** A SQL injection issue exists in the handling of the `fullname` parameter within the `/add-pass.php` script. Manipulation of this parameter can allow an attacker to inject malicious SQL code. The exploit has been publicly disclosed and may be used. The API endpoint involved is `/add-pass.php`. **Recommendations** At the moment, there is no information about a newer version that contains a fix for this vulnerability.