PT-2026-27308 · Projectworlds · Lawyer Management System

Wangyiqi

·

Published

2026-03-24

·

Updated

2026-03-24

·

CVE-2026-4626

CVSS v3.1

3.5

Low

AV:N/AC:L/PR:L/UI:R/S:U/C:N/I:L/A:N
A vulnerability has been found in projectworlds Lawyer Management System 1.0. This impacts an unknown function of the file /lawyer booking.php. The manipulation of the argument Description leads to cross site scripting. The attack may be initiated remotely. The exploit has been disclosed to the public and may be used.

Exploit

Fix

Code Injection

XSS

Weakness Enumeration

Related Identifiers

CVE-2026-4626

Affected Products

Lawyer Management System