Privilege Escalation Vulnerability in Projectworlds Visitor Management System
CVE-2024-22922
9.8CRITICAL
What is CVE-2024-22922?
A vulnerability exists in Projectworlds Visitor Management System PHP v.1.0 that allows remote attackers to exploit a privilege escalation flaw. By utilizing a specially crafted script on the login page at POST/index.php, an attacker could gain unauthorized access to higher privilege levels within the system, potentially compromising sensitive data and system integrity.